Hello Support4, thank you very much. This is exactly what i searched for!
Just one problem left with the scope in the specific location:

we already use value references with LDAP filters for the webform. this is dynamically created for every user.
so if a user has rights to one ore more OUs, our script will creaty the "adm-customattributetext10" automatically.
for example:

this works fine in the webform, but not in the report!

DN '(|(distinguishedName=OU=XXX,OU=XXX,OU=XXX,DC=xxx,DC=xxx,DC=xxxt))' is invalid.
is there a way we can use the same ldap search filter for the report?