This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Synchronization of AD User and AD Groups

Hi,

 

i got a problem while synchronizing from OIM into Active Directory.

We have Domain with different Customers in it. We only manage at this time one customer with OIM.

There are some Active Directory Groups which are shared between the Customers.

 

In the Manager Application i can see that in some of those AD-Groups "Active Directory SIDs" and the Identites from OIM are displayed.

 

Everytime I synchronize from OIM to AD, the OIM Jobserver tries to add this "Active Directory SIDs" again as an Member of the group, although they are in it right now.

 

Is there any Way that there  unmanaged AD-Accounts are ignoriered by Synchronizing?

 

Thanks for your Help

Parents
  • Hi Marcel,

    The members reside in the groups in AD and the synchronization from AD to 1IM pulls them in.

    1IM doesn't know these users are "unmanaged" in any way until you tell it so.

    So in this case you need to filter those accounts (members) in some way so that they are not brought in by a sync. Easier said than done I think.

    Trevor

Reply
  • Hi Marcel,

    The members reside in the groups in AD and the synchronization from AD to 1IM pulls them in.

    1IM doesn't know these users are "unmanaged" in any way until you tell it so.

    So in this case you need to filter those accounts (members) in some way so that they are not brought in by a sync. Easier said than done I think.

    Trevor

Children
No Data