Use this page to configure and enable Directory Services Connector synchronizations for security groups of users within your Active Directory domains.
You must add the name of each group you want to synchronize. When you run the synchronization, Directory Services Connector assigns all synchronized users to their respective groups in the Control Console.
Group synchronizations do not synchronize distribution lists. In addition, you cannot use Directory Services Connector to synchronize a group when the group was originally configured in the Control Console using the Control Console interface.
Field | Description |
---|---|
Active Directory Domain | The name of the AD domain in which the group or groups reside. |
Group Sync: Enable | Select this checkbox to enable synchronization of groups the next time a synchronization is run and also to add groups to the list. Note You can enter and save group names on this page and enable automatic synchronization later.
|
Group Name | Enter the name of the group you want to add, then click Add. The group is added to the Control Console and is included in the Groups List. The Directory Services Connector queries the saMAccount name in the AD server. Note Only Security Groups are synchronized. Distribution Groups are not synchronized.
|
Quick find | Searches for an existing group in the Groups list when you have a long list. Enter one or more initial characters for the group you want, and click Apply. Click Clear to redisplay all groups in the list. |
Groups List | |
Group Name | The name of a group that has been added for synchronization. If the associated checkbox is checked, users in that group are included in the next synchronization. |
DN | The Distinguished Name (DN) identifier used in Active Directory for the group. Directory Services Connector finds this information automatically after you add the group name. |
GUID | The globally unique ID (GUID) assigned to the group within Active Directory. Directory Services Connector finds this information automatically after you add the group name. |
Group Type | Only security group types can be included in synchronizations. |
Group Scope | The extent to which the group is applied in the AD domain tree or forest. The scope can be one of the following:
|
Status | Whether the group is Active or Inactive in the Active Directory. |
Option | Description |
---|---|
Show/Hide Filter | Shows or hides the filter options. |
Quick find | Allows you to type search strings to find specific AD groups that have already been added to the synchronization list. Click Apply to perform the search. |
Clear | Remove all filter settings. |
Show selected rows | Displays only the rows you have selected. |
Actions (drop-down menu) | Specifies the actions that can be taken on an AD groups, including:
|
Back | Displays the previous configuration tabe. You must click Save on one of the tabs to permanently save your changes. |
Next | Displays the next configuration tab and temporarily saves the changes you just made. You must click Save on one of the tabs that follows to permanently save your changes. |
Save | Saves your changes and returns you to the Active Directory Domain Synchronization pages. |