Importing AD Security Groups
Created: 31 Aug 2011 | 6 comments
Hi all,
Is it possible to import all Security groups from AD ?
I've seen the option in the AD Import Connector, but it needs to select one by one...
Is it possible with a connector and how ? I have created my connector but my rule doesn't work (lookup key problem... What settings ?)
Thanks a lot
GREG
Discussion Filed Under:
Comments
Yes...
In order to import your groups as security roles you need to use the AD connector rule. In this rule you need to specify which groups to import. If you have a naming convention it is easier to import however you can select them individually. Once your groups are added ensure you are select the correct Type to import, perhaps that is why you are receving an error.
If you need some screenshots please let me know.
Benjamin Palmer
Specialist | Client Design
Director | Symantec CT User Group
If you find this post helpful please give it a thumbs up!
If you find that this solves your problem please mark it as the solu
Here's the process doc for you...
Follow these steps.
Benjamin Palmer
Specialist | Client Design
Director | Symantec CT User Group
If you find this post helpful please give it a thumbs up!
If you find that this solves your problem please mark it as the solu
Thanks for your answers The
Thanks for your answers
The problem with the AD connector, is that I need to add each group manually in the rule, in order to import these.
I want to know if there is a possibility to import each new group (in a special OU for example) automatically.
Thanks a lot.
GREG
Enhancement Request
I understand what you are trying to do now. I do not think this is possible once you select the "Role and Account" resources to import. Anything other than this selection allows for the "starting from" to be selected which is where you would select the starting OU.
Sounds like an enhancement request to have this added as an option for this type of import rule.
Benjamin Palmer
Specialist | Client Design
Director | Symantec CT User Group
If you find this post helpful please give it a thumbs up!
If you find that this solves your problem please mark it as the solu
Workaround
I stumbled across a workaround for your issue. We have a similar environment with around 20 specific roles/AD Groups (each supporting a different group of resources). They all belong to a parent AD group which assigns base privileges in SMP. If you import the parent AD group, it will pull in all the individual member groups as well.
So basically, do this:
Hope this helps.
Also, unless I am missing
Also, unless I am missing something, why not just add all of the groups you need to the one rule? That will work too.
Would you like to reply?
Login or Register to post your comment.