You are viewing limited content. For full access, please sign in.

Question

Question

LFDS / AD synchronisation

asked on November 24, 2017 Show version history

Hi all,

An AD user has been added to a particular AD group.

AD synchronization on the Identity Provider -> Rules has been enabled on LFDS. I have add a sync. rule to poll that specific AD group and the License type is set as None. The poll interval has been left to 0. I have done a manual synchronization and the user is not added to the LFDS Named User list. Please note that a LFDS has been created and the AD group has been added to same.

Any ideas why it is failing.

1 0

Replies

replied on November 27, 2017

Hello all,

I have modified the synchronization rule and put the License as 'Full License'. But the manual synchronization did not work instantly and had to wait for some 3 -4 mins. Is it the normal behaviour of manual synchronization of LFDS? Now the concerned user has been deleted from the AD group, but the user is still assigned the Named user license.

Thanks to let me know.

0 0
replied on November 27, 2017

When synchronizing users, the Directory Server needs to calculate group membership and assign licenses. This is not an instantaneous action; depending on the size of your directory, it may take a couple of minutes.

When a user is deleted from active directory, its license will be removed from the Directory Server during the next synchronization run.

1 0
You are not allowed to follow up in this post.

Sign in to reply to this post.