You are viewing limited content. For full access, please sign in.

Question

Question

Bulk import users from Active Directory into Directory Server

asked on July 22, 2019

Hi,

Is there a way to bulk import users from Active Directory into Directory Server? We have 4000 employees that will need access to Form and there must be a better way to add them all to LFDS from active directory rather than one by one manually.

0 0

Replies

replied on July 22, 2019 Show version history

You can configure your AD domain controller(s) as an Identity Provider.

 

Then you can configure the synchronization on the main Settings page

1 0
replied on July 22, 2019

Thank you so much. I am going to try it out and let you know how it goes.

0 0
replied on July 23, 2019

Hi Jason,

We tried this but it did not work. I noticed that our Setting does not look like your. We are on Laserfiche Directory Server Version 10.0.0.222.

Does it make a difference?

0 0
replied on July 23, 2019 Show version history

What setting page looks different? The screenshot you posted is the Rules configuration page, which is something different.

What do you see under the "General" tab, which is where you set up the identity provider(s)?

Also, at the top of the page, there should be an "i" button next to the Synchronize button. If you click that, it will tell you the results of the last sync attempt.

0 0
replied on July 23, 2019

When you say it didn't work, do you mean that the users in this group were not added to LFDS or that they can't log into Forms?

1 0
replied on July 23, 2019

Hi Jason,

This is what I am seeing under General Tabs. 

I don't have the 'i' button to see last sync attempt.

 

Hi Miruna,

Yes, the users in this group were not added to LFDS. We are expecting to see 4000+ users, we only see 367 users.

0 0
replied on July 23, 2019 Show version history

Looks like it hasn't tried to sync yet.

Did you enable AD synchronization on the General tab? This is separate from configuring the Identity Providers (my first post has two separate screenshots).

0 0
replied on July 23, 2019

Yes, we have that option enabled.

0 0
replied on July 23, 2019

That's not the same page. The screenshot is still showing the Identity Providers > Rules page, which is only applying AD sync to the licensing rules.

You need to look at the AD synchronization settings on the main General settings page, which is the "General" link directly below where it says "Laserfiche Directory Server"

0 0
replied on July 23, 2019

I see what you meant. This is what I have under General

0 0
replied on July 23, 2019 Show version history

Interesting. It has been a while since I worked with 10.0, and it looks like they moved a lot around since then so Miruna will probably be able to provide better assistance.

I would have thought it would still be there or under Identity Providers > General.

0 0
replied on July 23, 2019

Thank you

0 0
replied on July 23, 2019

What happens when you hit the "Synchronize" button to try manually initiating the synchronization?

Note that in 10.0, you need to perform a browser refresh before the users will appear:

If the users still have not synchronized, you can check for errors in the event log under Application Logs > Directory Server > Server > Admin.

The most common reason for failure is insufficient licenses, so you could perform a test with a much smaller group first to (1) determine whether the issue is insufficient licenses and (2) to more quickly troubleshoot since the sync will finish faster.

1 0
You are not allowed to follow up in this post.

Sign in to reply to this post.