We have several customers who were syncing LDAP accounts based on a high level base distinguished name and thus it was pulling in thousands of objects that were not related to Forms. Now that we have the ability to have multiple base distinguished names we are better able to narrow down to the specific AD locations that we actually need to sync. The problem is that now when we re-sync with the more specific LDAP configuration, there are thousands of accounts from the previous syncs that are no longer valid. These accounts have an X next to them and we can remove them manually in batches of 20, as that is what the new pagination is set to. One specific user has 89,000+ objects of which only 2000+ are in the new sync. Thus to clean up their environment they are having to go through 87,000 objects and delete them in batches of 20.
Is there a way to remove all of the objects that are no longer found in sync? Can the sync be configured to automatically remove objects from the view which are not synced? They don't necessarily need to remove them from the back-end tables but it would be nice to have the ability for them to only see the objects that matter. This is probably a moot point if Participant License get the ability to sync via AD directly in a future version but would be incredibly helpful in the interim.