AD Sync Service V2.0 NEIL CHONG-KIT | PRODUCT MANAGER 1 INTRANET CONNECTIONS You Are Here
Policy Assist (V13.5) INTRANETCONNECTIONS 2 Policy Assist (V13.5) Policy Management Image Slider Widget Active Directory Sync Service 2.0 Missed the last webinar?
AD Sync Service 2.0 INTRANETCONNECTIONS 3 What is AD Sync Service One way sync of information pulled from Active Directory into Intranet Connections Uses the LDAP protocol Does not support Azure AD This Service Synchronizes Login credentials for logins (SSO) Employee information for Employee Directory (name, photo, title, department, etc.) Groups for setting security permissions Supervisor relationships
Examples INTRANETCONNECTIONS 4 SSO Login InformationForm Approvals Permissions by Group Fields in Employee Directory Information pulled for Active Directory is used in many places…
Configuration Over Structural Changes INTRANETCONNECTIONS 5 Issue: Employees to sync are in two different OUs V1.0 Solution Change AD Organizational Structure Create Intranet Users group and manually add employees V2.0 Solution Change Intranet AD Configuration Easily target multiple OUs
V2.0 Available But Not Enabled INTRANETCONNECTIONS 6 After upgrading to Intranet Connections V13.5, AD Sync Service V2.0 is installed, but not enabled. After upgrade AD Sync Service 1.0 still available and running Reason: Prevents disruption (if it ain’t broke…) Contact support to enable V2.0 and screens Enabling V2.0 requires re-configuring AD Connection
AD Sync Services Home Page INTRANETCONNECTIONS 7
Add Connection INTRANETCONNECTIONS 8
Add Targets INTRANETCONNECTIONS 9 Add New Target Existing Targets Connection Options
Add New Target INTRANETCONNECTIONS 10
Sync Target List INTRANETCONNECTIONS 11 1.Import into Employee Directory just the accounts in OU People that are also members of the Staff group. 2.Only create logins for the accounts in OU People that are members of the Volunteers group
Employee Mappings INTRANETCONNECTIONS 12
Configuration Overview INTRANETCONNECTIONS 13 Per Connection Domain Controller Settings Sync Interval Sync User Manager as Supervisor Disable users disabled in AD Employee Field Mappings Multiple Targets Per Target Login, Employee, or Group One OU Optional Group Filter
Why switch over? INTRANETCONNECTIONS 14 Target multiple OUs instead of Group to eliminate step of adding new users to Group Choose to have only some people in Employee Directory, and others with just login access Resolve timeout issues when syncing thousands of users when changing LDAP MaxPageSize not an option Have different Employee Directory field mappings for different employees Need better troubleshooting options to discover why an employee is not syncing
15 Time for some Q&A
16 Thanks for joining us today Please us with any more questions to We'd love to hear from you. THE END