Active Directory Setup Nested Groups

Active Directory Setup Nested Groups

Comments

  • WIth the Active Directory syncing in Decisions, we want to filter the AD for only specific groups selected. That has been enabled, but when we run the sync job no users appear. Does a user account have to be added or a part of the selected AD group directly, or can then be within a sub group?

    For example, my user account is a part of "Group A" in AD. That "Group A" is then added to the "Decisions Group" setup in AD. When we use the filtering in Decisions, we want to select the "Decisions Group". Right now, no users show up. So, is this supported, or do users have to be added directly to the "Decisions Group"?

    Thanks

  • Current Active Directory syncing logic only checks one level down in a security group. It will not recursively check any nested security groups for users to sync. You will need to select the appropriate groups that users are directly in if you do not want to select either Entire Domain or Selected Org Unit for your sync settings.

Sign In or Register to comment.