Synchronization Rules

This topic provides details on how the user synchronization works between the Microsoft Active Directory (LDAP for short) and the Automation Engine via LDAP Sync.

Notes:

This page includes the following:

Scenarios Where no Synchronization Occurs

If at least one of the following cases is true, no synchronization occurs:

Note: Manual update of users and user groups is required.

Scenario I: One AE User Group is Mapped to One LDAP User Group

The following statements are true:

Rules

Important! In all other cases, no synchronization takes place.

Scenario II: Two User Groups in AE and LDAP: Both AE User Groups are Mapped to the Corresponding LDAP User Groups (1:1 Relation)

The following statements are true:

Rules

The basic rules of Scenario I apply.

Additionally:

Scenario III: Two User Groups in AE and LDAP - Only One AE User Group is Mapped to the Corresponding LDAP User Group

The following statements are true:

Rules

The basic rules of Scenario I apply.

Additionally:

Scenario IV: Two User Groups in AE and one in LDAP - Two AE User Groups are Mapped to a Single LDAP User Group

The following statements are true:

Rules

The basic rules of Scenario I apply.

Additionally:

Scenario V: Two User Groups in LDAP and One in AE - Two LDAP User Groups are Mapped to a Single AE User Group

This scenario is not supported by LDAP Sync.