SMALDAP - Ability to scan through a group into a sub-group

2 votes

Currently if you have a main AD Group and have it silo'd into more defined sub-groups, it deletes and adds roles to users every time it runs and the audit for the All Users > User Account gets extremely lengthy, very quick. Here is a breakout of how we found this out:

* Main Department Group needed to be broken down to reduce email noise, and make contact with that group on troubleshooting or emails much easier - based on quick expansion and better defined positions

Old breakout:

* IT Group

** User 1
** User 2
** User 3
** User 4
** User 5
** User 6
** User 7
** User 8
** User 9
** User 10
** User 11
** User 12

SMALDAPMon.ini settings:

* Sync1

** Group=IT Group
** Role=Role_ITGroup

Changes Made to AD:

* IT Group

** Sub-GroupDev

*** User 1
*** User 2
*** User 3
*** User 4

** Sub-GroupOps

*** User 5
*** User 6
*** User 7
*** User 8
*** User 9
*** User 10
*** User 11

** User 12 (only user in the main IT group not broken out)

SMALDAPMON.ini settings (new)

* Sync1

** Group

Collecting community feedback Connectors Suggested by: Hidden identity Upvoted: 27 Jan, '21 Comments: 0

Comments: 0