Submitting forms on the support site are temporary unavailable for schedule maintenance. If you need immediate assistance please contact technical support. We apologize for the inconvenience.
Allow a blank user name and password in the connection configuration for AD
Description
In order to use an Active Directory Group Managed Service Account (gMSA), it must be possible to leave the user name and password blank in the configuration of an Active Directory (AD) connection, thus forcing authentication via the currently logged on user. The sync editor and AD connection configuration do not allow this.
Cause
This is a product defect (#32693).
Resolution
WORKAROUND: None STATUS: This is fixed in version 8.1.3 and above. For older versions, please contact Support and ask for a copy of the fix for 32693.
Change Request
32693
Additional Information
After upgrading to version 8.1.3, 8.2.0, or higher, If a gMSA is needed for running the sync, configure the job service to run as gMSA and leave the credentials of the component empty.
The sync component itself cannot retrieve the credentials of the gMSA at runtime.
Your Request will be reviewed by our technical reviewer team and, if approved, will be added as a Topic in our Knowledgebase.
Recommended Content
Product(s):
Identity Manager
8.2.1
Topic(s):
Troubleshooting
Article History:
Created on: 4/3/2020 Last Update on: 4/10/2024
Thank you for your feedback for Topic Request
Your Request will be reviewed by our technical reviewer team and, if approved, will be added as a Topic in our Knowledgebase.
Welcome to One Identity Support
You can find online support help for*product* on an affiliate support site. Click continue to be directed to the correct support content and assistance for *product*.
The One Identity Portal no longer supports IE8, 9, & 10 and it is recommended to upgrade your browser to the latest version of Internet Explorer or Chrome.