Important: The domain controller and the domain must be resolved by DNS query for successful authentication. If the DNS cannot be resolved, the target system connection is refused.
Have the following information available for setting up a synchronization project.
Data | Explanation |
---|---|
Full domain name |
Full domain name. |
User account and password for domain login |
User account and password for domain login. This user account is used to access the domain. Make a user account available with sufficient permissions. For more information, see Users and permissions for synchronizing with Active Directory. |
DNS name of the domain controller. |
Full name of the domain controller for connecting to the synchronization server to provide access to Active Directory objects. Example: <Name of servers>.<Fully qualified domain name> |
Communications port on the domain controller |
Communications port on the domain controller. LDAP default communications port is 389. |
Authentication type |
You can only connect to a target system if the correct type of authentication is selected. The Secure authentication type is used by default. |
Synchronization server for Active Directory |
All One Identity Manager Service actions are run against the target system environment on the synchronization server. Data entries required for synchronization and administration with the One Identity Manager database are processed by the synchronization server. The One Identity Manager Service must be installed on the synchronization server with the Active Directory connector. The synchronization server must be declared as a Job server in One Identity Manager. Use the following properties when you set up the Job server.
For more information, see System requirements for the Active Directory synchronization server. |
One Identity Manager database connection data |
|
Remote connection server |
To configure synchronization with a target system, One Identity Manager must load the data from the target system. One Identity Manager communicates directly with the target system to do this. Sometimes direct access from the workstation, on which the Synchronization Editor is installed, is not possible. For example, because of the firewall configuration or the workstation does not fulfill the necessary hardware and software requirements. The remote connection server and the workstation must be in the same Active Directory domain. Remote connection server configuration:
The remote connection server must be declared as a Job server in One Identity Manager. The Job server name is required. TIP: The remote connection server requires the same configuration as the synchronization server (with regard to the installed software and entitlements). Use the synchronization as remote connection server at the same time by installing the RemoteConnectPlugin as well. For more detailed information about setting up a remote connection, see the One Identity Manager Target System Synchronization Reference Guide. |