Administrators preparing to decommission their on‑prem or VM AD server may experience concerns such as:
These issues typically occur due to:
Before decommissioning an AD syncing users to OneLogin:
This can be achieved by filtering the directory in the report.
Users may remain in a Deleting state if:
Fix:
Rather than removing the AD Connector immediately:
This staged approach reduces the risk of authentication failures.
Once all users authenticate successfully via OneLogin Cloud, you can:
Note that if you feel confident about users' passwords, simply deleting the AD connector, skipping step 4 above, will immediately move all users to OneLogin.
© 2026 One Identity LLC. ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center