To configure a User Account Permanent Deletion policy
-
On the Policy to Configure page, select User Account Permanent Deletion, and then click Next.
-
On the Deletion Options page, do one the following, and then click Next:
-
Click Do not automatically delete the object if you want the policy not to delete deprovisioned user accounts.
-
Click Delete the object after retention period if you want the policy to schedule deprovisioned user accounts for deletion. Then, in Retention period (days), specify the number of days to retain the deprovisioned user account before it is deleted.
-
Click Delete the object to Active Directory Recycle Bin immediately if you want the policy to move deprovisioned user accounts to Recycle Bin.
Click Next.
If you select the third option, you should apply this policy to domains that have Active Directory Recycle Bin enabled; otherwise, the policy will have no effect. With this option, once a user account has been deprovisioned, the policy causes Active Roles to delete the user account immediately. In a domain where Active Directory Recycle Bin is enabled, this deletion merely means that the account is marked as deleted and moved to a certain container from which it can be restored, if necessary, without any data loss.
-
-
On the Enforce Policy window, you can specify objects to which this Policy Object is to be applied:
-
Click Add, and use the Select Objects dialog to locate and select the objects you want.
-
-
Click Next, and then click Finish.