Chat now with support
Chat with Support

Active Roles 7.6.3 - Synchronization Service Administration Guide

Synchronization Service Overview Deploying Synchronization Service Getting started Connections to external data systems
External data systems supported with built-in connectors
Working with Active Directory Working with an AD LDS (ADAM) instance Working with Skype for Business Server Working with Oracle Working with Exchange Server Working with Active Roles Working with One Identity Manager Working with a delimited text file Working with Microsoft SQL Server Working with Micro Focus NetIQ Directory Working with Salesforce Working with ServiceNow Working with Oracle Unified Directory Working with an LDAP directory service Working with IBM DB2 Working with IBM AS/400 Working with an OpenLDAP directory service Working with IBM RACF connector Working with MySQL database Working with an OLE DB-compliant relational database Working with SharePoint Working with Microsoft 365 Working with Microsoft Azure Active Directory Configuring data synchronization with the SCIM Connector Configuring data synchronization with the Generic SCIM Connector
Using connectors installed remotely Creating a connection Renaming a connection Deleting a connection Modifying synchronization scope for a connection Using connection handlers Specifying password synchronization settings for a connection
Synchronizing identity data Mapping objects Automated password synchronization Synchronization history Scenarios of use
About scenarios Scenario 1: Create users from a .csv file to an Active Directory domain Scenario 2: Use a .csv file to update user accounts in an Active Directory domain Scenario 3: Synchronizing data between One Identity Manager Custom Target Systems and an Active Directory domain Scenario 4: Deprovisioning between One Identity Manager Custom Target Systems and an Active Directory domain Scenario 5: Provisioning of Groups between One Identity Manager Custom Target Systems and an Active Directory domain Scenario 6: Enabling Delta Sync mode between One Identity Manager Custom Target Systems and an Active Directory domain Example of using the Generic SCIM Connector for data synchronization
Appendix A: Developing PowerShell scripts for attribute synchronization rules Appendix B: Using a PowerShell script to transform passwords

Policy object attributes

 

Table 76: Policy object attributes

Attribute

Type

Description

Supported operations

Alias

Single-valued, string

Gets the object’s alias.

Read

DisplayName

Single-valued, string

Gets or sets the display name of the policy.

Read, write
(update only)

Id

Single-valued, string

Gets the object’s ID.

Read

IsSystemUser

Single-valued, Boolean

Gets or sets whether the user identified by the policy is represented as a system account in the user interface.

Read, write
(update only)

Parent

Single-valued, string, reference (WebApplication object)

Gets the object’s parent.

Read

PolicyRoleBindings

Single-valued, string, reference (PolicyRole object)

Gets or sets policy roles for the policy.

Read, write
(update only)

UrlZone

Single-valued, string

Gets or sets the originating zone of an incoming request.

Read, write
(create only)

UserName

Single-valued, string

Gets the user name of the user or group associated with the policy.

Read, write
(create only)

PolicyRole object attributes

 

Table 77: PolicyRole object attributes

Attribute

Type

Description

Supported operations

DenyRightsMask

Multivalued, string

Gets or sets the rights which the policy role denies.

Read, write
(update only)

Description

Single-valued, string

Gets or sets the policy role description.

Read, write
(update only)

GrantRightsMask

Multivalued, string

Gets or sets the rights which the policy role grants.

Read, write
(update only)

Id

Single-valued, string

Gets the policy role GUID.

Read

IsSiteAdmin

Single-valued, Boolean

Gets or sets whether the policy role grants site collection administrator status.

Read, write
(update only)

IsSiteAuditor

Single-valued, Boolean

Gets or sets whether the policy role grants site collection auditor status.

Read, write
(update only)

Name

Single-valued, string

Gets or sets the policy role name.

Read, write
(update only)

Parent

Single-valued, string, reference (WebApplication object)

Gets the object’s parent.

Read

Type

Single-valued, string

Gets the type of the policy role.

Read

Xml

Single-valued, string

Gets the policy role in the XML string format.

Read

Prefix object attributes

 

Table 78: Prefix object attributes

Attribute

Type

Description

Supported operations

Id

Single-valued, string

Gets the object’s ID.

Read

Name

Single-valued, string

Gets the server-relative URL of the prefix without the leading forward slash.

Read

Parent

Single-valued, string, reference (WebApplication object)

Gets the object’s parent.

Read

PrefixType

Single-valued, string

Gets the type of the prefix.

Read

RoleAssignment object attributes

 

Table 79: RoleAssignment object attributes

Attribute

Type

Description

Supported operations

Alias

Single-valued, string

Gets the object’s alias.

Read

Id

Single-valued, string

Gets the object’s ID.

Read

Member

Single-valued, string, reference (Role or Group object)

Gets the user or group for the role assignment.

This attribute is required to create a new RoleAssignment object in SharePoint.

Read

Parent

Single-valued, string, reference (Web object)

Gets the parent for the role assignment.

Read

RoleDefinitionBindings

Single-valued, string, reference (RoleDefinition object)

Gets the role definition bindings for the role assignment.

Read, write
(update only)

Related Documents

The document was helpful.

Select Rating

I easily found the information I needed.

Select Rating