立即与支持人员聊天
与支持团队交流

Active Roles 8.1.5 - Administration Guide

Introduction Getting started with Active Roles Configuring rule-based administrative views Configuring role-based administration Rule-based autoprovisioning and deprovisioning
Provisioning Policy Objects Deprovisioning Policy Objects How Policy Objects work Policy Object management tasks Policy configuration tasks
Property Generation and Validation User Logon Name Generation Group Membership AutoProvisioning Exchange Mailbox AutoProvisioning AutoProvisioning in SaaS products OneDrive Provisioning Home Folder AutoProvisioning Script Execution Microsoft 365 and Azure Tenant Selection E-mail Alias Generation User Account Deprovisioning Office 365 Licenses Retention Group Membership Removal Exchange Mailbox Deprovisioning Home Folder Deprovisioning User Account Relocation User Account Permanent Deletion Group Object Deprovisioning Group Object Relocation Group Object Permanent Deletion Notification Distribution Report Distribution
Deployment considerations Checking for policy compliance Deprovisioning users or groups Restoring deprovisioned users or groups Container Deletion Prevention policy Picture management rules Policy extensions
Using rule-based and role-based tools for granular administration Workflows
Key workflow features and definitions About workflow processes Workflow processing overview Workflow activities overview Configuring a workflow
Creating a workflow definition for a workflow Configuring workflow start conditions Configuring workflow parameters Adding activities to a workflow Configuring an Approval activity Configuring a Notification activity Configuring a Script activity Configuring an If-Else activity Configuring a Stop/Break activity Configuring an Add Report Section activity Configuring a Search activity Configuring CRUD activities Configuring a Save Object Properties activity Configuring a Modify Requested Changes activity Enabling or disabling an activity Enabling or disabling a workflow Using the initialization script
Approval workflow Email-based approval Automation workflow Activity extensions
Temporal Group Memberships Group Family Dynamic groups Active Roles Reporting Management History Entitlement profile Recycle Bin AD LDS data management One Identity Starling Join and configuration through Active Roles Managing One Identity Starling Connect Configuring linked mailboxes with Exchange Resource Forest Management Configuring remote mailboxes for on-premises users Migrating Active Roles configuration with the Configuration Transfer Wizard Managing Skype for Business Server with Active Roles
About Skype for Business Server User Management Active Directory topologies supported by Skype for Business Server User Management User Management policy for Skype for Business Server User Management Master Account Management policy for Skype for Business Server User Management Access Templates for Skype for Business Server Configuring the Skype for Business Server User Management feature Managing Skype for Business Server users
Exchanging provisioning information with Active Roles SPML Provider Monitoring Active Roles with Management Pack for SCOM Configuring Active Roles for AWS Managed Microsoft AD Azure AD, Microsoft 365, and Exchange Online Management
Configuring Active Roles to manage Hybrid AD objects Unified provisioning policy for Azure M365 Tenant Selection, Microsoft 365 License Selection, Microsoft 365 Roles Selection, and OneDrive provisioning Changes to Active Roles policies for cloud-only Azure objects
Managing the configuration of Active Roles
Connecting to the Administration Service Managed domains Using unmanaged domains Evaluating product usage Creating and using virtual attributes Examining client sessions Monitoring performance Customizing the Console Using Configuration Center Changing the Active Roles Admin account Enabling or disabling diagnostic logs Active Roles Log Viewer
SQL Server replication Using regular expressions Administrative Template Configuring federated authentication Communication ports Active Roles and supported Azure environments Integrating Active Roles with other products and services Active Roles Language Pack Active Roles Diagnostic Tools Active Roles Add-on Manager

Importing configuration data

When deploying the Administration Service, you may need to import configuration data from an existing database to ensure that the new Administration Service instance has the same configuration as the existing one. Importing configuration data to a newly created database instead of attaching the Administration Service to an existing database is necessary if the version of the Administration Service you are deploying is greater than the version of the database you want to use. Some examples of such a situation are the following:

  • Upgrading the Administration Service while preserving its configuration.

  • Restoring configuration data from a backup copy of the database whose version does not match the version of the Administration Service.

For more information, see Importing configuration data in the Active Roles Quick Start Guide.

Importing Management History data

A part of the Active Roles database, the Management History data storage is empty after you have configured the Administration Service with the option to create a new database. During import of configuration data, Configuration Center transfers only the administrative right assignments, policy definitions, administrative view settings, workflow definitions and other parameters that determine the Active Roles work environment. Management history data is excluded from the import operation to reduce the time it takes to upgrade the configuration of the Administration Service.

The Management History data describes the changes that were made to directory data via Active Roles. This includes information about who did what and when it was done as applied to the directory data management tasks. The Management History data is used as a source of information for the change history and user activity reports. In addition, the Management History data storage holds information about various tasks related to approval workflow and temporal group membership.

After configuring the Administration Service with the option to create a new database, and importing the configuration data from an existing database, you must take additional steps to transfer the Management History data from that database to the new database. Configuration Center provides the Import Management History wizard to perform this task.

The Import Management History wizard populates a new storage of Management History data with the data found in an existing Active Roles database, to make the data available to the Active Roles user interfaces after your configure a new Administration Service instance. The wizard merges the Management History data from the source database with the data stored in the destination database.

NOTE: The Import Management History wizard only adds new data, keeping intact any data that already exists in the destination database. You may import your legacy Management History data at any time after you have configured the Administration Service, without the risk of losing any data.

Although importing Management History data looks similar to the task of importing configuration data, there are important differences:

  • Due to a much larger volume of Management History data compared to configuration data, importing Management History data takes much longer than importing configuration data.

  • As Management History data has dependencies on configuration data (but not vice versa), you must import configuration data first. You can import Management History data after that if needed.

Because of these considerations, Configuration Center provides a different wizard for importing Management History. The distinctive features of the Import Management History wizard are the following:

  • The wizard does not replace the existing data in the destination database. It only retrieves and upgrades Management History records from the source database, and then adds the upgraded records to the destination database.

  • The wizard allows you to specify the date range for the Management History records you want to import, so you can import only records that occurred within a particular time frame instead of importing all records at a time.

  • Canceling the wizard while the import operation is in progress does not cause you to lose the import results, so you can stop the import operation at any time. The records imported by the time that you cancel the wizard are retained in the destination database. If you start the wizard again, the wizard imports only records that were not imported earlier.

To start the Import Management History wizard, click Import Management History on the Administration Service page in the Configuration Center main window. During the import operation, the wizard retrieves and upgrades Management History records from the source database, and adds the upgraded records to the destination database.

For more information, see Importing Management History data in the Active Roles Quick Start Guide.

Viewing the state of the Administration Service

On the Administration Service page in the Configuration Center main window, you can view the state of the Administration Service, such as:

  • Ready for use: Administration Service is running and ready to process client requests.

  • Getting ready: Administration Service has just started and is preparing to process client requests.

  • Stopping: Administration Service is preparing to stop.

  • Stopped: Administration Service is stopped.

  • Unknown: Unable to retrieve the state information.

Starting, stopping or restarting the Administration Service

You can start, stop or restart the Administration Service by clicking Start, Stop or Restart at the top of the Administration Service page in the Configuration Center main window. If the function of a given button is not applicable to the current state of the Administration Service, the button is unavailable.

相关文档

The document was helpful.

选择评级

I easily found the information I needed.

选择评级