Starting the AD synchronization script using the Web UI

Prev Next

Before you can configure AD sender impersonation detection rules, you must enable Office 365 AD synchronization. The appliance starts a script that queries the AD data for users and groups.

Note

The first time the script runs, it runs continuously to obtain all the group data from Office 365 AD. Thereafter, the script checks Office 365 AD for group and user changes every 24 hours.

After the script completes its initial run, use the Email Security - Server appliance Web UI to view the AD groups in your organization and select the groups to be used in AD impersonation detection rules. The Email Security - Server appliance watches for sender impersonation attacks on the AD groups and users you specify.

Prerequisites

To start the AD synchronization script:
  1. Log in to the Email Security - Server appliance Web UI as an administrator.

  2. Choose Settings > Impersonation > AD Group Rules.

  3. Click to enable the Enable Active Directory Group Impersonation Rules option.

    O365AD_Group_Rules_tab.png

    The script begins within one minute.

  4. Wait until the script completes before you configure AD impersonation detection rules. Depending on the size of the active directory, you must allow 10 to 15 minutes for the script to query the Office 365 AD for groups in your organization.

    Note

    The appliance Web UI does not display the AD synchronization progress or status.

    The first time the script runs, it runs continuously to obtain all the group data from Office 365 AD. Thereafter, the script checks Office 365 AD for group and user changes every 24 hours.