Connect your Active Directory and ePO - SaaS

Prev Next

ePO - SaaS communicates with your Active Directory through Active Directory Connectors.

Make sure that these conditions are met.

  • You should have one or two systems added in the System Tree with Agent installed as they are required to use as Active Directory Connectors (ADC).

    • Trellix Agent 5.6.0 and later bundles Trellix DXL Client as a component. If you have a previous Trellix Agent version, install Trellix DXL Client separately.

  • You have your Active Directory domain name in DNS-style.

  • Domain name is resolved by the Active Directory Connectors.

  • The system requirements are met.

    Tip

    Determine the system specification depending on the size of your Active Directory.

    • System type: Servers (recommended) or Desktop

    • Server operating system: Windows Server 2012 R2, Windows Server 2016, Windows Server 2019, and Windows Server 2022.

    • Client operating system: Windows 8.1 and Windows 10

    • Memory (RAM):

      • 2 GB for less than 50,000 users

      • At least 4 GB for greater.

You can install your Active Directory Connectors through Product Deployment task or when you register your Active Directory server. For more information about ADC, see KB96055.

  1. Select MenuConfigurationDirectory Service and click New Server.

  2. From the Server type menu on the Description page, select Directory Services, specify a unique name and any details, then click Next.

  3. Enter a Domain name.

    Use DNS-style domain names. For example, internaldomain.com.

  4. Click Select Systems and select the systems you want as your Active Directory Connectors.

    Tip

    For best results, choose servers as your Active Directory Connectors.

    • Click Deploy to deploy the Active Directory Connector.

    • Once the status changes to Installed, click Test Connection to verify the connectivity between ePO - SaaS, your Active Directory Connector, and the Active Directory server.

  5. Choose whether to Use SSL when communicating with this server or not.

    Note

    Enable this option if you set SSL in your Active Directory.

  6. Enter the Administrator User name prefixed with domain and the corresponding Password. Example: internaldomain\administrator.

  7. Either enter a Site name for the server, or select it by clicking Browse and navigating to it.

  8. You can Enable/Disable a schedule that updates the changes in the mapped domain or Active Directory container. You can schedule it hourly or daily based on your requirements.

  9. Click Test Connection to confirm the communication between your Active Directory and ePolicy Orchestrator - On-premises is successful.

    Note

    If the connection is unsuccessful, then make sure the DXL Status of your primary and secondary Active Directory Connectors is Connected.

Import Active Directory containers