Active Directory synchronization

Prev Next

If your network runs Active Directory, you can use Active Directory synchronization to create, populate, and maintain parts of the System Tree.

Once defined, the System Tree is updated with any new systems (and subcontainers) in your Active Directory.

Leverage Active Directory integration to perform these system management tasks:

  • Synchronize with your Active Directory structure, by importing systems, and the Active Directory subcontainers (as System Tree groups), and keeping them up-to-date with Active Directory. At each synchronization, both systems and the structure are updated in the System Tree to reflect the systems and structure of Active Directory.

  • Import systems as a flat list from the Active Directory container (and its subcontainers) into the synchronized group.

  • Control what to do with potential duplicate systems.

  • Tag newly imported or updated systems.

  • Use the system description, which is imported from Active Directory with the systems.

Use this process to integrate the System Tree with your Active Directory systems structure:

  1. Configure the synchronization settings on each group that is a mapping point in the System Tree. At the same location, configure whether to:

    • Deploy agents to discovered systems.

    • Delete systems from the System Tree when they are deleted from Active Directory.

    • Allow or disallow duplicate entries of systems that exist elsewhere in the System Tree.

  2. Use the Synchronize Now action to import Active Directory systems (and possibly structure) into the System Tree according to the synchronization settings.

  3. Use an NT Domain/Active Directory synchronization server task to regularly synchronize the systems (and possibly the Active Directory structure) with the System Tree according to the synchronization settings.