Announcing the Saviynt Knowledge Exchange unifying the Saviynt forums, documentation, training,
and more in a single search tool across platforms. Read the announcement here.

AD endpoint filter syntax to reach child domain OUs

sangitaladi
Regular Contributor
Regular Contributor
Hi Team
 
We have below usecase:
-- One AD forest contains ,one primary domain and two child AD domains.
-- Need to do EMAIL,UPN,sAMAccountName uniqueness check across entire forest, while provisioning identitiies in one of the child domain. 
--So  we are planning to, create one AD connector that will connect to the Primary domain controller and as part of end point filter , would like to reach both  Child domain controllers where will provision/reconcile identities.
--- Could you please provide the endpoint filter syntax , to reach different OU's of Child domain controllers.
 
 
CheckForUnique feature queries:
1. If we connect to the primary domain controller via AD connector, Will CheckForUnique feature works on whole three domain controller Primary and the two child domain controller? Since Primary domain controller is connected to two child DCs.
3 REPLIES 3

rushikeshvartak
All-Star
All-Star

https://saviynt.freshdesk.com/support/solutions/articles/43000615764-active-directory-ad-connector-g...

uniqueness will be checked per endpoint 


Regards,
Rushikesh Vartak
If you find the response useful, kindly consider selecting Accept As Solution and clicking on the kudos button.

sangitaladi
Regular Contributor
Regular Contributor

Hi Rushikesh

If we connect to Primary domain controller, will the connector perform Uniqueness check across the three DC- Primary DC and the other two Child DC(since they are in master-child relationship)?

Regards

Sangita Ladi

 

Considering you will be used endpoint filter it may not perform uniqueness as domain will be different 


Regards,
Rushikesh Vartak
If you find the response useful, kindly consider selecting Accept As Solution and clicking on the kudos button.