Click HERE to see how Saviynt Intelligence is transforming the industry. |
05/31/2022 09:41 AM
Hi,
We are planning to configure the Password Synchronization from Active Directory to achieve the below use case. Please let us know how to achieve it.
Use Case-
For same user we have two accounts in Active Directory(Primary and Seconadry). Both these primary and secondary accounts are linked to single identity in Saviynt.
We don't want to capture the password changes of Secondary account from AD. Only when the password of primary account is changed, that should be captured and replicated in the desired targets.
Secondary account password will be different and will be managed separatly by AD team.
Please sugguest.
I am following below freshdesk link to setup the password sync.
https://saviynt.freshdesk.com/support/solutions/articles/43000580937-configuring-password-synchroniz...
05/31/2022 10:37 PM
Hello,
Are your admin and user accounts for AD being managed under the same endpoint? There is a correlation field in the Configuration for Password sync filter which you can use to only sync passwords for normal accounts. You would need to ensure the correlation field set on the user matches the normal account name.
05/31/2022 10:52 PM
Hi Sahaj,
Thanks for the update.
Yes both the admin and user accounts are managed under same endpoint. Will try your suggestion of using the Password sync filter correlation field.