Announcing the Saviynt Knowledge Exchange unifying the Saviynt forums, documentation, training,
and more in a single search tool across platforms. Read the announcement here.

To import Member only from AD

NM
Valued Contributor II
Valued Contributor II

Hi Team,

We want to import "Member" attribute from AD and not MemberOf attribute from AD, has anyone done the same configuration for AD connector?

Thanks

 

10 REPLIES 10

rushikeshvartak
All-Star
All-Star

Did you tried it ? if yes what is error you are getting ?


Regards,
Rushikesh Vartak
If you find this response useful, kindly consider selecting 'Accept As Solution' and clicking on the 'Kudos' button.

NM
Valued Contributor II
Valued Contributor II

Hi @rushikeshvartak , It is importing the entitlement but the mapping between account and entitlement is not happening.

Please share json


Regards,
Rushikesh Vartak
If you find this response useful, kindly consider selecting 'Accept As Solution' and clicking on the 'Kudos' button.

NM
Valued Contributor II
Valued Contributor II

Hi @rushikeshvartak , Here mapping json

{"importGroupHierarchy" : "false","performGroupAccountLinking": "true","entitlementTypeName": "member","groupAccountMappingAttributeName":"member","incrementalTimeField": "whenChanged", "groupObjectClass":"(objectclass=group)", "mapping": "entitlement_value:distinguishedName_char,entitlement_glossary:description_char,RECONCILATION_FIELD:entitlement_value"}

Raghu
All-Star
All-Star

@NM  check below article it will help full

https://forums.saviynt.com/t5/identity-governance/deleting-multi-valued-attributes-in-openldap/m-p/5...

 


Thanks,
Raghu
If this reply answered your question, Please Accept As Solution and hit Kudos.

NM
Valued Contributor II
Valued Contributor II

Hi @Raghu , It is sort of a Custom LDAP configuration, I am just trying to find out a way to do it directly from AD connector .. just pulling in member instead of memberof

Its not supported only memberof entitlement type is supported currently


Regards,
Rushikesh Vartak
If you find this response useful, kindly consider selecting 'Accept As Solution' and clicking on the 'Kudos' button.

NM
Valued Contributor II
Valued Contributor II

@rushikeshvartak , we are 24.2 was anything changes because it does import the entitlementtype(Member).

Yes its possible some one also done testing in past but code have hardcoded memberOf hence it won;t work. will share thread once found


Regards,
Rushikesh Vartak
If you find this response useful, kindly consider selecting 'Accept As Solution' and clicking on the 'Kudos' button.

NM
Valued Contributor II
Valued Contributor II

Hi @rushikeshvartak , Yes please Thanks!!.. timelines are quite tight for AD onboarding.