Announcing the Saviynt Knowledge Exchange unifying the Saviynt forums, documentation, training,
and more in a single search tool across platforms. Read the announcement here.

To import Member only from AD

NM
Regular Contributor III
Regular Contributor III

Hi Team,

We want to import "Member" attribute from AD and not MemberOf attribute from AD, has anyone done the same configuration for AD connector?

Thanks

 

10 REPLIES 10

rushikeshvartak
All-Star
All-Star

Did you tried it ? if yes what is error you are getting ?


Regards,
Rushikesh Vartak
If you find the response useful, kindly consider selecting Accept As Solution and clicking on the kudos button.

NM
Regular Contributor III
Regular Contributor III

Hi @rushikeshvartak , It is importing the entitlement but the mapping between account and entitlement is not happening.

Please share json


Regards,
Rushikesh Vartak
If you find the response useful, kindly consider selecting Accept As Solution and clicking on the kudos button.

NM
Regular Contributor III
Regular Contributor III

Hi @rushikeshvartak , Here mapping json

{"importGroupHierarchy" : "false","performGroupAccountLinking": "true","entitlementTypeName": "member","groupAccountMappingAttributeName":"member","incrementalTimeField": "whenChanged", "groupObjectClass":"(objectclass=group)", "mapping": "entitlement_value:distinguishedName_char,entitlement_glossary:description_char,RECONCILATION_FIELD:entitlement_value"}

Raghu
Valued Contributor III
Valued Contributor III

@NM  check below article it will help full

https://forums.saviynt.com/t5/identity-governance/deleting-multi-valued-attributes-in-openldap/m-p/5...

 


Thanks,
Raghu
If this reply answered your question, Please Accept As Solution and hit Kudos.

NM
Regular Contributor III
Regular Contributor III

Hi @Raghu , It is sort of a Custom LDAP configuration, I am just trying to find out a way to do it directly from AD connector .. just pulling in member instead of memberof

Its not supported only memberof entitlement type is supported currently


Regards,
Rushikesh Vartak
If you find the response useful, kindly consider selecting Accept As Solution and clicking on the kudos button.

NM
Regular Contributor III
Regular Contributor III

@rushikeshvartak , we are 24.2 was anything changes because it does import the entitlementtype(Member).

Yes its possible some one also done testing in past but code have hardcoded memberOf hence it won;t work. will share thread once found


Regards,
Rushikesh Vartak
If you find the response useful, kindly consider selecting Accept As Solution and clicking on the kudos button.

NM
Regular Contributor III
Regular Contributor III

Hi @rushikeshvartak , Yes please Thanks!!.. timelines are quite tight for AD onboarding.