This article describes how to set up Microsoft Active Directory (AD) as data source for Smart ID Identity Manager (PRIME). In general PRIME communicates with AD via LDAP or LDAPS protocol.
Prerequisites
The following prerequisites apply:
A domain controller can be reached from PRIME server via corresponding ports (standard ports are 389 for LDAP and 636 for LDAPS on Active Directory).
A domain user service account is available in AD and has sufficient permissions on the objects for the relevant use cases in PRIME.
The organization unit (OU) and domain components (DC) to be synchronized with PRIME are defined. For example, OU=Employee, DC=example, DC=com.