Skip to end of metadata
Go to start of metadata

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

Version 1 Next »

This article describes how to set up Microsoft Active Directory (AD) as data source for Smart ID Identity Manager (PRIME). In general PRIME communicates with AD via LDAP or LDAPS protocol.

Prerequisites

The following prerequisites apply: 

  • A domain controller can be reached from PRIME server via corresponding ports (standard ports are 389 for LDAP and 636 for LDAPS on Active Directory).
  • A domain user service account is available in AD and has sufficient permissions on the objects for the relevant use cases in PRIME.
  • The organization unit (OU) and domain components (DC) to be synchronized with PRIME are defined. For example, OU=Employee, DC=example, DC=com. 

Step-by-step instruction

  1. Set up data pool with an LDAP data source. 
  2. Set up batch synchronization with the LDAP data pool. 
  3. Configure LDAPS if required.



  • No labels