This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Nested AD groups not supported in SEC 5.5.2 after registry changes

Hi there,


I'm trying to implement RBA within SEC 5.5.2 and assign existing nested AD groups in the roles and sub-estates configuration. According to community.sophos.com/.../122529, after a few registry changes, nested AD should be supported.


However after applying the registry changes, nested AD groups are still not supported in the roles/sub-estates. Does anybody share the same experience?

 

Within the KB article, Scenario 3 is the most applicable in our situation.

 

Thanks.



This thread was automatically locked due to age.
Parents Reply
  • Hi Shweta,

     

    Thanks for your response.There are no specific error messages shown, however when I check a specific user's sub-estate assignment under Manage Roles and Sub-Estates | User and Group View, a warning message is shown:

     

    I have tested that the assignment works when I instead assign the group nested inside the group currently assigned.

     

    Yes, I have applied both registry settings as can be seen from the screenshot:

     

    Regards,

    Kevin

Children