Is the Active Directory Auth a static or active service, do I have to import every time I make changes to my AD Users or does the XG verify against my AD server?
This thread was automatically locked due to age.
Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.
Is the Active Directory Auth a static or active service, do I have to import every time I make changes to my AD Users or does the XG verify against my AD server?
Active.
It will keep displayname and email in sync. It will do an ldap lookup when the account is used to verify if the user is disabled or if the password provided is correct.
I have NOT played with group membership yet, because I don't want to break my live environment, but I have every reason to believe it adjusts groups as well.
Edit:
I just spoke with one of the Architect trainers. He confirmed - Group membership is also updated at each login. Information is cached to a small extent to allow for the nice pretty displays in the system, but each login, it is updated from AD.
--
Chavous Camp
UTM, SMC, SGN Certified Engineer / XG Certified Architect
Active.
It will keep displayname and email in sync. It will do an ldap lookup when the account is used to verify if the user is disabled or if the password provided is correct.
I have NOT played with group membership yet, because I don't want to break my live environment, but I have every reason to believe it adjusts groups as well.
Edit:
I just spoke with one of the Architect trainers. He confirmed - Group membership is also updated at each login. Information is cached to a small extent to allow for the nice pretty displays in the system, but each login, it is updated from AD.
--
Chavous Camp
UTM, SMC, SGN Certified Engineer / XG Certified Architect