The Groups log of PGP Encrypion Server (Symantec Encryption Management Server) displays the following Notice:
GROUPQUEUE: PGP Universal groupd group membership queue service is disabled in global pref
This notice is generated if the group-membership-optimization setting in the /etc/ovid/prefs.xml file is set to false:
<group-membership-optimization>false</group-membership-optimization>
The group-membership-optimization setting is set to false by default, therefore this Notice can be ignored.
Note: When using Directory Synchronization, always use port 636 and the Fully Qualified Domain Name (FQDN) for proper TLS communication from the PGP Encryption Server to the domain controller to ensure all communications are encrypted. Using IP addresses for LDAP is not recommended and many domain controllers will reject the connections if this is done.Applies To
Symantec Encryption Management Server 3.3.2 MP1 and above
222563 - Grouping Changes in Active Directory group membership take hours to update PGP Encryption Server
161727 - Symantec Encryption Management Server Groups log displays "PGP Universal groupd group membership queue service is disabled in global pref"
153663 - Grouping and Group Membership on the PGP Encryption Server (Symantec Encryption Management Server)
247593 - Users not grouped properly if certificates from Active Directory are rejected (PGP Server Unable to Group Users)