Active Directory is not synching showing Last synchronized over weeks old
book
Article ID: 379198
calendar_today
Updated On:
Products
VMware Aria Suite
Issue/Introduction
Testing connection to Active Directory is successful but it is not synching and importing new users.
Manually running Synchronize User Groups does not update the users and groups. The Last synchronized date does not update.
Environment
Aria Operations
Resolution
Check the Search Criteria setting. If the values are customized ensure the group or member matches the criteria to import. Default values values will generally import all.
The default values for Group Search Criteria is "(|(objectClass=group)(objectClass=groupOfNames))".
The default value for Member Attribute is "member".
Run a Test connection on AD configuration and check the web.log and analytic logs for errors.
If the Search Criteria is correct and Test connection has no issues, recreate the AD connection.
Take a screenshot or note of the configuration setting for Active Directory and have the authentication user name password available.
Create a new authentication source by clicking the ADD button.
Name the Display Name different from the original. Configure the same settings from your screenshot or note and click TEST to verify the connection is successful.
Select Synchronize User Groups on the new authentication source. Once it is complete it should update the Last synchronized time and date.
LDAP synchronize runs every 30 minutes. Checking the analytics log you will see:
2024-09-23T08:39:03,679+0000 INFO [DistTaskSync-1373faf4-205d-4557-9e64-22f790581651] com.vmware.vcops.auth.server.ldap.Sync.doSyncWithRetry - Ldap sync for AD SSL started