Active Directory is not synching showing Last synchronized over weeks old
search cancel

Active Directory is not synching showing Last synchronized over weeks old

book

Article ID: 379198

calendar_today

Updated On:

Products

VMware Aria Suite

Issue/Introduction

Testing connection to  Active Directory is successful but it is not synching and importing new users.

Manually running Synchronize User Groups does not update the users and groups.  The Last synchronized date does not update.

Environment

Aria Operations

Resolution

  1. Check the Search Criteria setting.  If the values are customized ensure the group or member matches the criteria to import.  Default values values will generally import all.
    1. The default values for Group Search Criteria is "(|(objectClass=group)(objectClass=groupOfNames))".
    2. The default value for Member Attribute is "member".
  2. Run a Test connection on AD configuration and check the web.log and analytic logs for errors.  
  3. If the Search Criteria is correct and Test connection has no issues, recreate the AD connection.
    1. Take a screenshot or note of the configuration setting for Active Directory and have the authentication user name password available.
    2. Create a new authentication source by clicking the ADD button.
    3. Name the Display Name different from the original.  Configure the same settings from your screenshot or note and click TEST to verify the connection is successful.
    4. Select Synchronize User Groups on the new authentication source.  Once it is complete it should update the Last synchronized time and date.  
    5. LDAP synchronize runs every 30 minutes.  Checking the analytics log you will see:
      2024-09-23T08:39:03,679+0000 INFO  [DistTaskSync-1373faf4-205d-4557-9e64-22f790581651]  com.vmware.vcops.auth.server.ldap.Sync.doSyncWithRetry - Ldap sync for AD SSL started