During an Active Directory (AD) Sync cycle, SpanVA has detected that the number of deletions exceeds the configured threshold. As a result, the deletion protection feature is triggered, preventing the deletions from occurring automatically. The administrator receives an email alert and must take appropriate action to assess and respond.
Environment
SpanVA with Active Directory Sync enabled
At least one active synchronization profile configured
Resolution
Step-by-Step Response Plan:
Log in to SpanVA.
Navigate to the impacted Sync Profile.
Review the number of users flagged for deletion to determine if the deletions are valid (monitoring logs).
If the deletions are legitimate:
Temporarily increase the deletion protection threshold percentage, or disable deletion protection.
Run the AD Sync manually to apply the deletions.
After syncing, reset the deletion protection percentage to its original value to maintain safeguards.
If the deletions are NOT legitimate:
Investigate the root cause (e.g., incorrect OU scoping, sync filters, upstream changes in AD).
Correct the issue before attempting another sync cycle.
Important: Always verify the legitimacy of deletion events before modifying protection settings to avoid unintended data loss.