AD group members and nested groups members are not properly synchronizing
search cancel

AD group members and nested groups members are not properly synchronizing

book

Article ID: 406237

calendar_today

Updated On:

Products

VCF Operations VCF Operations/Automation (formerly VMware Aria Suite)

Issue/Introduction

1. You are using a service account of Active Directory (AD) when configuring the Authentication Source with AD in Aria Operations.

2. Test connection is successful.

3. When adding  AD groups to Aria Operations using LDAP, users and nested groups within those AD groups are not properly being discovered and loaded into groups within Aria Operations. Some groups do not have any user accounts listed; some groups show some of the user accounts, but not all the users.

Environment

Aria Operations 8.18.x

Cause

The service account used for the authentication source integration does not have read access configured to query all the group members in ADUC on the AD server.

Resolution

Make sure the service account is being used for the authentication source integration has read access configured to query all the group members in ADUC on the AD server.