MSG LDAP import profile is not removing users that are no longer in the Active Directory (AD)
This discussion has a more recent version.

Issue:
The user repository in the MSG-appliance contains a large amount of users that have been imported from Active Directory, but are no longer part of it. Can the MSG-appliance automatically remove users from its user repository as they are removed from Active Directory?
Resolution:
The import profile can be set to remove user profiles that are not present in the imported data:
- Log in to the MSG Web UI
- Select the System-tab at the top of the page
- Navigate to User Management->Import/Auth Profiles using the left-hand menu
- Click on the Ldap import profile you want to modify
- From the window that appears, click on Advanced in the top right corner
- Under Import Settings, set Remove User Profiles Not Imported to On
- If you have multiple import profiles, set Add to Group/Sub-org With Profile Name () to On and set Type to the preferred option, between Group and Sub-Org. This is to prevent an import profile to remove users belonging to another profile
- Click Save Changes
Article no: 000018910
0 Like