AX2575

Set up Active Directory synchronization

You can import users from Active Directory to automatically create users within Axiom Platform and assign them to the applicable roles. You can use subsequent imports to create new users and synchronize previously imported users.

Active Directory synchronization can only be used in conjunction with Windows authentication. For more information, see Use Windows Authentication.

  1. Enable Active Directory synchronization for your system.

    For on-premise systems, enable Active Directory synchronization during the Axiom Application Server installation. If Active Directory was not enabled during the installation, you can configure it later using either of the following options:

    • Configure Authentication Methods page of the Axiom Software Manager.

    • Save Type 4 report to modify the applicable system configuration setting (WindowsAuthUserSyncEnabled). For more information, see System configuration settings.

    For Axiom Cloud systems, Axiom Support enable Active Directory synchronization for your system.

  2. Create a job in Scheduler with an Active Directory Import task and schedule the job to run periodically as required for your environment.

    Each import task can import users from a single Active Directory domain into the current Axiom Platform system. The import task specifies the Active Directory domain and groups to import, including role mappings and notification settings. To import from multiple Active Directory domains, you must create an import task for each domain.

    For more information, see Create a Scheduler job to import users from Active Directory.

When you run the Scheduler job, new users are created and existing users are synchronized with Active Directory.