Synchronize Users and Groups

Synchronizing users and groups means the CDO queries the realms and directories you configured for groups and users in those groups. All users the CDO finds can be used in identity policies.

If issues are found, you most likely need to add a realm that contains users and groups the CDO cannot load. For details, see Realms and Trusted Domains.

Before you begin

Create an CDO realm for each Active Directory forest and an CDO directory for each Active Director domain controller in each forest. See Create a Realm and Realm Directory.

Procedure


Step 1

If you haven't done so already, log in to the CDO.

Step 2

Click System (system gear icon) > Integration > Realms.

Step 3

Next to each realm, click Download (download icon).

Step 4

To see the results, click the Sync Results tab.

The Realms column indicates whether or not there were issues synchronizing users and groups in Active Directory forests. Look for the following indicators next to each realm.

Indicator in Realms column

Meaning

(nothing)

All users and groups synchronized without error. No action is necessary.

Yellow Triangle (yellow triangle icon)

There were issues synchronizing users and groups. Make sure you added a realm for each Active Directory forest and a directory for each Active Directory domain controller.

For more details, see Troubleshoot Cross-Domain Trust.