
Step 7: Begin Synchronization
457
•
Sync New Windows Groups.
When enabled, all group entries found in Windows that are subject
to the agreement will automatically be created in the Directory Server.
8. The Windows and Directory Server subtree information is automatically filled in; use the defaults to
sync only users or change these as appropriate to sync groups or groups and users.
9. Check the
Using encrypted SSL connection
checkbox. The use of SSL is recommended for
security reasons, and SSL is required for synchronizing passwords because Active Directory will
refuse to modify passwords unless the connection is SSL-protected.
10. Fill in the authentication information in the
Bind as...
and
Password
fields with the sync ID
information. This user must be on both the Active Directory server and will be one of the supplier
DNs available in the database replication setup, as described in
Section 19.2.6, “Step 6: Configure
the Directory Server Database for Synchronization”
.
11. The last screen is a summary of the synchronization agreement. It is possible to modify all of the
configuration at this using the back buttons to get to the appropriate screen. If the agreement is
correct, click
Done
.
When the agreement is complete, an icon representing the synchronization agreement is displayed
under the suffix. This icon indicates that the synchronization agreement is set up.
19.2.8. Step 7: Begin Synchronization
After the sync agreement is created, begin the synchronization process. Select the sync agreement,
right-click or open the
Object
menu, and select
Begin resynchronization
. This will begin the
synchronization process.
If synchronization stops for any reason, begin another total update (resynchronization) by selecting
this from the sync agreement menu. Beginning a total update (resynchronization) will not delete or
overwrite the databases.
19.3. Using Windows Sync
After the sync agreement is setup, synchronize the user and group entries on the Directory Server and
Active Directory server.
•
Section 19.3.1, “Synchronizing Users”
•
Section 19.3.2, “Synchronizing Groups”
•
Section 19.3.3, “Deleting Entries”
•
Section 19.3.5, “Manually Updating and Resynchronizing Entries”
•
Section 19.3.6, “Checking Synchronization Status”
•
Section 19.3.7, “Modifying the Sync Agreement”
19.3.1. Synchronizing Users
If Windows users are synchronized when the sync agreement was created, all the existing Windows
users are synchronized to the Directory Server after the first total update (when synchronization
Summary of Contents for DIRECTORY SERVER 8.0
Page 18: ...xviii ...
Page 29: ...Configuring the Directory Manager 11 6 Enter the new password and confirm it 7 Click Save ...
Page 30: ...12 ...
Page 112: ...94 ...
Page 128: ...110 ...
Page 190: ...Chapter 6 Managing Access Control 172 4 Click New to open the Access Control Editor ...
Page 224: ...206 ...
Page 324: ...306 ...
Page 334: ...316 ...
Page 358: ...340 ...
Page 410: ...392 ...
Page 420: ...402 ...
Page 444: ...426 ...
Page 454: ...436 ...
Page 464: ...446 ...
Page 484: ...466 ...
Page 512: ...494 ...
Page 522: ...504 ...