active-directorymlrun

Issue, Iguazio synch Active Directory groups


Issue, it is not possible to define which Active Directory groups will be synchronized in Iguazio. I did not see ability to define these groups in IDP (Active Directory) provider setting, see UI content. I am using Iguazio 3.5.1.

enter image description here

Thanks for help about this setting.


Solution

  • The version Iguazio >= 3.5.3 contains setting for Active Directory 'Group filter' also. See the picture.

    enter image description here

    After setting Group filter, only these groups will be synchronized from Active Directory.

    The typical setting of Group filter is e.g.

    (&(objectClass=group)(|(cn=XX.FeatureStore.Admin)(cn=XX.FeatureStore.Dev)(cn=XX.FeatureStore.Support)))