We do everynight an explore & correlate on some connectors we have. This is a full explore, but we would like the explore event to lookup only for updated accounts on target systems (this is, in an incremental way).
Is there some workaround to achieve this?
How would it be possible to determine which accounts have been updated without exploring all of them ?
Even if we suppose the accounts to have a kind of "lastupdateddate" attribute, any way to determine the set of the relevant accounts will be equivalent to a full explore.
So there is no existing configuration for the explore feature that will process this way.
However if you already have (through an external process) the set of the "updated" accounts you could process through ldapsearch commands as provided withinExplore Single user in AD community post.
But we do not recommend this approach against large set of accounts because each ldapsearch command will bind to the Provisioning Server and so is consuming memory and CPU.
best regards, Laurent
14.3 will come with a feature called "Incremental Explore and Correlate" for the AD endpoint. It implements that functionality that you asked for. In time, we will add support for other endpoints which have a incremental scan capability.
Hi Shesh thank you very much!
Do you know the estimate time for this release? Thanks!