Symantec IGA

 View Only
  • 1.  Identity Manager Move Account based on Cross AD Domain

    Posted Jul 23, 2019 06:55 AM
    Hi Team,
    Identity Suite 14.3. We have 4 AD Domain created as 4 different AD endpoint.
    AD Endpoint #1 - AD Domain 1
    AD Endpoint #2 - AD Domain 2
    AD Endpoint #3 - AD Domain 3
    AD Endpoint #4 - AD Domain 4

    As I know, we can move account(MoveOU) based within 1 AD Domain.

    Q. Can we move account based on cross domain ? Eg. Move account from AD Domain #1 to AD Domain #2 ?

    regards,
    William



    ​​


  • 2.  RE: Identity Manager Move Account based on Cross AD Domain
    Best Answer

    Broadcom Employee
    Posted Jul 23, 2019 11:09 AM
    You cannot do a move across different endpoints (i.e. domain). You would instead need to remove the Provisioning Role with the template to endpoint 1 and assign the Provisioning Role with template to endpoint 2. This would delete and create the account.


  • 3.  RE: Identity Manager Move Account based on Cross AD Domain

    Posted Jul 24, 2019 02:19 AM
    ok, thanks.


  • 4.  RE: Identity Manager Move Account based on Cross AD Domain

    Broadcom Employee
    Posted Jul 23, 2019 11:45 PM
    1. Start the Connector Xpress wizard
    2. Click on provisioning server (connect with etaadmin and password)
    3. Expand provisioning server tree on the right pane
    4. Scroll down to the db2 endpoint type
    5. Right-click on db2, and select set managing connector server
    6. Select the c++ connector server that is installed on your windows system and click ok.