cancel
Showing results for 
Search instead for 
Did you mean: 

IDM and Active directory integration user group

former_member205095
Participant
0 Kudos

Hi all

looking on the repository costants of AD integration with IDM

https://help.sap.com/viewer/4773a9ae1296411a9d5c24873a8d418c/8.0/en-US/d8032660e11849978a2ba2675b5dd...

there is the constant LDAP_LOGIN

but what arre the groups/authorization that this user needs?

eg account operator, domain admin

Arivind

Accepted Solutions (0)

Answers (1)

Answers (1)

former_member2987
Active Contributor

Hi Arvind, there's a simple but vague answer to your question.

What do you need the account to do?

For the most part, this account simply needs to have permissions to create, modify, and update users. If there are other Active Directory operations that need to be supported in IDM, you will need to include those as well.

This same account should be used to run the dispatcher service(s) that will run these jobs.

A point to remember, that as a service account with Active Directory administration privileges, this is a fairly powerful account, and its credentials should be guarded.

Please let me know if you have other questions.

Cheers,

Matt