ServiceNow CMDB CI relationship sync: faster, more complete →
Mods
Turbot

Policy: Turbot > IAM > Group Profile > LDAP Synchronization

LDAP synchronizaton for Group Profiles enables synchronization of LDAP Groups in certain intervals of time from Active Directory.

The policy can be set on the LDAP Directory as a whole, or on individual Groups Profiles if exceptions are needed.

Resource Types

This policy targets the following resource types:

Controls

Policy Specification

Schema Type
string
Default
Skip
Valid Values [YAML]
  • Skip
    
  • Check: Active
    
  • Enforce: Active
    
  • Enforce: Delete inactive with 1 day warning
    
  • Enforce: Delete inactive with 3 days warning
    
  • Enforce: Delete inactive with 7 days warning
    
  • Enforce: Delete inactive with 14 days warning
    
  • Enforce: Delete inactive with 30 days warning
    
  • Enforce: Delete inactive with 60 days warning
    
  • Enforce: Delete inactive with 90 days warning
    
  • Enforce: Delete inactive with 180 days warning
    
  • Enforce: Delete inactive with 365 days warning
    
Examples [YAML]
  • Check: Active
    

Category

In Your Workspace

Developers