LDAP refresh filters
-
- UpdatedAug 1, 2024
- 2 minutes to read
- Xanadu
- Platform Security
Filters on the LDAP refresh process can be used to specify processing that ignores inserts of disabled users.
You can loosen the LDAP OU filter to bring all of the data in to your import set table (including inactive users) and then specify processing that ignores inserts of disabled users. The sample ‘Users’ OU definition that the instance provides in its out-of-box LDAP sample contains a filter.
This filter is important because it defines which user records are brought into the import set table to be evaluated. While achieving a smaller data load, a limitation of this filter is that it filters out inactive users, so the inactive user records are not imported into the import set temporary tables. Since there is not visibility of the inactive user records, there is no ability to evaluate the record indicators.