Domain sync with groups to a sub domain and users as member of the root domain

Hello Experts,

Anyone happen to have handled a domain groups sync in a situation where the groups and users are in the same forest but the groups need to be created in the sub domain but the users are in the root domain.

  • (Source)
    • Acquired Domain (Acquired)
  • (Target Forest)
    • Domain A (Root)
    • Domain B (Sub)

We purchased a company and need to retire their domain (Acquired) . We are pulling from (Acquired) the users and syncing the users to (Root). We then need to create and sync the groups from (Acquired) to (Sub) although the members are in the (Root) domain. Is it possible to get the mapping to pull the members from the (Acquired) domain and reference them in the (Root) domain to populate the groups in the (Sub) domain. We do have a mapping and connection to both (Root) and (Sub) to the (Acquired) domain but the workflow does not see the users who need to be members because they exist in the (Root). 

Mapping

 Users  - (Root) <--> (Acquired)

 Groups - (Sub) <--> (Acquired)

If this is not possible I will have to come up with another solution or if anyone has suggestion it would be greatly appreciated. 

Lu

Parents
  • Agree with Aidar.

    The one comment I would add is that you can establish as many end point system (i.e. in this case, AD domains) "Connections" (Sync Service term) as you need to support the various source and target domains.

    Each Source >>> Target pair of Connections will create its own object mappings to keep track of objects to update.

Reply
  • Agree with Aidar.

    The one comment I would add is that you can establish as many end point system (i.e. in this case, AD domains) "Connections" (Sync Service term) as you need to support the various source and target domains.

    Each Source >>> Target pair of Connections will create its own object mappings to keep track of objects to update.

Children