Hello!
1IM 8.1. SP2.
I created Sync Project Active Directory.
I did not change scopes or filters.
Not all OU inserted ADSContainer table after syncronization.
Logs has not errors about OU.
In test enviroment with test AD all ok.
Why it did?
Hello!
1IM 8.1. SP2.
I created Sync Project Active Directory.
I did not change scopes or filters.
Not all OU inserted ADSContainer table after syncronization.
Logs has not errors about OU.
In test enviroment with test AD all ok.
Why it did?
What about permission in AD? Are you able to see the missing OUs using the target system browser against AD in Synchronization Editor?
Permission in AD is ok. I can see all OU with use Service Log on Account from Active Directory Users and Computers and from powershell (Get-ADOrganizationalUnit).
I see the missing OUs using the target system browser in Synchronization Editor.
I see the missing OUs using Test object matching rules util in Synchronization Editor.
Did you turn on full-logging on the One Identity Manager side in the sync project? If so, nothing suspicious in the sync report?
Did you turn on full-logging on the One Identity Manager side in the sync project? If so, nothing suspicious in the sync report?
Yes, I turn on full-logging one the One Identity Manager side in the sync project. In the sync report nothing suspicious.
Screenshot
https://www.dropbox.com/s/ktdqs8af9olkh0k/SyncEditor_Log.png?dl=0
Sorry, no clue. I recommend contacting support.
The problem has been with child OU without Security tab.
Screenshot
What are the object-classes assigned to these containers?
TOP
ORGANIZATIONALUNIT
In regards to the security tab missing, did you turned on the advanced view in the menü? Otherwise, the security tab will never show. Or is it just for these containers? If so, you might not have enough permissions to fetch the object during the full sync.
From more that 3500 OU I can't see the Security tab only in 5 OU. Maybe problem with my permissions.
I assume so.