5.1 Active Directory Requirements

Verify that your Active Directory environment meets the following requirements:

  • Windows Server 2012 R2 or Windows Server 2008 R2.

  • A unique identity for each user account, whether you have one or more domains or identity sources. The appliance uses the sAMAccountName as the unique identifier for the users.

To provision user accounts from Active Directory to the SaaS applications, all of the following attributes must be populated on the Active Directory users:

  • First name

  • Last name

  • Full name (Display name is the field that populates this attribute.)

  • sAMAccountName or Logon Name (Pre-Windows 2000)

  • User Principal Name (UPN)

  • Email address

Obtain the following required items:

  • The password and the fully distinguished LDAP-formatted name of a user in Active Directory who has read access to the user objects. The appliance will use this user account to make LDAP binds to Active Directory.

  • The name and password of a user in Active Directory who becomes the administrator of the appliance. The user must reside in the user search context specified during the appliance initialization procedure.

  • The IP address of one or more Active Directory servers that contain the users.

  • The context of the users in Active Directory.