6.1 Preparing for Migrating Identities from Azure AD to Identity Vault

NetIQ recommends that you perform the migration in a test environment similar to your production environment before upgrading the production systems.

Before you begin, ensure that the following prerequisites are met:

  • Turn off Exchange service and entitlements before starting the migration.

  • Ensure that there is a valid matching attribute for user and group objects in the Identity Vault. You need to create a matching policy that includes a matching attribute so that you can do a one-to-one mapping. When a match is found, an association is created. For example, the cn attribute for a user in the Identity Vault is mapped to UserPrincipalname attribute in Azure AD. Similarly, the cn attribute for a group in Identity Vault is mapped to displayName attribute in Azure AD.