Performing directory synchronization

Last Updated : Apr 25, 2018 |
Prolog information
  1. In System Manager, click Users Directory Synchronization.
  2. Add a new data source and enter the following LDAP server details, and click Test Connection.
    ADDITIONAL INFORMATION:
    • DS Name
    • Host
    • Principal
    • Port
    • Base DN
    • LDAP User Schema
    • Search Filter
    • Use SSL: Select the check box.
    • Allow Deletions: Select the check box.
    As shown in the figure, the system displays the following error: Cannot connect to external directory: SSL Hand Shake Failure.
    The system displays this error because we have not imported the Active Directory Certificate in System Manager.
  3. To resolve we need to import the Certificate:
    1. Navigate to Services Inventory Manage Elements.
    2. Select the System Manager instance and click More Actions Configured Trusted Certificates.
    3. Click Add.
    4. Select the Import using TLS field.
      ADDITIONAL INFORMATION:
    5. In the IP Address field, enter the IP address of the LDAP server.
    6. In the Port field, enter the port of the LDAP server.
    7. Click Retrieve Certificate to import the certificate
    8. Click Commit.
  4. Go to the New User Synchronization data source page and specify the details to test the connection.
    ADDITIONAL INFORMATION: