Domain Users Cannot Synchronize OU Group Users

  • 102
  • 6

Issue Description

Customer’s issue: Domain user synchronization option cannot synchronize the domain OU group users.

Handling Process

1. 【Authentication】-【External Auth Server】,LDAP domain server test validity is normal.
2. Check the synchronization configuration as follows: only the user attribute is not default and has been changed to uid.
3. Connect to the domain via ldapbrowser and check the domain user attribute as follows:
4.  Modify the sync options as follows and it becomes normal:

Root Cause

Caused by the mismatching of the synchronization option of the synchronization user parameters and domain server user parameters.


Read the domain user group attributes and user attributes through ldapbrowser and configure the synchronization options correctly.


Ldapbrowser tool usage: can be downloaded from Baidu.
1. Create a new profile.
2. Fill up the name.
3. Click on the fetch Base DNs, and then search and click on the desired domain.
4. Then enter the domain account password, this is the same as IAM.
5. Once you click Finish, you can see the structure of the domain.
Faisal Posted 24 Aug 2020 07:51
Thank you very much for the information ...
Faisal Posted 19 Oct 2020 12:11
Nice article ...
Faisal Posted 21 Dec 2020 10:32
Great info ...
Ellechar Lv4Posted 20 Jan 2021 15:56
Very nice infoooooooooooooooooooooooooooooo
Faisal Posted 23 Mar 2021 08:04
Very informative …
Faisal Posted 08 Jun 2021 17:17
Nice guidance ...

I want to write a case
Doc ID: 2520
Author: Newbie1212
Updated: 2019-12-21 12:57