To import users and cardholders with their credentials from an AD, you must create an
Active Directory role for the AD you want to import. The Active Directory role integrates your
Security Center system with an AD server, and imports
users, cardholders, and credentials from selected security groups.
Before you begin
If you have servers in your system that are running an earlier version of Security Center, you must upgrade the servers to the current
version before using them to host a new Active Directory role.
Procedure
-
Open the System task and click the Roles view.
-
Click Add an entity () and
select Active Directory.
-
On the Specific info page, do the following:
-
(If you have multiple servers in your system) From the
Server list, select the server on which you want to host the
role.
-
In the Active Directory field, enter the AD Fully Qualified
Domain Name (FQDN), hostname, or IP address of the AD server.
You must point to the domain name in the
Active Directory
field, not the computer name.
If you are not using a default port, you must append the port number you are
using to the AD server name, separated by a colon. For example,
ADServer.Genetec.com:123. The default ports are as follows:
- Active Directory with no SSL: 389
- Active Directory with SSL: 636
- Global catalog no SSL: 3268
- Global catalog with SSL: 3269
-
Specify how you want the role to connect to the AD server.
You must have read access to the selected AD service.
- Use the Windows credentials assigned to the Genetecâ„¢ Server service that is
running on the server hosting the Active Directory role.
- Specify a different set of Windows credentials (username, password).
-
On the Basic information page, enter the name, description, and
partition where you want to create the Active Directory role.
-
Click.
A new Active Directory role (
) is created. Wait a few seconds for the role to connect to the AD
server.
-
(Optional) If you are importing a universal group that is connected to a global
catalog, turn on the Use global catalog option.
-
(Optional) If you have multiple servers, use the Connect to specific domain
controller option to choose the specific server from which you want to
import your schema architecture.