Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Group Authentication

A user starting an import AD groups can participate in two groups at the same time?

I tried this but in configure - Authentication - Group it appears only in 1.

 

Can you help me?

 

Sorry, I am Brazilian and I used the translator to post this question.


Maviael Nascimento


This thread was automatically locked due to age.
Parents
  • Hi Maviael,

    According to the AD architecture, when the User resides in the Primary group, it's group information will not be shared with XG hence, you need to create the User in a separate group which is not a Primary group for AD. Another behavior is that AD follows a TOP-DOWN approach, which means that when the User resides in two groups in AD, AD will authenticate the user from the group that is on TOP. Hence, the group association information for the User which will be shared by AD to XG only has the information of one group that is on TOP.

    Thanks

Reply
  • Hi Maviael,

    According to the AD architecture, when the User resides in the Primary group, it's group information will not be shared with XG hence, you need to create the User in a separate group which is not a Primary group for AD. Another behavior is that AD follows a TOP-DOWN approach, which means that when the User resides in two groups in AD, AD will authenticate the user from the group that is on TOP. Hence, the group association information for the User which will be shared by AD to XG only has the information of one group that is on TOP.

    Thanks

Children
No Data