Skip to content
DataMiner DoJo

More results...

Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
Search in posts
Search in pages
Log in
Menu
  • Updates & Insights
  • Questions
  • Learning
    • E-learning Courses
    • Empower Replay: Limited Edition
    • Tutorials
    • Open Classroom Training
    • Certification
      • DataMiner Fundamentals
      • DataMiner Configurator
      • DataMiner Automation
      • Scripts & Connectors Developer: HTTP Basics
      • Scripts & Connectors Developer: SNMP Basics
      • Visual Overview – Level 1
      • Verify a certificate
    • YouTube Videos
    • Solutions & Use Cases
      • Solutions
      • Use Case Library
    • Agility
      • Book your Agile Fundamentals training
      • Book you Kanban workshop
      • Learn more about Agile
        • Agile Webspace
        • Everything Agile
          • The Agile Manifesto
          • Best Practices
          • Retro Recipes
        • Methodologies
          • The Scrum Framework
          • Kanban
          • Extreme Programming
        • Roles
          • The Product Owner
          • The Agile Coach
          • The Quality & UX Coach (QX)
    • >> Go to DataMiner Docs
  • DevOps
    • About the DevOps Program
    • Sign up for the DevOps Pogram
    • DataMiner DevOps Support
    • Feature Suggestions
  • Swag Shop
  • Downloads
  • PARTNERS
    • All Partners
    • Technology Partners
    • Strategic Partner Program
    • Solutions
    • Deal Registration
  • Contact
    • Sales, Training & Certification
    • DataMiner Support
    • Global Feedback Survey
  • >> Go to dataminer.services

Ldap Synchronisation configuration

57 views2 days ago
1
sevil bergaire136 2 days ago 0 Comments

hello,

is there a way to disable the ldap synchronisation for some parameters (email for example) ?

my problematic is that we have some users with many groups...and today we cannont "select" one security group, to manage what we are seeing. As we have 2 way of authentification (azure + ldap), I wanted to remove the email from ldap so each user can have 2 account. But because of the synchronisation of ldap email, they get a message saying 2 users with same email were found

sevil bergaire Answered question 2 days ago

2 Answers

  • Active
  • Voted
  • Newest
  • Oldest
0
sevil bergaire136 Posted 2 days ago 1 Comment

Hello, I don't really understand your answer as this architecture has been validated by Skyline : we have some DMA running with saml, and some with ldap, depending on the connection (from internet for low code app through gateway (azure) or not (ldap)).

Local users are not validated by security team.

Is there a way to filter in the console specifying a security group?

Michiel Masschelein [SLC] [DevOps Member] Posted new comment 19 hours ago
Michiel Masschelein [SLC] [DevOps Member] commented 19 hours ago

Hi, I'm not sure what you mean with the filtering groups in the console but the problem here is that DataMiner doesn't support having the same user from 2 different sources.

If you can't work with local users the only way to solve this issue is creating a second user per person on the domain with a completely separate e-mail address

0
Michiel Masschelein [SLC] [DevOps Member]307 Posted 2 days ago 0 Comments

Hello,

there is no way to exclude attributes from an LDAP sync as all groups that currently exist in the DMS are requested from the LDAP service and the current members are then compared and synced to the DMS, as with all domain-type users in DataMiner, the directory is taken as the sole source of truth in this relationship, Domain users are not meant to be changed on DataMiner itself.

Combining 2 types of user management is also very much discouraged (Entra/azure AD & SAML docs: https://docs.dataminer.services/user-guide/Advanced_Functionality/Security/Advanced_security_configuration/Configuring_external_authentication_via_an_identity_provider_using_SAML.html)

If you need 2 separate accounts for the same user I would recommend to replace the second with Local users as that has the lowest possibility of conflicts (but it requires more manual work)

Michiel Masschelein [SLC] [DevOps Member] Answered question 2 days ago
Please login to be able to comment or post an answer.

My DevOps rank

DevOps Members get more insights on their profile page.

My user earnings

0 Dojo credits

Spend your credits in our swag shop.

0 Reputation points

Boost your reputation, climb the leaderboard.

Promo banner DataMiner DevOps Professiona Program
DataMiner Integration Studio (DIS)
Empower Katas
Privacy Policy • Terms & Conditions • Contact

© 2025 Skyline Communications. All rights reserved.

DOJO Q&A widget

Can't find what you need?

? Explore the Q&A DataMiner Docs

[ Placeholder content for popup link ] WordPress Download Manager - Best Download Management Plugin