Wednesday, May 26, 2010

HOW TO CONFIGURE AD SYNCHRONIZATION USING LOCATOR OBJECT IN ESSO

Applicable for both Oracle ESSO or v-GO-SSO(Passlogix)

You will have to create a default vgolocator object at the root of the DN of AD and it should point to your "Configuration Object base locations" and in Advanced section of the Global Agent Settings for the synchronization you will have to set "Location for storing user credentials" to "Store user credentials as specified by the locator object".

Here i am Going to explain you with my Environment. with All the Screen Shots.
My Domain Controller Details as - DC=identity,DC=us,DC=com

For Example:
1. If your AD's root DN is DC=identity,DC=us,DC=com.
2. Your "Configuration Object base locations" is set to as ou=essoConfig,dc=test,dc=com.(We can create Manually New Container called essoConfig) with Right Click on Domain Controller of the ESSO
3. The vgolocator object needs to be created at DC=identity,DC=us,DC=com and should point to ou=essoConfig,DC=identity,DC=us,DC=com.
Note: The locator object should be named "default".
4. in Advanced section of the Global Agent Settings for the synchronization. Configure "Location for storing user credentials" to "Store user credentials as specified by the locator object".
5. Write to HKLM.
6. Verify if synchronization is working correctly.

Here is the screenshots for Above Example

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17