Users
NAVIGATION Discovery > Domains > Domain Watch > Policies > Users tab
The Users tab sets Discovery policies by individual user.
NOTE In Active Directory, users must have a first name, last name, username,.password and email address.
Related topics:
Setting Policies by (User) Group
You can set policies for users by (user) group using the Groups tab.
Included and Excluded
Once a probe is installed, Discovery is configured by setting selected domain folders and items to included or excluded. Discovery policies provide IT automation—such as installing agents or creating users—only for included folders and items. Discovery only harvests detailed information for included folders and items, minimizing the amount of data required to maintain synchronization with the domain.
Header Fields
- Policy Status
- Original - Discovery policies have not yet been configured.
- Modified - Discovery policies have been configured but not yet applied. After clicking the Apply Changes button, this icon remains unchanged until the harvest has been completed.
- Last Full Sync - Date/time of last full synchronization for this domain.
- Last Incremental Sync - Date/time of last incremental synchronization of all outstanding changes for this domain. Clicking Apply Changes after modifying policies on any Policies tab performs an "on demand" incremental synchronization. Activation performs a recurring incremental synchronization.
Actions
- Configure Users Policy - Includes the selected user as either a VSA user or Portal Access candidate. When this dialog opens, the Member User Policy drop-down list provides the following options:
Do Not Include Users
- Do not create a VSA user logon or Portal Access logon for this domain user.Create Staff Members
- Creates a staff member record. This user can be assigned Portal Access to a machine manually.NOTE The user can only be manually assigned the Portal Access user of a machine—using the Users & Portal Userspage—if the user was the last user logged on to that machine. The list of eligible machines are listed in the Last Logged-onto Machines field in the lower panel of this same page.
Create Staff and make Auto Portal Candidates
- Designates a domain user in this user group as a Portal Access candidate. See Making Portal Access Candidates for details.Create VSA Users
- Creates a VSA user logon for the selected domain user.- Role Lookup
- Scope Lookup
- User Department Override - Administrators can automatically map the departments used to organize staff records inside the VSA using the OU hierarchy that already exists in Active Directory. This occurs when a Group or User policy selects the Use Directory Default value. When this occurs, a staff record created by policy is assigned to the department that matches its current OU location. If an Active Directory administrator renames the OU or moves the user to a different OU location, the staff record is changed in the VSA to match it. Tracking moves fully requires policies be set in both the source and target OUs. Parent departments are created as necessary, to match the OU hierarchy. Alternatively, a staff record can be assigned a policy that assigns it to a fixed department. This policy has precedence over Groups policy.
- Apply Changes - Applies Discovery policies changes for both the Policies > Computers tab and the User Policies tab.
Column Headings
- User Name - A canonical name provides the complete hierarchy of OUs/containers used to locate folders and items—such as computers, contacts or groups—in a domain, similar in format to the full path name of a file in a disk directory.
- Policy
Do Not Include Users
- Do not create a VSA user logon or Portal Access logon for this domain user.Create Staff Members
- Creates a staff member record.Create Staff and make Auto Portal Candidates
- Designates this domain user a Portal Access candidate. See Making Portal Access Candidates for details.Create VSA Users
- Creates a VSA user logon for this domain user.
- Groups Member Of - The groups this user is a member of.
- Role Policy - The VSA role to assign the newly created VSA user if Policy is
Create VSA Users
. - Scope Policy - The VSA scope to assign the newly created VSA user if Policy is
Create VSA Users
.
- Role Policy - The VSA role to assign the newly created VSA user if Policy is
- Dept Override - Specifies the department to assign a newly created user.
Use Directory Default
specifies the default department for the organization associated with the domain using the Probe Deployment tab.