Directory-based account access is used when your organization's existing directory service is integrated with Workspace ONE UEM. You can synchronize these directory-based users from Workspace ONE UEM to Omnissa Access.
In the Workspace ONE UEM console, you enable the synchronization and specify the user attribute mapping.
Synchronization of directory information between Workspace ONE UEM and Omnissa Access occurs on the same schedule as the Workspace ONE UEM directory sync. Users are also synced to the Omnissa Access service immediately when an administrator manually adds a user or from a bulk import.
Managing User Attributes Mapping
You can configure the user attribute mapping between the Workspace ONE UEM directory and the Omnissa Access directory.
The User Attributes page in the Omnissa Access console Settings page lists the default directory attributes that are mapped to Workspace ONE UEM directory attributes. Attributes that are required are marked with an asterisk. Users missing a required attribute in their profile are not synced to the Omnissa Access service.
Default Workspace ONE UEM Directory Attributes Mapping
| Omnissa Access User Attribute Name | Default Mapping to Workspace ONE UEM User Attribute |
|---|---|
| userPrincipalName | userPrincipalName |
| distinguishedName | distinguishedName |
| employeeID | employeeID |
| domain | Domain |
| disabled (external user disabled) | disabled |
| phone | telephoneNumber |
| lastName | lastname* |
| firstName | firstname* |
| Email* | |
| userName | username* |
Sync Users and Groups from Workspace ONE UEM Directory to Omnissa Access Directory
You configure the Omnissa Access settings in the Workspace ONE UEM console to establish a connection between your organization group instance of the Workspace ONE UEM directory and Omnissa Access. This connection is used to sync users and groups to a directory created in the Omnissa Access service.
You initially manually sync users and groups to the Omnissa Access directory. After the initial sync, the Workspace ONE UEM sync schedule determines when users and groups are synced with the Omnissa Access directory.
When you add or delete a user or a group on the Workspace ONE UEM server, the change is reflected on the Omnissa Access service immediately.
Prerequisites
- Identify attribute values to map from the Workspace ONE UEM directory. See Managing User Attributes Mapping.
Procedure
-
In the Workspace ONE UEM console, go to the Groups & Settings > All Settings page, select your organization group, and navigate to System > Enterprise Integration > Omnissa Access.
-
Click Configuration.
-
Select Enable for Active Directory Basic.
-
Specify the user attributes mapping from Workspace ONE UEM to Omnissa Access.
-
Click Sync Now to manually sync all users and groups to the Omnissa Access service.
Note: To control the system load, manual sync can only be performed four hours after a previous sync.
Results
A directory is created in the Omnissa Access service and the Workspace ONE UEM users and groups are synced to a directory in Omnissa Access.
What to do next
Review the Users and Groups page in the Omnissa Access console to verify that the users and groups are synced.
Was this page helpful?