Access to Restricted Agents by Active Directory Groups
Last Modified: 2026-08-25
Access to Restricted Agents by Active Directory Groups
Active Directory supports multiple types of groups. When configured to use Active Directory as an identity source, AM supports only Universal groups.
When you select an Active Directory group for access on a restricted agent, make sure that you select a Universal group. If you use any other type of Active Directory group, the user may not be able to authenticate. When you view the Active Directory groups from the Security Console, the Security Console displays all groups, regardless of type.
The Security Console cannot display a user’s primary Active Directory user group, such as Domain Users. The group appears empty even though it has members.
Related Articles
KCA gives invalid signature when approving certificate request 9Number of Views RSA Governance & Lifecycle LDAP Novell eDirectory Connector Datasheet 20Number of Views RSA Governance & Lifecycle Oracle Directory Server (ODS) Connector Datasheet Guide 36Number of Views RSA Identity Governance and Lifecycle - ITDS Collector Datasheet 12Number of Views Workday ADC "Test Collector'" gets Workday webservice exception 34Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Reporting on RSA Authentication Manager 8.x users with On-Demand Token, a fixed passcode or a hardware/software token assi… How to Download OTP Token Seed Files from myRSA Anomalix idGenius - SAML Relying Party Configuration - RSA Ready Implementation Guide RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide
Don't see what you're looking for?