How to exclude RSA Authentication Manager 8.x from picking up disabled user account data from the Microsoft LDAP directory
Originally Published: 2018-06-21
Last Modified: 2026-06-03
Article Number
Applies To
RSA Product/Service Type: Authentication Manager
RSA Version/Condition: 8.x
Issue
Resolution
- Login to the Operations Console of the primary Authentication Manager instance.
- Click Deployment Configuration > Identity Sources > Manage Existing.
- When prompted, enter the super admin user ID and password
- Click the context arrow for the identity source in question and select Edit.
- Click the Connection(s) tab or the Map tab to view the properties of the external identity source:
- Scroll down to the Directory Configuration - Users section and modify the default search filter from (&(objectClass=User)(objectcategory=person)) to the string below:
(&(objectClass=User)(objectcategory=person)(!(userAccountControl:1.2.840.113556.1.4.803:=2)))
- Once done, click Save and Finish for the changes to take effect.
- Login to the Security Console for the primary.
- Verify that the disabled user accounts from the Microsoft LDAP Directory are filtered.
Notes
For steps on how to create a new identity source, please see article Add an Identity Source.
Related Articles
Disable a User Account 21Number of Views AveksaAdmin Super Account Locked or Password Lost in RSA Governance & Lifecycle 1.79KNumber of Views Locked User Accounts 78Number of Views Enable a User Account in the User Dashboard 4Number of Views Disable a User Account in the User Dashboard 8Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Unable to login to RSA Authentication Manager Security Console as super admin RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide Manual synchronization introduced in RSA Authentication Manager 8.2 Service Pack 1 patch 6 Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory
Don't see what you're looking for?