6-12
UserGuide for Cisc o Digital Media Manager 5.2.x
OL-15762-03
Chapter6 Authentication and Federated Identity
Concepts
Synchronization (Replication) Overview
When you choose LDAP authentication or SSO authentication, user account data originates from your
Active Directory server. However, Cisco DMS does not synchronize (replicate) this data automatically,
in real time. Instead, we cache it. Therefore, you must resynchronize user account data when you think
it is appropriate to do so. You can:
Resynchronize manually.
Schedule synchronizations to recur in the future at set intervals.
Note Features of DigitalSigns and Show and Share Administration help you to manage user access
privileges and permissions for Cisco DMS.
DMS-Admin synchronizes all user accounts in the Active Directory “user base” that your filter specifies,
except users whose accounts are disabled on your Active Directory server.
Synchronization Types
We support four types of ActiveDirectory synchronization in LDAP mode or federation mode.
Initial Update Overwrite Delete
Runs a one-time
synchronization for a
new filter that you never
synchronized
previously.
Runs an incremental,
fast update to find and
make up for any
differences between
user accounts that
match your
Active Directory filter
and your local copy of
those user accounts.
Overwrites your local
copy of user accounts
that correspond to your
Active Directory filter
with new copies of
those user accounts. In
addition, deletes your
local copy of each user
account that has been
deleted from
Active Directory since
the last time that you ran
a synchronization.
Deletes your local copy
of user accounts that
correspond to a defined
Active Directory filter
and deletes the entry for
that filter from
DMS-Admin.