<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Importing AD groups and users and Mapping them to SAS Metadata in Administration and Deployment</title>
    <link>https://communities.sas.com/t5/Administration-and-Deployment/Importing-AD-groups-and-users-and-Mapping-them-to-SAS-Metadata/m-p/354109#M8420</link>
    <description>Thank you Jan and Michelle for your responses..</description>
    <pubDate>Thu, 27 Apr 2017 13:40:46 GMT</pubDate>
    <dc:creator>againreddy</dc:creator>
    <dc:date>2017-04-27T13:40:46Z</dc:date>
    <item>
      <title>Importing AD groups and users and Mapping them to SAS Metadata</title>
      <link>https://communities.sas.com/t5/Administration-and-Deployment/Importing-AD-groups-and-users-and-Mapping-them-to-SAS-Metadata/m-p/352920#M8371</link>
      <description>&lt;P&gt;Our SAs users are looking for using AD &amp;nbsp;groups in SAS 9.4 M3 linux server using utility macros(importad.sas). &amp;nbsp;As of now, Our users using PAM(Binding) &amp;nbsp;for authentication.&lt;/P&gt;
&lt;P&gt;Please let us know, What are the risks involved using &lt;SPAN&gt;AD &amp;nbsp;groups in SAS 9.4 M3 linux server?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2017 15:32:36 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Administration-and-Deployment/Importing-AD-groups-and-users-and-Mapping-them-to-SAS-Metadata/m-p/352920#M8371</guid>
      <dc:creator>againreddy</dc:creator>
      <dc:date>2017-04-24T15:32:36Z</dc:date>
    </item>
    <item>
      <title>Re: Importing AD groups and users and Mapping them to SAS Metadata</title>
      <link>https://communities.sas.com/t5/Administration-and-Deployment/Importing-AD-groups-and-users-and-Mapping-them-to-SAS-Metadata/m-p/353006#M8373</link>
      <description>&lt;P&gt;We have a strict sync process between AD and SAS metadata which works very well. If there is a risk it probably will come from a lack of discipline because manual updates can interfere with the ones coming from AD. That may yield errors and problems resulting from an incomplete sync. We just don't do manual updates; any new user or group membership change will go through an audited and monitored approval process. And that's it. So this is taken fro IT to the business, where we feel it belongs. We see or experience no downside.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In fact, if you take the trouble of adding Kerberos authentication to the mix, you can setup a authentication and authorization process that runs itself and extends beyond the metadata to the filesystems and back-end database management systems (we extend it to the Teradata realm). Users, admins and security officers will benefit equally. No more password resets or locked out users. And very clear reporting. In short, highly recommended.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you want syncing managed from SAS Management Console have a look at the Metadatcoda plug-ins. They have done wonders in this field.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;- Jan.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2017 20:47:51 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Administration-and-Deployment/Importing-AD-groups-and-users-and-Mapping-them-to-SAS-Metadata/m-p/353006#M8373</guid>
      <dc:creator>jklaverstijn</dc:creator>
      <dc:date>2017-04-24T20:47:51Z</dc:date>
    </item>
    <item>
      <title>Re: Importing AD groups and users and Mapping them to SAS Metadata</title>
      <link>https://communities.sas.com/t5/Administration-and-Deployment/Importing-AD-groups-and-users-and-Mapping-them-to-SAS-Metadata/m-p/353015#M8374</link>
      <description>&lt;P&gt;Thanks Jan for mentioning Metacoda Plug-ins.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;FYI, we have an Identity Sync Plug-in that may help with you with your active directory synchronization requirements. Some background information on the plug-in can be found at the following blog that also includes a screencast on the Metacoda Identity Sync Plug-in in action.&amp;nbsp;&lt;A href="https://platformadmin.com/blogs/paul/2015/07/synchronizing-sas-platform-identities/" target="_blank"&gt;https://platformadmin.com/blogs/paul/2015/07/synchronizing-sas-platform-identities/&lt;/A&gt; Please let me know if you'd like to get a 30 day free evaluation to try it out.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind Regards,&lt;/P&gt;
&lt;P&gt;Michelle&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2017 21:26:32 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Administration-and-Deployment/Importing-AD-groups-and-users-and-Mapping-them-to-SAS-Metadata/m-p/353015#M8374</guid>
      <dc:creator>MichelleHomes</dc:creator>
      <dc:date>2017-04-24T21:26:32Z</dc:date>
    </item>
    <item>
      <title>Re: Importing AD groups and users and Mapping them to SAS Metadata</title>
      <link>https://communities.sas.com/t5/Administration-and-Deployment/Importing-AD-groups-and-users-and-Mapping-them-to-SAS-Metadata/m-p/354109#M8420</link>
      <description>Thank you Jan and Michelle for your responses..</description>
      <pubDate>Thu, 27 Apr 2017 13:40:46 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Administration-and-Deployment/Importing-AD-groups-and-users-and-Mapping-them-to-SAS-Metadata/m-p/354109#M8420</guid>
      <dc:creator>againreddy</dc:creator>
      <dc:date>2017-04-27T13:40:46Z</dc:date>
    </item>
  </channel>
</rss>

