
The ADC reads some of its configuration details from the
Active Directory configuration settings on your My1Login web account. This configuration needs to be setup prior to
installing the ADC.
The ADC may be configured to monitor one, or more, trees of
AD containers; synchronising the OUs, security groups and users within these
trees. Only enabled users, who are
members of OUs or groups within the monitored trees, may access the My1Login
system.
These trees are specified in the Domain Query Roots
attribute on the Web App with the DN(s) of the roots of the tree(s) you wish to
monitor.

You can change what is synchronised at any time. When initially rolling out My1Login it is recommended to monitor a small OU to get familiar with how the system works prior to doing a full roll out.
The following example domain structure is used to illustrate
how this works.


Example 1
The ADC could be configured to sync the root Glasgow OU and
it would then synchronise all OUs and groups under that OU (Accounts, AWS,
Glasgow and Research and Development).
The Domain Query Roots value for this is:
OU=Glasgow,DC=dev,DC=my1login

Example 2
Alternatively, you may just wish to monitor the AWS and
Accounts OUs and the OUs and groups under them.
To specify multiple DNs in the Domain Query Roots field put
brackets around each DN
(OU=AWS,OU=Glasgow,DC=dev,DC=my1login)(OU=Accounts,OU=Glasgow,DC=dev,DC=my1login)

Example 3
Or you may simply just want to monitor the AWS
Administrators group (under the AWS OU).
CN=AWS
Administrators,OU=AWS,OU=Glasgow,DC=dev,DC=my1login
1.2 Web App Configuration
To configure your My1Login account:
- Log into My1Login using the Owner’s account (the
one used when signing up for the service)
- Click on the Administration link at the top
right of the vault screen.
- Click on the Users option in the left-hand menu.
- Give AD Configure permissions to your user: