product icon

Configure the Active Directory Connector v2

Configuring the Active Directory Connector consists of authenticating a Windows user account and adding Active Directory groups, set a polling interval, and editing attribute mapping, if desired.

The Active Directory Connector (ADC) receives Active Directory user updates and automatically makes the same changes in your GoTo account.

Set connections to ADC

To complete the steps below, you will need an admin account for Windows and a GoTo product admin account that is also an Organization Admin.
  1. Locate the Active Directory Connector Admin application (default location is C:\Program Files\Logmein\Active Directory Connector) and double-click ActiveDirectoryConnectorAdmin.exe to start the ADC. If prompted by User Account Control, select Yes to confirm, and the Active Directory Connector software will launch.
  2. Enter your Windows credentials in DOMAIN\username format (e.g., LOGMEIN\admin) and select OK. If you want to use a different Windows domain account for the Active Directory Connector service, select Change user, then fill in your desired DOMAIN\username credentials and select OK to confirm.
  3. Under GoTo permissions, sign in with your GoTo admin account, which is required to also have an Organization Admin role. When prompted, select Allow to grant access to your GoTo account for the Active Directory Connector. Why am I getting an "Insufficient Permissions" error message?
  4. Once signed in, the user for each account is displayed. Select Save at the bottom of the window. If desired, you can select Revert Changes to delete any modifications made since the last time you selected Save.
What to do next: Next, you will need to add your Active Directory groups using the steps below.

Add or remove Active Directory groups

You can add as many Active Directory groups as you need. Nested groups are added when you add the parent group. Once you add or remove Active Directory groups in the ADC, changes can be previewed before you decide to sync.

  1. Under Active Directory Groups, select Add. The Windows groups manager displays.
  2. Type in a group name in the Enter the object names... box and select Check Names. This verifies the group exists and is accessible. You can also use the Advanced option to locate groups by query.
  3. Select OK to add the group. Continue until you have added all required groups.
  4. If desired, you can select the Delete icon to remove a selected group.
    Note: When you remove a group that has already been synced, any users in that group will remain in User Sync, but will lose their product entitlements.
  5. After each update, select Save at the bottom of the window. If needed, select Revert Changes to delete any modifications made since the last time you saved.
  6. When all of your groups have been added or removed, select Preview to view finalized changes, which include:
    • Users added represents new users that will be synced to a group in the ADC for the first time.
    • Groups added represents new groups that will be synced in the ADC for the first time.
    • Groups removed represents the groups that will be removed entirely from the ADC.
    • Users added to group represents the users who will be added to at least one group in the ADC.
    • Users removed from group represents the users who will be removed from at least one group in the ADC.
    • Users removed from all groups represents the users who will not be associated with any groups in the ADC; these users will remain listed in User Sync but will lose their product entitlements.
  7. Once you have viewed the changes, choose from the following options:
    • To accept these changes and run the ADC service, select Save then select Yes. If you have saved the changes but select No when prompted to start the service, you will return to the ADC and your changes will remain saved, but you will need to select Start to manually start the ADC service.
    • To reject the proposed changes, select Cancel to return to the ADC with unsaved changes.
What to do next: Next, set your desired polling interval.

Set polling interval

You can add as many Active Directory groups as you need. Nested groups are added when you add the parent group. Once you add or remove Active Directory groups in the ADC, changes can be previewed before you decide to sync.

  1. Under Options, enter the number of minutes you want the ADC to wait between polls.
    Note: The default polling interval is 15 minutes.
  2. After each update, select Save at the bottom of the window. If desired, select Revert Changes to delete any modifications made since the last time you saved.
  3. Select Check connections to verify your permissions after all of your changes have been saved.
What to do next: Next, you can choose to edit attribute mapping and manage your custom attributes, if desired. Otherwise, you can proceed to run the ADC .

Edit attribute mapping (optional)

  1. Under Options on the ADC, select Edit Mapping.
  2. Modify the attributes with your desired value(s), then select OK.
  3. After each update, select Save at the bottom of the ADC window. Alternatively, select Revert Changes to delete any modifications made since the last time you selected Save.
What to do next: Next, you can proceed to run the ADC v2 .