The Service Manager updates the security domain with the users and groups in an LDAP directory service on a scheduled basis. You can set up the synchronization schedule when you configure LDAP authentication.
The Service Manager performs the following steps during synchronization:
Retrieves an updated list of users and groups from the LDAP directory service, based on the search base and filters you configured for the security domain.
Updates the list of LDAP users and groups in the security domain. If an LDAP user in the security domain has been deleted in the LDAP directory service, the Service Manager transfers ownership of the user’s objects to the domain administrator account.