Users or user groups that are maintained in the external user directory must still be registered in the
MDM Hub
. Registration is required before the
MDM Hub
can assign roles, and their associated privileges, to these users and groups.
Assign users from the external directory to groups in the
MDM Hub
. You must maintain the relationships between users and groups in the
MDM Hub
, even if you also maintain the relationships through the Lightweight Directory Access Protocol.
The following image shows a security deployment where you manage users in an external directory, but you manage the groups, role assignment, and privilege assignment in the
MDM Hub
.
In this scenario, the external user directory manages user accounts, groups, and user profiles. The external user directory can authenticate users and provide information to the