{"id":146,"date":"2019-02-27T12:10:40","date_gmt":"2019-02-27T12:10:40","guid":{"rendered":"http:\/\/172.23.1.43\/?p=146"},"modified":"2022-06-07T22:26:14","modified_gmt":"2022-06-07T22:26:14","slug":"how-to-configure-workspace-one-uem-and-ms-ds-consistencyguid","status":"publish","type":"post","link":"https:\/\/blog.n-dol.org\/2019\/02\/27\/how-to-configure-workspace-one-uem-and-ms-ds-consistencyguid\/","title":{"rendered":"How to configure Workspace ONE UEM and mS-DS-ConsistencyGuid"},"content":{"rendered":"\n

When it comes to Azure AD integration within Workspace ONE UEM. The configuration is quite straight forward, however when we work on complex environment with a lot of different Active Directory, it can become complex as the source Anchor is going to change most of the time from objectGUID to mS-DS-ConsistencyGuid, which is also the best practice from Microsoft<\/a>. If you are in this case, most likely the mS-DS-ConsistencyGuid won’t equal the objectGUID that why it is important to configure it properly.<\/p>\n\n\n\n

To check the immutable ID\/Source Anchor in Azure AD, check this post :\u00a0How to check the Immutable ID\/Source Anchor<\/a><\/p>\n\n\n\n\n\n\n\n

Configure Azure AD Integration in Workspace ONE UEM<\/h1>\n\n\n\n

The configuration of the Azure integration have to be done at the same level as the Active Directory configuration.<\/p>\n\n\n\n

1 – Open Workspace ONE UEM<\/strong> console, go to Groups & Settings<\/strong> then All Settings<\/strong><\/p>\n\n\n\n

2 – Navigate to System > Enterprise Integration > Directory Services<\/strong><\/p>\n\n\n\n

3 – Put Use Azure AD For Identity Services<\/strong> to Enabled<\/strong><\/p>\n\n\n\n

4 – Enter the Directory ID<\/strong> and Tenant Name<\/strong>. These informations are available in the Azure portal.<\/p>\n\n\n\n

5 – In Immutable ID Mapping Attribute<\/strong> field put mS-DS-ConsistencyGuid<\/strong>, (case sensitive<\/span>)<\/p>\n\n\n\n

6 – Make sure that Mapping Attribute Data Type<\/strong> is at Binary<\/strong><\/p>\n\n\n\n

\"Workspace-ONE-UEM-ImmutableID-Configuration\"<\/figure><\/div>\n\n\n\n

7 – Optional, this will force a sync now instead of waiting for the next Directory Sync, go to User<\/strong> tab, click on Advanced<\/strong><\/p>\n\n\n\n

\"Workspace-ONE-UEM-ImmutableID-UserTab-Advanced\"<\/figure><\/div>\n\n\n\n

8 – Scroll all the way down then click Sync Attributes<\/strong><\/p>\n\n\n\n

\"Workspace-ONE-UEM-ImmutableID-UserTab-SyncAttributes\"<\/figure><\/div>\n\n\n\n

You won’t see the Immutable ID attribute within the console, it’s in the database, there is no access to it. If you really want to make sure, you can use the custom attributes to display it but as the attribute is in Binary, it will display weird characters.<\/p>\n","protected":false},"excerpt":{"rendered":"

When it comes to Azure AD integration within Workspace ONE UEM. The configuration is quite straight forward, however when we…<\/p>\n","protected":false},"author":5614970,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[2157457,38600,672890795],"tags":[22299055,121169617,651069476],"_links":{"self":[{"href":"https:\/\/blog.n-dol.org\/wp-json\/wp\/v2\/posts\/146"}],"collection":[{"href":"https:\/\/blog.n-dol.org\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.n-dol.org\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.n-dol.org\/wp-json\/wp\/v2\/users\/5614970"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.n-dol.org\/wp-json\/wp\/v2\/comments?post=146"}],"version-history":[{"count":11,"href":"https:\/\/blog.n-dol.org\/wp-json\/wp\/v2\/posts\/146\/revisions"}],"predecessor-version":[{"id":850,"href":"https:\/\/blog.n-dol.org\/wp-json\/wp\/v2\/posts\/146\/revisions\/850"}],"wp:attachment":[{"href":"https:\/\/blog.n-dol.org\/wp-json\/wp\/v2\/media?parent=146"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.n-dol.org\/wp-json\/wp\/v2\/categories?post=146"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.n-dol.org\/wp-json\/wp\/v2\/tags?post=146"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}