To add an IDex Directory to your list of Directories, you must do so from the On-Premise Appliance. You can choose whether to display the IDex Directory in Cloud.
Important
This setup is for customers with a Smoothwall Appliance, either on its own or in a Hybrid setup. See Set up IDex Agent to sync Active Directory for Cloud-only setups.
Before you begin
Add an IDex Directory to Smoothwall
- Go to Services > Authentication > Directories.
- Select Add new directory.
- Make sure the Enabled checkbox is selected.
- (For multi-tenant environments) Select the tenant.
- Select the Type as IDex Directory.
- You can leave the default name of the IDex Directory, or amend it.
- If you are on a Leeds release or earlier, or have a ‘Hybrid’ setup (both Cloud and On-Premise Appliance), select Advanced Options.
- If you have a ‘Hybrid’ setup, you’ll see a Directory in Cloud Portal field. Select Enabled to push the directory setup from the On-Premise Appliance to the Cloud. If you don’t select this checkbox, the directory will exist only on the On-Premise Appliance.
- For Leeds releases or earlier, choose the IDex Directory DB Key. Either select the Default or enter your own if you have a multi-tenant setup where some data sets need to be partitioned. The DB Key should be an alphanumeric value without spaces.
- Optionally, enter a comment.
- Select Add.
- If you enabled Directory in Cloud Portal, the initial sync will run overnight, or you can run a sync manually (shown below). If you have both Cloud and an On-Premise Appliance, you won’t see the IDex directory in Cloud until the sync is complete.
Sync IDex Directory
When you make changes to the users in your Directory groups, you can either:
- Wait for the automatic overnight additive sync.
- Run a manual resync. There are two ways to do this, as shown below.
Syncs can take up to two hours, depending on your directory's size.
Partial sync
Use this option to add new users to groups. It won’t remove users from a User Group if they were removed from a Directory group.
If Directory in Cloud Portal is not enabled, run 'sendaddatanow.exe' on your Active Directory server at C:\ProgramFiles\Smoothwall\IDexAgent\SendAdDataNow.exe
If Directory in Cloud Portal is enabled:
- Run 'sendaddatanow.exe' on your Active Directory server, at C:\ProgramFiles\Smoothwall\IDexAgent\SendAdDataNow.exe
- Go to Services > Authentication > Directories, hover over the directory, and select Sync.
Full sync
Important
This process signs out all currently signed-in users, so complete it out of hours.
Use this option when you need to perform a complete remapping, such as after moving users between Directory groups or removing users from Directory groups. The resync clears all IDex authentication information for all configured IDex Directories.
- Go to Services > Authentication > Settings.
- Select the Clear IDex Directory button.
- Run 'sendaddatanow.exe' on your Active Directory server at C:\ProgramFiles\Smoothwall\IDexAgent\SendAdDataNow.exe.
Edit or delete an IDex directory
- Go to Services > Authentication > Directories.
- Hover over the directory and select Edit or Delete.
- When editing, you can deselect the Enabled box to keep the directory but prevent it from being used in Smoothwall.
Next step
You must map your Directory User Groups to the Smoothwall User Groups to authenticate users and apply Web Filter Policies.