Active Directory inventory (server)
Every DriveLock Enterprise Service is able to read all users, computers, groups and OU information from the current Active Directory, which is the same domain the DriveLock Enterprise Service user account belongs to. This information is stored in the DriveLock database for use within a DriveLock configuration.
Configuration: DOC -> Settings (gear icon) -> Backend -> Server settings -> General -> AD inventory
Once the AD inventory is collected from the server, the DriveLock Enterprise Service automatically determines the AD inventory of the server's current domain once every 24 hours. The information is stored in the assigned tenant of the server (for central DES, this is the 'root' tenant). This action can also be triggered manually.
We do not recommend setting this option if your environment has multiple tenants. In this case, use the AD inventory setting for the DriveLock Agent.