Expand my Community achievements bar.

Active Directory groups synchronization issue

Avatar

Level 1

hi,

     Few weeks back ,we have deployed adobe LiveCycle ES4 to a Windows Server 2008 R3 and it was working fine ever since then.

just last week we have noticed that when applying and granting permissions for any newly created Active Direcoty group, the actual permissions is not being applied. we are able to search and find these newly created groups in the admin console and we are able to grant them the required permssions over the policy and we can see in the pemissions of the policy that these groups aew there and having the permissions, but again the users are getting acces denied message,

we have tried with old groups, which were created before the deployment of the LiveCycle to the server/ or to be specific before the 1st synch with AD we have done after installing the product and it is working fine as users are able to access the pdf document that we have applied over the same policy we have used in the previous example and also over a newly created policy.

Now! ....is there any guidelines or procedures we could go through to verify that there is an actual synchronization with AD is occuring , and where to look in order to verify that the synch is occuring'?

also, how to explain the fact that the newly created active directory groups appears in our searches when we want to grant them any level pe permissions over the policies but the permissions are not being actually applied,!  what i understand is that if the groups is searchable and we are able to add them to policies , this means that the permissions are applied! ....but they are not!  although the users are logging off thier workstations and logging again after making sure that all processes are fresh.

1 Reply

Avatar

Former Community Member

Are you applying the rights to the "all principals" of the synced directory?