• Get started
  • Documentation

Data Manager - Active Directory Adapter

Assets Data Manager for Jira Service Management Cloud is a Premium and Enterprise only feature that is currently in Open Beta development. View and vote on our list of upcoming features.

If you find a bug or have questions, please reach out to Atlassian Support or the Atlassian Community.

Introduction

Active Directory is a tool produced by Microsoft that is used for Systems Management.

Active Directory uses a PowerShell connection to bring data into Assets Data Manager.

How do I connect this tool to Assets Data Manager?

This task requires Data Manager Adapters admin permissions to complete. See how permissions and roles work in Data Manager.

 

Follow this procedure to connect this tool to Assets Data Manager using the custom-built Adapter:

  1. Gather all of the information listed in the Data Manager Fields section, such as the Name, Object class, Data Source Name, and Data Source Type.

  2. Gather all of the information in the Active Directory Fields section - this may require consultation with your tool’s SME.

  3. Select Create Job, then select the Windows Active Directory (AD) tile

  4. Configure all of the required fields with the appropriate information.

  5. Follow all of the steps listed in the Authentication and Authorization section to properly configure Authentication and Authorization.

  6. Review the Fields Retrieved section.

  7. Data will be brought in from the tool each time this job is run.

Data Manager Fields

You will need to specify the following information from Assets Data Manager:

  1. Name - the name of the Connection, visible as the job name in Adapters.

  2. Object - the name of the Object Class you want to the data to be loaded into.

  3. Data Source Name - the type of data being created; which is usually the tool name, e.g AD, Qualys etc. Note: This can be the same as Name.

  4. Data Source Type - what type of data is the tool providing? For example, Assets, CMDB, user location and more.

Active Directory Fields

You will need to specify the following information from Active Directory:

  1. AD Data Source - the Data Source Type drop-down box allows the user to specify where the data should come from. Select from:

    • User

    • Computer

    • Sites & Services (subnets)

  2. Enable Discovery Domains - if the “enable discovery domains” is checked, the data adapter searches the Active Directory Domain Services to identify user accounts and their associated attributes.

  3. Target Domains - where the domains you want to connect are listed, separated by a comma ,.

  4. Username - the username that has been granted Read Only access to Active Directory.

  5. Password - the corresponding password for the Username used above.

Authentication and Authorization

Authentication and Authorization are handled by the Adapter using a PowerShell connection.

To run the PowerShell query, the Adapters Client uses Remote Server Administration Tools (RSAT). Therefore, you need an RSAT enabled server to for PowerShell call to work.

If the Domains listed under Target Domains have different username and password requirements, these need to be set-up as separate jobs.

For example: Active Directory connections in the production environment may have a different username and password requirements to Active Directory in non-production.

Fields Retrieved

The Primary Key retrieved by Active Directory is distinguishedname.

The following fields are retrieved for the Users Object Class:

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 distinguishedname name whenChanged whenCreated location userAccountControl accountExpires cn mail sAMAccountName lastLogonTimestamp employeeID employeeNumber employeeType department countryCode co st street streetaddress

The following fields are retrieved for the Computers Object Class:

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 FlatDomain  QualifiedDomain  distinguishedname  name  whenChanged  whenCreated  location  OperatingSystem  OperatingSystemServicePack  OperatingSystemVersion  userAccountControl  description  accountExpires  lastLogoff  cn  sAMAccountName  lastLogonTimestamp  ADTarget 

Still need help?

The Atlassian Community is here for you.