2.9  Mapping of user accounts and groups from the Active Directory

To enable disposal of Active Directory user accounts, set mapping of a corresponding domain and define a template that will apply specific Kerio Control parameters (user rights, data transfer quotas, etc.) to all users.

Domain mapping

To set Active Directory domain mapping, go to the Active Directory tab under User and Groups → Users. The firewall must belong to the corresponding domain. For mapping of user accounts, enter name and password of a user with rights to read the Active Directory database (any user belonging to the domain).

Creating templates for user accounts

On the User Accounts tab, select the mapped Active Directory domain, i.e. company.com. If mapping is set correctly, all user accounts included in the domain will be displayed here.

Click on the Template button to define a template for user accounts. It is also intended to enable remote users to access the local network by Kerio VPN Client or Kerio Clientless SSL-VPN. Set user rights on the Rights tab.

Hint

In case you do not want to use any of the domain accounts, you can block them in Kerio Control and hide blocked accounts. The accounts will be blocked only in Kerio Control, they will stay active in the domain.