Skip to main content
My preferencesSign out
Proofpoint, Inc.

Groups Are Being Created As Functional Accounts Upon AD Import

Groups are being created as functional accounts upon AD Import 

 

Situation Why are Groups in AD being created as Functional Accounts / End User when I import to Proofpoint Essentials?
Solution

You will need to check the Group Scope within AD. See below for information on the following 3 scenarios involving an Active Directory Group Object being imported as a:

  • Group
  • Functional Account
  • End User

 

Why are Groups in AD being created as Functional Accounts when I import to Proofpoint Essentials?

You will need to check the scope configuration in AD for the Groups and other attributes outlined below

Scenario 1 - An Active Directory Group Object being imported as type Group

  • The Group Scope is set to Domain Local. 
  • No Mail attribute is set under the group's General properties.

clipboard_e47aa09954734fbdc51109f438e6a7d6b.png

  • There must be at least 1 user object defined with the Mail attribute field also set, under general properties.

Scenario 2 - An Active Directory Group Object being imported as type Functional Account:

  • The Group Scope is set to Global or Universal.
  • The Mail attribute field is populated under the group's General properties.

clipboard_ec47d67703a3bf223eead5d6d53027320.png

Scenario 3 - An Active Directory Group Object being imported as End User:

  • The Group Scope is set to Domain Local.
  • The Mail attribute field is populated.

clipboard_e024ae55e9b346ec4b80ddfda7107265b.png