in which interface did you see this so?
In the EPO web interface.
Menu > user Management > Permission Sets > Executive Reviewer > Names and Users
Edit > Active Directory User Mappings > Active Directory groups mapped to this permission set: > Browse
Only shows Universal Security Groups in browsing AD not Global.
Using EPO 4.6
I am in the process of setting up an ePO server in our testing environment and am also experiencing the same issue, only Universal Groups are displayed.
I am in the process of setting up Windows Authorization and trying to select a AD group to give Group Admin right to.
Menu | User Management | Permission Sets | Group Admin | Name and Users | Edit
Active Directory groups mapped to this permission set:
Pick LDAP server (registered server) click add button
I can browse the AD tree but only Universal Groups are being displayed
I'm using ePO 4.6, I hope to hear any suggestions on what the solution to this problem is.
In ePO, how have you got the registered LDAP server for this domain configured? I'm guessing you have Use Global Catalog enabled - if this is the case you will only see universal groups.
Yes Joe you were correct I did configure the LDAP server to use Global Catalog I picked this option as it was stated in the ePO Product Guide that by enabling the Global Catalog would provide significant performance benefits. I didn't realise by enabling this setting that when configuring windows authentication / Authorization this would only display Universal Groups.
I have deselected the Use Global Catalog and I can now see the Global Groups.
Thanks for your help and fast response
No problem, glad it's working now
Where do I modify settings to use global catalog?
In the configuration page for the LDAP server that you have registered with ePO: there is an option for Use Global Catalog.
Menu | Configuration | Registered Servers
Click on your LDAP Registration
Click on Actions and then select Edit
Click Next on the details page you can deselect Use Global Catalog
Hope this helps