{"id":1041,"date":"2010-07-25T16:37:21","date_gmt":"2010-07-25T21:37:21","guid":{"rendered":"http:\/\/blogs.devhorizon.com\/reza\/?p=1041"},"modified":"2010-07-25T16:39:37","modified_gmt":"2010-07-25T21:39:37","slug":"excluding-profile-information-from-being-synchronized-in-sharepoint-2010","status":"publish","type":"post","link":"https:\/\/blogs.devhorizon.com\/reza\/2010\/07\/25\/excluding-profile-information-from-being-synchronized-in-sharepoint-2010\/","title":{"rendered":"Exclusion Filters in User Profile Synchronization"},"content":{"rendered":"<p>Assuming that you have already setup a profile synchronization connection, let&#8217;s say you need to configure the service to exclude users whose accounts have been disabled in Active Directory. Or, the groups which contain the word &#8220;RAS&#8221; in them.<\/p>\n<p>How would you do this? The answer is exclusion filter.\u00a0 A feature that enables you to exclude users (or group) during the synchronization process.<\/p>\n<p>First you need to get there:<\/p>\n<p>1) Browse to Central Administration Site &gt; Manage Service Applications &gt; User Profile Service Application.<br \/>\n2) On the Manage Profile Service: User Profile Service Application\u00a0 page, click the\u00a0 Configure Synchronization Connections. This will take you to a page where all the synchronization connections are already setup.<\/p>\n<p><a href=\"http:\/\/farm5.static.flickr.com\/4074\/4828363388_ac41bbbfa2_b.jpg\"><img decoding=\"async\" src=\"http:\/\/farm5.static.flickr.com\/4074\/4828363388_ac41bbbfa2_m.jpg\" \/><\/a><br \/>\n3) Select the connection you want to filter, and then from the ECB menu, click Edit Connection Filter.<\/p>\n<p><a href=\"http:\/\/farm5.static.flickr.com\/4135\/4827756449_5a54dde061_b.jpg\"><img decoding=\"async\" src=\"http:\/\/farm5.static.flickr.com\/4135\/4827756449_5a54dde061_m.jpg\" \/><\/a><\/p>\n<p>The Edit Connection Filters page is where you can select a user or group property for which you want to apply a synchronization filter and configure it. The page is divided into two sections: Exclusion Filter for Users and Exclusion Filter for Groups. Titles are pretty self-explanatory!<\/p>\n<p>4) In the users section, click the Attribute list drop down and select <strong>userAccountControl <\/strong>flag.<\/p>\n<p>Adsiedit.msc displays the value of this flag in decimal for a disabled account (John Doe):<\/p>\n<p><a href=\"http:\/\/farm5.static.flickr.com\/4139\/4827756409_3321f63748_b.jpg\"><img decoding=\"async\" src=\"http:\/\/farm5.static.flickr.com\/4139\/4827756409_3321f63748_m.jpg\" \/><\/a><\/p>\n<p>5) Select Bit on equals as the operator,and then type 2 for the filter value. Don&#8217;t forget to click Add to add the filter condition to list of existing conditions.<\/p>\n<p>* Choose All apply (AND) when you need all of the conditions to be true for the exclusion filter to kick in.<br \/>\n* Choose Apply any (OR) when you need only one of the conditions to be true for the exclusion filter to kick in.<\/p>\n<p>6) In the groups section, click the Attribute list drop down and select <strong>DisplayName<\/strong>.<br \/>\n7) Select Contains as the operator,and then type RAS for the filter value. Again, don&#8217;t forget to click Add to add the filter condition to list of existing conditions.<\/p>\n<p>Your page should look like this:<\/p>\n<p><a href=\"http:\/\/farm5.static.flickr.com\/4101\/4828363188_9626c230dc_b.jpg\"><img decoding=\"async\" src=\"http:\/\/farm5.static.flickr.com\/4101\/4828363188_9626c230dc_m.jpg\" \/><\/a><\/p>\n<p>.8) Click Ok where your done.<br \/>\n9) Start a full synchronization.<br \/>\n<img decoding=\"async\" src=\"http:\/\/farm5.static.flickr.com\/4117\/4828407268_d83b3ac017.jpg\" \/><\/p>\n<p>Once the synchronization is completed, the John Doe guy and all the groups containing the word &#8220;RAS&#8221; shouldn&#8217;t be imported to SharePoint.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Assuming that you have already setup a profile synchronization connection, let&#8217;s say you need to configure the service to exclude users whose accounts have been disabled in Active Directory. Or, the groups which contain the word &#8220;RAS&#8221; in them. How would you do this? The answer is exclusion filter.\u00a0 A feature that enables you to [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[36],"tags":[],"class_list":["post-1041","post","type-post","status-publish","format-standard","hentry","category-sharepoint-2010"],"_links":{"self":[{"href":"https:\/\/blogs.devhorizon.com\/reza\/wp-json\/wp\/v2\/posts\/1041","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blogs.devhorizon.com\/reza\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blogs.devhorizon.com\/reza\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blogs.devhorizon.com\/reza\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/blogs.devhorizon.com\/reza\/wp-json\/wp\/v2\/comments?post=1041"}],"version-history":[{"count":0,"href":"https:\/\/blogs.devhorizon.com\/reza\/wp-json\/wp\/v2\/posts\/1041\/revisions"}],"wp:attachment":[{"href":"https:\/\/blogs.devhorizon.com\/reza\/wp-json\/wp\/v2\/media?parent=1041"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blogs.devhorizon.com\/reza\/wp-json\/wp\/v2\/categories?post=1041"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blogs.devhorizon.com\/reza\/wp-json\/wp\/v2\/tags?post=1041"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}