Discover how a bimodal integration strategy can address the major data management challenges facing your organization today.
Get the Report →Replicate Multiple Active Directory Accounts
Replicate multiple Active Directory accounts to one or many databases.
CData Sync for Active Directory is a stand-alone application that provides solutions for a variety of replication scenarios such as replicating sandbox and production instances into your database. Both Sync for Windows and Sync for Java include a command-line interface (CLI) that makes it easy to manage multiple Active Directory connections. In this article we show how to use the CLI to replicate multiple Active Directory accounts.
Configure Active Directory Connections
You can save connection and email notification settings in an XML configuration file. To replicate multiple Active Directory accounts, use multiple configuration files. Below is an example configuration to replicate Active Directory to SQLite:
Windows
<?xml version="1.0" encoding="UTF-8" ?>
<CDataSync>
<DatabaseType>SQLite</DatabaseType>
<DatabaseProvider>System.Data.SQLite</DatabaseProvider>
<ConnectionString>User=cn=Bob F,ou=Employees,dc=Domain;Password=bob123;Server=10.0.1.2;Port=389;</ConnectionString>
<ReplicateAll>False</ReplicateAll>
<NotificationUserName></NotificationUserName>
<DatabaseConnectionString>Data Source=C:\my.db</DatabaseConnectionString>
<TaskSchedulerStartTime>09:51</TaskSchedulerStartTime>
<TaskSchedulerInterval>Never</TaskSchedulerInterval>
</CDataSync>
Java
<?xml version="1.0" encoding="UTF-8" ?>
<CDataSync>
<DatabaseType>SQLite</DatabaseType>
<DatabaseProvider>org.sqlite.JDBC</DatabaseProvider>
<ConnectionString>User=cn=Bob F,ou=Employees,dc=Domain;Password=bob123;Server=10.0.1.2;Port=389;</ConnectionString>
<ReplicateAll>False</ReplicateAll>
<NotificationUserName></NotificationUserName>
<DatabaseConnectionString>Data Source=C:\my.db</DatabaseConnectionString>
</CDataSync>
To establish a connection, set the following properties:
- Valid User and Password credentials (e.g., Domain\BobF or cn=Bob F,ou=Employees,dc=Domain).
- Server information, including the IP or host name of the Server, as well as the Port.
BaseDN: This will limit the scope of LDAP searches to the height of the distinguished name provided.
Note: Specifying a narrow BaseDN may greatly increase performance; for example, cn=users,dc=domain will only return results contained within cn=users and its children.
Configure Queries for Each Active Directory Instance
Sync enables you to control replication with standard SQL. The REPLICATE statement is a high-level command that caches and maintains a table in your database. You can define any SELECT query supported by the Active Directory API. The statement below caches and incrementally updates a table of Active Directory data:
REPLICATE User;
You can specify a file containing the replication queries you want to use to update a particular database. Separate replication statements with semicolons. The following options are useful if you are replicating multiple Active Directory accounts into the same database:
You can use a different table prefix in the REPLICATE SELECT statement:
REPLICATE PROD_User SELECT * FROM User
Alternatively, you can use a different schema:
REPLICATE PROD.User SELECT * FROM User
Run Sync
After you have configured the connection strings and replication queries, you can run Sync with the following command-line options:
Windows
ActiveDirectorySync.exe -g MyProductionActiveDirectoryConfig.xml -f MyProductionActiveDirectorySync.sql
Java
java -Xbootclasspath/p:c:\sqlitejdbc.jar -jar ActiveDirectorySync.jar -g MyProductionActiveDirectoryConfig.xml -f MyProductionActiveDirectorySync.sql