<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Syncing Active Directory groups while using ADFS on QlikSense in Management &amp; Governance</title>
    <link>https://community.qlik.com/t5/Management-Governance/Syncing-Active-Directory-groups-while-using-ADFS-on-QlikSense/m-p/1598871#M14060</link>
    <description>&lt;P&gt;We have successfully deployed ADFS on QlikSense and using it at the moment. However we are trying to set up license allocation and access rules based on AD groups. We are having some trouble as the AD groups for the ADFS users are not being synced to QLikSense.&lt;/P&gt;&lt;P&gt;Do i need to do something on the ADFS side to get the AD Groups for users to carry through to QlikSense?&lt;/P&gt;</description>
    <pubDate>Sat, 16 Nov 2024 05:23:31 GMT</pubDate>
    <dc:creator>mehdibassam</dc:creator>
    <dc:date>2024-11-16T05:23:31Z</dc:date>
    <item>
      <title>Syncing Active Directory groups while using ADFS on QlikSense</title>
      <link>https://community.qlik.com/t5/Management-Governance/Syncing-Active-Directory-groups-while-using-ADFS-on-QlikSense/m-p/1598871#M14060</link>
      <description>&lt;P&gt;We have successfully deployed ADFS on QlikSense and using it at the moment. However we are trying to set up license allocation and access rules based on AD groups. We are having some trouble as the AD groups for the ADFS users are not being synced to QLikSense.&lt;/P&gt;&lt;P&gt;Do i need to do something on the ADFS side to get the AD Groups for users to carry through to QlikSense?&lt;/P&gt;</description>
      <pubDate>Sat, 16 Nov 2024 05:23:31 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Syncing-Active-Directory-groups-while-using-ADFS-on-QlikSense/m-p/1598871#M14060</guid>
      <dc:creator>mehdibassam</dc:creator>
      <dc:date>2024-11-16T05:23:31Z</dc:date>
    </item>
    <item>
      <title>Re: Syncing Active Directory groups while using ADFS on QlikSense</title>
      <link>https://community.qlik.com/t5/Management-Governance/Syncing-Active-Directory-groups-while-using-ADFS-on-QlikSense/m-p/1605862#M14211</link>
      <description>&lt;P&gt;Option (1), align the user directory and userId to match the user directory and userId which is found in AD (aka do not have DOMAIN\user and domain\user@domain.tld as users inside of Qlik Sense). For a general pointer in this direction:&amp;nbsp;&lt;A href="https://community.qlik.com/t5/New-to-Qlik-Sense/How-to-retain-user-security-rules-when-transitioning-from/m-p/1603251#M141387" target="_blank"&gt;https://community.qlik.com/t5/New-to-Qlik-Sense/How-to-retain-user-security-rules-when-transitioning-from/m-p/1603251#M141387&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;For ADFS specific guidance, I am using this on my end.&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;UserID: SAM-Account-Name as Common Name:&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Common_Name.png" style="width: 551px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/15996iB1A3739ACFDC7794/image-size/large?v=v2&amp;amp;px=999" role="button" title="Common_Name.png" alt="Common_Name.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Sense:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="sense.png" style="width: 981px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/15997iE5453E9040DC4959/image-size/large?v=v2&amp;amp;px=999" role="button" title="sense.png" alt="sense.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Option (2), pass the group memberships in the SAML assertion (&lt;A href="https://community.qlik.com/t5/Qlik-Design-Blog/User-Environment-What-Session-Attributes-in-Qlik-Sense/ba-p/1476590" target="_blank"&gt;https://community.qlik.com/t5/Qlik-Design-Blog/User-Environment-What-Session-Attributes-in-Qlik-Sense/ba-p/1476590&lt;/A&gt;). I am doing it like so in ADFS:&lt;/P&gt;
&lt;P&gt;ADFS:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="adfs-groups.png" style="width: 491px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/15999i51BB20211B0182DB/image-size/large?v=v2&amp;amp;px=999" role="button" title="adfs-groups.png" alt="adfs-groups.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Sense:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="groups.png" style="width: 966px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/15998i0BDB24D1126DD74C/image-size/large?v=v2&amp;amp;px=999" role="button" title="groups.png" alt="groups.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Do note with the session groups, the security (or license) rule syntax is going to be different.&lt;/P&gt;</description>
      <pubDate>Wed, 24 Jul 2019 20:57:43 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Syncing-Active-Directory-groups-while-using-ADFS-on-QlikSense/m-p/1605862#M14211</guid>
      <dc:creator>Levi_Turner</dc:creator>
      <dc:date>2019-07-24T20:57:43Z</dc:date>
    </item>
  </channel>
</rss>

