When the User Directory is synchronized and a user cannot be found, the user is automatically deactivated.
This article covers how to avoid RootAdmins being deactivated from changes done to the LDAP filters used to query users with the User Directory Connector.
Note that you cannot intentionally deactivate a RootAdmin where the user has been set to Delete prohibited. To deactivate the RootAdmin user, first clear the Delete prohibited selection.