User Synchronization Details
This information applies to user synchronization with local active directories and with the vault-level plugin method for Microsoft Entra ID. For synchronization details with M-Files Manage provisioning, refer to the M-Files Manage user guide.
Changes in AD group members
See the table for information on what occurs in M-Files when the members of the synchronized AD groups have changed.
| Change | Effects | 
|---|---|
| Users added to AD groups that are synchronized to M-Files | 
                
  | 
            
| Users removed from all the AD groups that are synchronized to M-Files | 
                
 Note: Users are not automatically disabled if they are members of at least one synchronized AD
                  group. 
               | 
            
Disabling and deleting synchronized users in M-Files
See the table for information on what occurs if you disable or delete synchronized users in the vault.
| Change | Effects | 
|---|---|
| Synchronized users disabled in M-Files | By default, the users stay disabled. To enable the users again, they must be enabled in
                  M-Files. If you use a synchronization plugin, you can change the default behavior. To do this, go to the Active Directory Importing settings and set Enable Disabled Users from Imported Groups to Yes.  | 
            
| Synchronized users deleted in M-Files | The AD group synchronization does not create the deleted users again to the vault. |