Create a Directory Query

You can create an Active Directory or LDAP query to retrieve information from Active Directory or LDAP to populate a Smart Rule. To work with directory queries, the BeyondInsight user must be a member of the Administrators group or assigned the Asset Management permission.

For more information, please see Create and Configure Groups.

  1. Select Configuration.
  2. Under Role Based Access, click Directory Queries.

Screenshot of New Directory Query window

  1. Click Create Directory Query.

To clone an existing query, hover over a query in the list, and then click the Edit icon, and select Clone.

 

 

Screenshot of the New Directory Query window

  1. Select the directory type: Active Directory or LDAP.
  2. Enter a name for the query.
  3. Select a stored credential for running this query or click Manage Credentials to add or edit a credential.

At minimum, the credential must have Read permissions on the computer assets you are enumerating.

For more information on creating and editing directory credentials, please see Create and Edit Directory Credentials.

  1. Enter a path, or click Browse to search for a path and add it.
  2. Select a scope to apply to the container: This Object and All Child Objects or Immediate Children Only.
  3. Select an object type.

Screenshot of Basic and Advanced Filter section in New Directory Query window

  1. Enter a name and description for the basic filter.
  2. Click Advanced Filter, and then enter the LDAP query details.
  1. Click Test to ensure the query returns expected results.
  2. Click Save.