Connecting to your company directories
- You can create user accounts in UEM using user data from the directory, and UEM can authenticate administrators for the management console and users for BlackBerry UEM Self-Service.
- You can link company directory groups with UEM groups to organize users in the same way that they are organized in your company directory, and to simplify the assignment and management of IT policies, profiles, and apps for users. These are called directory-linked groups.
- You can enable onboarding for specific groups in your company directory to create UEM users automatically. These are called onboarding directory groups. When you add new users to these directory groups, new user accounts are created for these users in UEM. If you enable onboarding, you can also configure offboarding to delete device data and UEM user accounts when users are disabled or removed from the company directory.
If you do not connect UEM to a company directory, you can manually create local user accounts and authenticate administrators using default authentication.
|
Step |
Action |
|---|---|
|
|
In a UEM on-premises environment, Connect to a Microsoft Active Directory instance or Connect to an LDAP directory. In a UEM Cloud environment, install and configure the BlackBerry Connectivity Node to connect to your company directory. For instructions for connecting UEM on-premises or UEM Cloud to Entra ID, see Connect BlackBerry UEM to Entra ID to create directory user accounts. |
|
|
Optionally, Enable directory-linked groups. |
|
|
Optionally, Enable and configure onboarding and offboarding. |
|
|
Optionally, configure directory synchronization. |