About Meridian support for Microsoft Active Directory
Meridian supports Microsoft Active Directory (AD) domain global groups. Active Directory domain local groups and universal groups are not supported. The recommended relationship between a user and the user’s permission to perform a particular Meridian action within a folder looks like this:
- Domain user account assigned to a domain global group.
- Domain global group assigned to a Meridian application server (domain member server) local group.
- Meridian application server local group assigned to a Meridian role (in PowerUser) at the vault folder where the action is performed.
- Meridian role defined (in Configurator) with appropriate Meridian object-level privileges enabled.