my users are members of A LOT OF GROUPS, so I tried to configure a LDAP filter in the Group Search
ex:
GROUP FILTER -- (&(ObjectClass=Group)(sAMAccountName=%s)(sAMAccountName=XXX_*))
GROUP MEMBER ATTRIBUTE -- member
USER GROUP ATTRIBUTE -- memberOf
It works well when I import a user, the groups assigned are correct, only groups starting with XXX_ are shown in the GROUP LDAP and LINKED TO CONTACT GROUPS
data:image/s3,"s3://crabby-images/26ea0/26ea003a2f1dc52ff295691583b9e8d905ce28e9" alt=""
But when the user logs in the LDAP sync occurs, it takes a VERY LONG TIME and all the LINKED TO CONTACT GROUPS is replaced with all the memberships from the Active Directory.
data:image/s3,"s3://crabby-images/d3193/d31937f6d90382faeccc2663c6d6d8e426ae74cb" alt=""
data:image/s3,"s3://crabby-images/6eab4/6eab4a9167c08be7e1222d12060c4013910e7dc5" alt=""
Is there a way to keep the synchronization filtered ?