Automatically created user accounts

Document ID : KB000071412
Last Modified Date : 20/02/2018
Show Technical Document Details
When using LDAP, how can it be configured to prevent user accounts from being automatically created when attempting to log in?
All versions of CAPM
When configuring LDAP per our documentation set  Account User Default Clone: {sAMAccountName}.  By doing this, if a user tries to login it will fail if they don't already have an account set up.  To allow that user to login, a CAPM administrator must create an account with a user name that is the same as the user's network username, and it must have an "Authentication Type" of "External".  Once this is done the user will be able to successfully login with their network credentials.  This is a best practice settings change you can follow if you wish to control who can log into CAPM