NOTE: Library Manager supports drag-and-drop moving of subtrees within the IRM server organizational tree. A native node can be dragged to another location in the same library, as long as the target parent node is a native node. If a branch is moved in an external directory, it can also be moved manually to a native or non-native node in the IRM server organizational tree. The general rule is to maintain the correlation between the external directory structure and Library Manager.

When an external LDAP directory is updated, use the Synchronization option on the Directory menu to update the node imported into the Master Realm. When an imported node is synchronized with its source directory, new trustees are added to the Records Manager directory, and trustees that are obsolete are marked as deleted. If you select a root-imported trustee node, the subtrees are also updated. You can also update individual imported subtrees.

Synchronization provides level-to-level comparisons of the IRM server and external LDAP directory service subtrees, beginning at the level of the subtree roots. After finding the original LDAP directory service node that's imported as the Records Manager subtree root, synchronization navigates down one level and compares the subtrees (level by level).

During the synchronization process, new LDAP directory service nodes are added to the Records Manager subtree, old nodes are updated, nodes that were moved inside the subtree are moved to new locations, and nodes that were deleted from LDAP directory service subtree are deleted or disabled (if remaining links make deletion impossible).

If you import more than one subtree from the same location, all the subtrees must be synchronized, regardless of their location in the IRM server organizational tree.

  1. Under Realms, select an LDAP-linked trustee node (with an L icon), as shown in the following example.

  2. Select Directory and then select Synchronize.

  3. If the LDAP credentials for the selected connection are stored with Local User type storage, you're prompted to enter the Windows account information for that user (User, Domain, and Password).

    The Synchronizing dialog shows the progress of synchronization. Depending on the size of the directory, this could take several minutes to complete. The following fields are updated:

    • Imported shows the number of trustees added.

    • Updated shows the number of trustees updated.

    • Deleted shows the number of trustees removed.

    • Sync Count shows the number of trustees synchronized.

  4. After synchronization completes, select Done.

TIP: To schedule routine synchronization, refer to Synchronize LDAP Directories with the LDAP Sync Tool.