SID History

Prev Next

VAST Cluster supports SID History, a feature of Active Directory that lets you preserve access privileges of a user or group after the account has been migrated to another Active Directory domain.

Migrating a user or group to a new domain includes assigning a new SID, while the existing ACLs continue to refer to the previous SID. To be able to authorize the user based on existing ACLs, a SID-History attribute is added to the new user account in the new domain. This attribute contains the user's previous SID, which can be used for authorization.

SID History is supported for both users and groups. There can be up to 12 historical SIDs.

Note

Historical SIDs are created and managed in Active Directory. VAST Cluster can handle historical SIDs as long as they can be retrieved from Active Directory.

Historical SIDs of a user can be displayed in the  Users page of VAST Web UI (User Management -> Users).