This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Iprint Appliance 4.0, Active Directory and Nested Groups

Hello All, we use the iprint Appliance 4.0 with active directory. We have the appliance synced with Active Directory and have ICM configured to accept the credentials from AD on login, so that they are passed to the iprint client. This works perfectly. However, I have struggled with something for awhile, and that is NESTED ad groups. When we sync our groups from AD to the iprint appliance, the groups sync perfectly, and we can see any NESTED groups within the group as well. However, even though iprint sees the nested groups, I have never been able to get iprint to recognize the nested groups, inside of the specific group. For example:

  1. Group APFStaff has 4 groups nested inside of it: APFOffice, APFAdmin, APFTeachers. I go to 4 school printers, and give access control and operator control rights to the APFStaff group, which has these groups nested. I also go to the directory on iprint, (which was synced from AD) and modify the APFStaff group. I go to the iprint client tab, and I uncheck "Do not update" and I tell the client for this APFStaff group to install the 4 printers. The nested groups inside of this APFStaff group NEVER get the printers, and show up as not having rights to the printers. If I add the groups separately to Access Control and set the iprint client profile separately to install the printers, everything works. Is there something special I have to do, to get nested groups working? They are seen in iprint, they just don't work. Any ideas?"