Synchronizing with the Directory Synchronization Client
You specify which groups to synchronize using an LDAP search facility on the Directory Synchronization Client,. There is great flexibility in selecting the appropriate data to synchronize. For example, you can use the membership of an LDAP group attribute to select the users you want, even though you may not select that group in the group synchronization setup itself.
Regardless of how many groups you synchronize, user detail must be sent as part of a separate user synchronization. When you synchronize a group, you transfer information about the group but not about its contents. User synchronizations include details of the group(s) to which users belong. When you apply a web policy or an email policy to a synchronized group, that policy is applied to all synchronized users who are members of that group.
Please refer to the Directory Synchronization Client Administrator’s Guide in the Technical Library for more information on using the LDAP search feature to target only those users and groups that are required.