Hello,
For our main office, we are currently using Identity Collectors with our main 7000 GW cluster to handle IA for all of our office users (around 1500 users). We will be opening a couple of remote branch offices where we'll be using DAIP SMB gateways. I would prefer to use Identity sharing from our main 7000 GW cluster, but it appears this isn't compatible with DAIP gateways. Also, AD query is no longer a viable option.
These remote office will only have 5-10 users, so I'd like to avoid deploying agents to these random users. With that said, is tying the SMBs to my existing ID collectors the best option? Is there any concern about the SMBs learning thousands of identities via the existing ID collectors?
Also, the DAIP gateways (Spark 1570s) will be centrally managed and running R81.10.05 (or R81.10.07).