# IdentityIQ 8.4 - Aggregate a single Active Directory group

**URL:** <https://developer.sailpoint.com/discuss/t/identityiq-8-4-aggregate-a-single-active-directory-group/154051>\
**Category:** IIQ Discussion and Questions\
**Tags:** connectors, identityiq, aggregation\
**Created:** [July 9, 2025, 7:49pm UTC](https://developer.sailpoint.com/discuss/t/identityiq-8-4-aggregate-a-single-active-directory-group/154051 "2025-07-09T19:49:12Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![sdnakhla](https://avatars.discourse-cdn.com/v4/letter/s/f05b48/32.png) [@sdnakhla](https://developer.sailpoint.com/discuss/u/sdnakhla)\
**Post date:** [July 9, 2025, 7:49pm UTC](https://developer.sailpoint.com/discuss/t/identityiq-8-4-aggregate-a-single-active-directory-group/154051/1 "2025-07-09T19:49:12Z")

</div>

## Which IIQ version are you inquiring about?

IdentityIQ 8.4p2

We have the need to aggregate a _single_ Active Directory group on a very regular basis (every 2-3 minutes, tops). We can’t run a full (or even delta) AD aggregation, due to the number of groups we have. It would take too long and create performance problems. I have the distinguished name of the group, and was hoping there would be a way to set an LDAP filter on the aggregation task to scope it to that single object. But, I haven’t found a way of doing that documented anywhere.

Has anyone come up with a way to quickly aggregate a single object from Active Directory into IIQ?

---

<div class="post-metadata">

**Author:** ![paul\_hilchey](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/paul_hilchey/32/24080_2.png) [@paul\_hilchey](https://developer.sailpoint.com/discuss/u/paul_hilchey)\
**Post date:** [July 10, 2025, 1:26am UTC](https://developer.sailpoint.com/discuss/t/identityiq-8-4-aggregate-a-single-active-directory-group/154051/2 "2025-07-10T01:26:47Z")

</div>

Is it the group membership that you want aggregated frequently?

Group membership is done via an account aggregation, such that the group memberships are in an account attribute.

There isn’t an easy way to do what you want. You might be able to develop a rule that will do it if you are handy.

---

<div class="post-metadata">

**Author:** ![asharma65](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/asharma65/32/28358_2.png) [@asharma65](https://developer.sailpoint.com/discuss/u/asharma65)\
**Post date:** [July 10, 2025, 2:58am UTC](https://developer.sailpoint.com/discuss/t/identityiq-8-4-aggregate-a-single-active-directory-group/154051/3 "2025-07-10T02:58:15Z")

</div>

Hello @sdnakhla

As per your requirement you can try below post where you can setup custom quicklink to get updates from single group for Active Directory application.

[Running group aggregation for single or required groups - Compass](https://community.sailpoint.com/t5/IdentityIQ-Wiki/Running-group-aggregation-for-single-or-required-groups/ta-p/82606)

---

<div class="post-metadata">

**Author:** ![pravin\_ranjan](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/pravin_ranjan/32/6771_2.png) [@pravin\_ranjan](https://developer.sailpoint.com/discuss/u/pravin_ranjan)\
**Post date:** [July 10, 2025, 9:34pm UTC](https://developer.sailpoint.com/discuss/t/identityiq-8-4-aggregate-a-single-active-directory-group/154051/4 "2025-07-10T21:34:10Z")

</div>

@ [Steve Nakhla](https://developer.sailpoint.com/discuss/u/sdnakhla) check this thread

[Single Account Group aggregation for AD - IdentityIQ (IIQ) / IIQ Discussion and Questions - SailPoint Developer Community](https://developer.sailpoint.com/discuss/t/single-account-group-aggregation-for-ad/5907)

you can schedule a task that will run a task to execute aggregation for limited groups. let us know.

---

<div class="post-metadata">

**Author:** ![system](https://global.discourse-cdn.com/sailpoint/original/2X/f/f2136700ed5e3703e0b85e02f6be799dacca7735.png) [@system](https://developer.sailpoint.com/discuss/u/system)\
**Post date:** [September 8, 2025, 9:34pm UTC](https://developer.sailpoint.com/discuss/t/identityiq-8-4-aggregate-a-single-active-directory-group/154051/5 "2025-09-08T21:34:12Z")

</div>

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.
