For user authentication the SMU supports
Active Directory Forest by using Active Directory Global Catalog
feature. When Global Catalog is configured, all Active Directory groups, which are
granted access to the SMU directly and indirectly (via the chain of membership), must
have 'Universal' scope. This guarantees that Active Directory group membership details,
required to verify user’s access, are available to the SMU via Global Catalog
connection.