Menu
Skip to main content
Table of Contents
<All topics
Print

Where do users with "ex-" in their SID come from?

Appterix uses user profiles that are prefixed with the "ex-" They begin to be treated as external or unassigned accounts. This always occurs when the Appterix agent detects a local or unknown user who is not synchronized with the Active Directory (AD) or Microsoft Entra ID .

Reasons for “ex” users

Local accounts:
Manually created users on the endpoint that do not have a link to the central directory service.

Synchronization not configured: If the agent detects an AD/EntraID user before directory synchronization has been configured in the EgoMind platform.

System & Update Accounts:
Occasionally, software installers or Windows update processes create temporary user profiles for the duration of an installation.

Best practices for avoidance

To ensure a clean database and prevent regular AD or Entra-ID users from being incorrectly recorded as "ex" users, the setup order is crucial:

First, set up the synchronization of Active Directory or Microsoft Entra ID in the EgoMind platform before distributing the Appterix Agent to the endpoints.

This allows the agent to immediately and correctly match each found profile and assign it to the corresponding directory account, instead of creating a redundant local profile.