Indicate on the Source Location screen where PingFederate should look for user records in the datastore. The same location may be used to retrieve user-group DNs for maintaining corresponding groups at the service provider.
After specifying the required base DN, you have the options to provision users (and groups when applicable) based on group membership information or LDAP search results.
Groups provisioning is supported for SCIM and the Google Apps Connector (version 2.0 and higher) but may not be supported for other SaaS Connectors. If not, the associated fields under Groups on the Source Location screen are inactive. Support for the feature may become available in future SaaS Connector releases; please refer to documentation in your add-on distribution package.