It looks like at some point synchronize was enabled to the OPA resource, so now we have a bunch of users in the system org and our actual org. I do not want any OTDS accounts in the system org.
Any suggestions on the best / correct / easiest way to remove those users so they only have access to our main organization?