Hello,
We have an issue with one identity manager..
When an Ad account having Ad groups is deactivated, it loses the AD groups to which it was belonging..
But when i manulaly re-activate the AD account (not by assignin a buisiness role) , these AD groups are re-affected to the AD account..
Is that a normal behaviour ?
How to prevent this ?
I have unchecked : <<retain groups if user account disabled>>, it s wotking because effectively, when AD account is disabled, all the AD groups disapear in OIM,
but why OIM recreate them when the AD group is enabled ?
Kind regards,