• 1IM upgrade v8.2 to 9.2

    Hi Team,

    I need to upgrade our environment to version 9.2. We are currently running on 8.2.

    Could you please advise on the best approach for this upgrade?

    I reviewed the documentation for versions 9.1 and 9.2, which indicates that an upgrade from 8.X…

  • Adding new columns in identites table

    I'm completely new to one identity and im using version 9.2 and need to add extra columns to the identities table. However, I'm unable to see the new columns in the schema. Can anyone help with this?
    this.qerClient.typedClient.PortalPersonAll…

  • Web Portal unusable after login

    Hi everyone,

    I'm currently testing the API Server / Web Portal (oneidentity/oneim-api:9.2) deployed in Kubernetes, and I’m encountering a critical issue.


    The App Server is deployed and reachable (tested separately).

    The API Server has 2 replicas…

  • Automating EntraID Guest Account Cleanup

    Hi all,

    Has anyone implemented an automated process in One Identity Manager to disable or clean up inactive guest accounts from Microsoft EntraID?

    We’re exploring options like PowerShell or Graph API integration, but I’m curious if others have tackled…

  • Method "CreateItShopOrder" for ESethasEntitlement

    Hello everyone,

    As the title suggests, I would like to use the CreateItShopOrder method for an assignment in the ESetHasEntitlements table.

    For other assignment tables, such as OrgHasEset, this method is available.

    In version 9.2, there were two accproducts…

  • Adding Custom Fields to Request History in Angular Web Portal by Default

    Hello everyone,

    We are using One Identity Manager 9.2 and the Angular Web Portal.

    Is there a way to add a new field by default to the Request History section in the Angular Web Portal? For example, when I request a business role, I would like to include…

  • Restricting Access to Attestation Menus in Web Portal

    Hello,

    We are using One Identity Manager 9.2 and API Designer.

    If I assign the Administrators application role under Identity & Access Governance\Attestation to certain users, they can see all menus under Attestation in the Web Portal. However, I don…

  • Does the One Identity Manager 9.x support the Microsoft Windows Group Managed Service Account (gMSA) for connecting Active Directory using the One Identity AD connector?

    Hi All,

    By reading other question or discussion on forum, I understand that one identity service can run through gMSA on windows server. 

    But, Does the One Identity Manager 9.x support the Microsoft Windows Group Managed Service Account (gMSA) Group Managed…

  • Error running synchronization.

    [2134003] Error running synchronization.
    [1777018] Error running synchronization project (Active Directory Domain (DC=AD-LAB,DC=LOCAL))'s workflow (Provisioning).
    [1777124] Error running synchronization step (computer) of synchronization configuration…

  • How can I retrieve the unencrypted value of data that is encrypted in a Configuration Parameter?

    I have a script that needs to retrieve sensitive information encrypted within a configuration parameter. However, I am unable to decrypt it. How can I decrypt the parameter to access its original value?

  • Automatic prefilled request property

    Hello everyone,
    I am in the process of deploying a product in Angular Web on OneIM version 9.2 that uses the new request properties.

    These are also displayed as desired.
    Now I am in the process of adapting the valuation scripts and validation scripts.

  • security mechanisms are available for Remote job server?

    How Remote job server data can be secured/hardened apart from OS security and if there are any mechanisms that can be configured to achieve a high level of security such as encryption of data, access controls for jobs, data timestamps/checksums.

    Please…

  • UNS System: Process Trigger Issue During User Role Removal in PersonInOrg Table

    Hello Everyone,

    We are working with a UNS System, and we manage system role memberships through the PersonInOrg table. When a user is disabled, we remove all associated system roles from PersonInOrg. At the same time, we would like to trigger a process…

  • Angular Web Portal - Issues with attestation grouping

    Hello IM Community,

    I've tried getting to know the angular development side of OIM. 

    Earlier today i hit somewhat of a roadblock when i noticed that the current angular project in Github, seems to have a slight issue, which i cant seem to solve. 
    Whenever…

  • Issue with Multivalue Parameter resetting in Request Property(Version 9.2)

    Hello Everyone,

    I am encountering an issue with the Multivalue Parameter in the request property while using an Angular web portal (Version 9.2). When I select a value from the Multivalue field, it gets selected correctly. However, if I update another…

  • SSO session duration on web portal

    Hi,

    I have configured SSO in OIM 9.2 on demand, but when I try to log in again after about 1-2 hours, it prompts me for credentials.

    Authentication is handled via LDAP, and we have tried increasing the JWT duration, but this doesn't seem to resolve the…

  • Customise angular web portal header title

    Hello everybody, I am new with One Identity, and I need to change the "Product Name" in the web portal. I cannot find where to do this from the administarion portal. And I have tried to use the same API call that modifies the default theme and the…

  • IT Shop - Restrict users to only one service item assignment

    Hi,

    In our environment we have done the following:

    • Created service items for user licenses
    • Created an IT Shop with a shelf for self service. The shelf is assigned the Self service approval policy, enabling end users to request and obtain the user licenses…
  • Filters for SoD Rule's reports.

    Hello,

     

    I wanted to know if it is possible to set up a filter, or there are other ways, to exclude certain situations on the report generation for SoD rules , for example:

     

    - Removing allowed violations.
    - Users who, for example, have roles like SAP ALL…

  • Is it possible that the search filter in Job queue info - Processhistory is not working?

    Hi,

    in 1IM Version 9.2 when i try to filter in Job queue info - Processhistory, for example

    GenProcID='xxxx'

    after pressing filter button it takes a while then the same result set comes as without filter
    is there a hotfix available?

    best regards…

  • Is it possible that the search filter in Job queue info - Processhistory is not working?

    Hi,

    in 1IM Version 9.2 when i try to filter in Job queue info - Processhistory, for example 

    GenProcID='xxxx' 

    after pressing filter button it takes a while then the same result set comes as without filter

    is there a hotfix available?

    best regards,

  • Application server returned an error. An error occurred.

    Hello Community,

    Please, I'm getting this error message every single time in the job queue for every kind of task:

    Thank you for assisting me.

    One identity v9.2


    The job queue:

    (2024-07-16 10:40:18.703) [2070000] Application server returned an error…

  • upgrade/migrate Identity password manager

    Hi All

    I am using One Identity Password Manager x64 version 5.9.5.813 on Windows Server 2012 R2. I want to come up with new Windows Server 2022 or Windows Server 2019 and install One Identity Password Manager. Specifically, I want to export the configuration…

  • Delete SPS*-Module - Did you delete a module at past?

    Hi Identity Manger Community, 

    we use Microsoft 365 as a callobaration tool, including Teams, SharePoint Online, etc. Therefore, I would like to uninstall the SharePoint On-Prem module as we no longer use this system. I have found an article: Identity…

  • Translations does not comes into correct sort order

    Hello All,

    We are using oneIM 9.2 version and using Angular web portal.

    We have observed when we initiate to submit new request, service items does sort order does not come according to the visible name on the portal rather than it uses the Ident_AccProduct…