I have AD groups assigned to Department with inheritance - how to assign this groups only to employees in this department which meet the condition?
- Products
- Solutions
- Resources
- Trials
- Support
- Partners
- Communities
I have AD groups assigned to Department with inheritance - how to assign this groups only to employees in this department which meet the condition?
Hello Dears,
I am integrating Active Directory with One identity Manager.
When I create a synchronization project through synchronization editor I am facing the following error
"ADSDomain: The following fields are compulsory and need to be filled: Forest…
Hi Fellow Experts,
Hope everyone is doing well.
A quick question, I'll be apply a scope filter to only sync 1 OU (at target system side) in synchronization project which will make 95% of the objects Outstanding.
Now, will deleting the Outstanding…
Hi Everyone,
We have a requirement while creating a new contractor manually from the IT shop, Joining Date should be automatically populated as the current date,
so that users cannot select the previous date, and in the case of leaving date, past dates…
After creating synch project with AD, there was added new attribute (in AD).
Schema update in synch editor doesnt help to see this attribute
If I create new synch project with AD this attribute is present.
Any way to update schema in created synch project…
Hi all, I have a sets of user and I added a license on their department all user where to sync properly into AD but among them there is one user who does does not sync into the ad properly when I check the AD it is missing the License. I am currently…
Hi again, I have a problem regarding the deactivating an Active Directory account. It appears that the account is already INACTIVE in One Identity but still active on ACTIVE DIRECTORY.
Is it possible to create missing ADSContainers from Departments structure automatically?
Hello – we are currently running OneIM 8.1.3 and have our HRIS system successfully sending user data into our DB and sync’d with Active Directory. We recently ran across a use case that requires that; A User from our HRIS system with a Sub…
Hi
I would like to get data about Expiry date from AD - parameter msDS-UserPasswordExpiryTimeComputed
As I checked it is the same forma as AccountExpires parameter.
Where I do not find solution is how can I create vrt property to transfer this number to…
My AD Account Provisioning has stopped working. It always fails with the error "not all mandatory properties are defined". It is complaining about "cn, objectClass, sAMAccountName".
To eliminate moving parts, I go to the Sync Editor…
Hi,
We are using version 8.1.3. We have integrated with one AD domain in One Identity Manager and now trying to integrate with another AD domain. We do not have direct DB connectivity and it is via Application server. When we try to create AD project…
We are new to One Identity and trying to provision a new AD account by assigning a business role. Below is our approach:
1. Created a business role hierarchy as below:
Business Role1 ----- Role Assignment (Account Definitions, Active Directory Groups…
Hello!
1IM 8.1. SP2.
I created Sync Project Active Directory.
I did not change scopes or filters.
Not all OU inserted ADSContainer table after syncronization.
Logs has not errors about OU.
In test enviroment with test AD all ok.
Why it did?
Hello everyone. We have one custom script in the production which is performing password reset and account unlock operations on the domain. This script is called by an external application (IVR Solution) with AD SAMAccountName as input parameter and script…
Hello,
We are using version 8.1.3 and we are using AD connector and Native Database connector which has connectivity with One IM database via Application Server. This is our QA environment and there is no major activity going on between One IM database…
Hi,
Getting error while running AD Synchronization to Update. Synchronization inserting to AD from one identity manger is fine.
Error As follows
[System.DirectoryServices.DirectoryServicesCOMException] There is no such object on the server.
Regards,
…Hello,
Has anyone seen any issues with adding users to groups through a business role?
We have a few that we need to add users to upon creation. It seems to take a good while before the users get added to the group.
The business role is assigned but the…
Hello,
I'm actually in the following case:
When I create a user in the OiM WebPortal, the User is created in the Person Table in the DB.
How can I do to send this user created to the ADSAccount table?
I just want to automatically synchronize the user…
I have design one custom request form on the IT shop where a user will provide hostname of his/her domain joined machine and custom process will add that machine in one Active Directory group. This is working perfectly fine!
Now I have to create a custom…
Hi All,
OneIM version it's 8.1
We have the next problem creating the ADSAccounts with an Account Definition:
ErrorMessages (2020-05-29 12:05:31.517) [810023] Error during execution of statement: insert into QBMPwdHistory (DateInserted, HashValue,…
Hi Experts
Hope you are doing well. We are using Identity Manager 8.0 and currently our Active directory version in our production environment is below –
Hi Experts
We are using Identity manager version 8 and We have two AD one for Prod and another for non-prod. Both are align to same schema version that was 47
However Recently there are some changes and non-prod AD upgraded to schema version of 87. If…
Hello everyone,
I have created a sync project with an AD domain. I can dump the information into One Identity 8.1. The problem is that seems there is 400 accounts in the domain, however, I can only dump about 80 accounts into the system. I did not see…
Dear fellow experts,
Just need some pointers for my use case and I was hoping someone can point me in the right direction.
I have Employees (Person Objects) who have ADSAccount linked to them. I would like them to authenticate to the Web Portal using…