Browse By Tags

  • ADHocProjection properties and values missing from logs when Read-only enabled

    Hi

    We are using Identity Manager On-demand Starling 8.2.1 

    We don't have an Active Directory test environment so the way we get past this is to enable "Read-Only" mode on the Production target system connector within our Test environment.…

  • Securing non-human identities in hybrid environments

    Securing non-human identities is just as critical as managing human ones in today's complex IT landscapes. Non-human identities, such as service accounts, application identities, and IoT devices, play pivotal roles in automation and system integration…

  • AD group membership not applying in actual AD

    We have created a dynamic role assignment and assign a certain AD group to it.

    The AD group appears in OIM to be added to the user, however it was not reflecting/applying to actual AD.

    No frozen jobs found in job queue. We are using version 9.0 LTS.

    Also…

  • Authoritative source for Active Directory samaccountname (marriage changing of surname)

    What is the good practise regarding the updating of user accounts in the scenario of where the person gets married?

    *disclaimer* I am currently pre-implmentation certified (all theory no practise), so I have done the courses and certifications but have…

  • Keep group membership after termination

    Hello experts,

    Can someone tell me if we can keep group membership of a group assigned by a business role after termination? We have the AD account deferred for 90 days after termination. 

    Thank you,

    Lu

  • Protocol used by SPP to comunicate with Domain Controller

    Hi,

    i would like to have an official answer to this question:

    When comunicating with AD Domain Controller (for example, for a user group sync), which protocol does SPP On Demand use? Does it use TLS or SSL?

    Thank you in advance,

    Simone

  • Error while integrating SPS with Cisco DUO

    Hello all,

    when trying to test the connection i get this error : "some paths were missing from the request body"

    can any one please help ?

  • How limit acess to the web portal to another Active directory accounts with the same identity

    Hi

    Version: OIM 8.2

    is possible to block or to limit acess from a specifc ADSAccount (used for suport cases) to the Web portal, the method used  Actually for login is Active Directory user Account (Manual Input/Role Based)

    the question is if have some…

  • One Identity, AWS Directory Service Strengthen Partnership and Announce Active Roles Integration

    ALISO VIEJO, CALIF. – Nov. 16, 2023 – Today, One Identity by Quest Software, a leader in unified identity security, and AWS announced a significant expansion of their strategic partnership with the general availability of a seamless integration…

  • Indian Best Actor,Singer and musicion

    Maulik Nayak portrayal of 'Bhaglo' is a character who communicates volumes through silence. In the film 'Hellaro,' 'Bhaglo' is a pivotal figure who conveys a deep range of emotions and experiences without uttering a word. Nayak's performance is a testament…

  • How to create ADSContainers and invalid characters when sending emails

    Hi!
    I would appreciate your help with:
    1. Is there a way to create a container based on Department for a specific domain and assign a user? I tried using Synchronization Editor but only what it removed existing containers
    2. When creating a user, a mail…

  • Seeking Solution: SPP Entitlements and User-to-Server Access Mapping Issue

    I've encountered a challenge with entitlements in SPP concerning user-to-server access mapping. With our configuration, individual domain accounts are set up to grant access to particular Windows Servers. However, when a user initiates a new request within…

  • Active directory simulation does not work

    Hi to all!

    I've configured an Active Directory connector using the remote connection plugin, it seems to work correctly except for the simulation function. When I click the simulate button I get no any results, but when I run the sync project it performs…

  • How to perform a reconciliation of Active Directory

    Hi

    Is there a report available that we can use to tell us differences between what One Identity believes is in Active directory (ADSAccount) and what is actually in Active directory?

    For example: We have identified quite a few ADSAccount records where…

  • How to join Safeguard On Demand (Starling Edition) to AD?

    Hello,

    where can i join my Safeguard On Demand (Starling Edition) Aplliances to my Domain?

    It is needed so i can connect with RDP to my Assets, no?

    Thank you!

    Best regards 

    Tim

  • Why you need Active Roles, even if you have IGA

    Here are two scenarios I come across frequently, with customers of all sizes, in all industries, when discussing One Identity Active Roles:

    1. “We have an IGA solution. It already manages our Active Directory just fine. Why do I need this?”
  • How to find and manage privileged accounts in Active Directory

    When it comes to securing Active Directory, the first place to start is usually getting a handle on what currently exists - getting a ‘lay of the land,’ so to speak. In Active Directory, the admincount attribute can play a role in identifying privileged…

  • SPP and Active Directory integration

    Hello,

    Is it possible to display an alias of the domain name in the login screen of SPP instead of the real domain name?

    Thanks

    Daniele

  • Directory Account Discovery doesn't import the account password

    Hello,

    i'm having a problem with the account discovery from the Active Directory. I've created the Discovery Rule that auto-manages the accounts discovered and it is associated to the Active Directory asset. The import is completed correctly, though the…

  • Synchronization with active directory

    Synchronization with active directory.
    Recently, the connection between idm and active directory disappeared.
    Idm does not see any changes that have occurred in active directory.
    For example, an IT specialist creates a new group, a mail database, but these…

  • Assign Full Control of Computer to Active Directory user Account to make a rejoin.

    Hi,

    I have a request from customer about the possibility to give Full Control Permissions over an Active Directory Computer through One Identity Manager 8.1.5, maybe through request on ITSHOP.


    The reason is about having the permissions to make a rejoin…

  • Error carrying out the user_protectedfromaccidentaldeletion_Get operation

    Hi,

    I've encountered the following error when running Active Directory Initial Synchronization.

    [System.Exception] Error carrying out the user_protectedfromaccidentaldeletion_Get operation on object CN=ASPNET,CN=Users,DC="blank",DC=lan (Error: [System…

  • Remove an Active Directory domain and all its related objects

    Hello group!!

    Recently, we have decommissioned an Active Directory domain and now what we want to do is remove it from IDM and all of its related objects.

    After doing some search in the One Identity documentation, I have found this stored procedure QB…

  • SPS AD login option

    Hello,

    I am trying to add an Active Directory as login option in SPS, the configuration is correct but when i test the connection the response is "Some paths were missing from the request body.".

    Thanks

    Daniele

  • SAPHR Synchronization Editor LOG Error [810235] Could not delete object from Person because there are still objects assigned

    Hi,

    Currently we are using version 8.1.3.

    Once in a while the client team review the log of the synchronization  project "SAPHR" (CSV File import).

    The log contains a few error messages regarding Synchronization step "Person".

    Usually…