EP 6.0 SP2: Users move in Corporate LDAP,
Hello,
my corporate LDAP was changed. All the users moves from O=x to O=y. Now no user can login.
When i add the new users to the Portal, they lost there personel settings.
Is it possible to manipulate the Database? Or ist their any other trick?
Stephan
Hi Stephan,
if you move users in your LDAP-Directory you loose the role assignments because the roles are assigned to the DN (Distinguished Name) of the user. i.e: CN=user1, O=x, C=DE. So when you move the users from O=x to O=y the DN of the users changes and so the role assignment becomes invalid.
There is the possibility to change the uniqueID of users in the UME, so that it's not the DN but the CN, which in your case remains the same. You can do this be changing the attribute mapping in the UME.
More infos you can find here: http://help.sap.com/saphelp_ep60sp2/helpdata/en/b6/8b9aed8d7c11d5bdd8006094191908/frameset.htm
Be aware that if you change the uniqueID to CN you should also take care of the fact that the CN must be unique in the LDAP tree you use for the portal users. Also, a.f.a.i.k., after this change the Directory can only be integrated read-only.
Hope that helps,
Robert
Similar Messages
-
How do I create a new user, move my old files etc over, and delete old user
This is why I think I need to.
My computer got hit by lightening, and I may have created a new user account through netinfo rather than system preferences /accounts/+user. Mail used to open twice, but no longer. Now, Safari askes me for my keychain password twice, Spotlight can't find a folder on the computer when the search is restricted to folder and computer, though the folder is there and easyfind finds it, and when System Preferences/Spotlight/Privacy has the hard drive icon added, then deleted, Spotlight still does not find anything. (Yes, everything is backed up, on CD, DVD, and online.) Microsoft Tec Support says
"Here is a summary of the key points of the case for your records.
When you contacted us on August 8, you had requested assistance with Microsoft Office 2004, as your installation of the updates was unable to find the correct version of the software to update. After creating a New MAC User, we identified the issue to be with a corrupt MAC User account, and not a Microsoft issue. "
I believe Microsoft. So, creating a new user was easy.
But copying files uses up too much hard drive (movies, music), and may miss keychains, preferences, mail, address book, and documents. Since Spotlight no longer works, who knows what is happening. (Yes, I've repaired persmissions, and disk repair. No change). I'm using up my hard drive trying to move files to the new user. If I share files, or put them into a public folder, then delete the old user, will I still have the old user's files in the new user's account? It is not clear to me what I should be trying to do in order to create a new user, move my old files etc over, and delete old user. Thanks.
My responses will be slow, because I have to drive to town to use the internet. I've ordered a new airport which may take care of that problem. SO be patient.Hey -
I need to do the EXACT same thing, but have no idea how. Has anyone out there done this?
My situation is a tad different..this is a new Mac (and I'm a brand new Mac user). Tons of querks occur under my original account (videos won't run, Safari won't support certain plug-ins). I spent 6 hours on the phone w/ 4 different Apple Reps and nobody could fix it. A rep finally looked at my MacBook Pro in person today. He created a new account just to see if that would work and under that new account, everything works perfectly fine (no querks, can view video). He tried switching a million settings in my original account to no avail.
He said to create a new account (as he did) and move my files over to the new account and then go back to the original and delete it. How do you do this?! I can't figure it out! I've got a new account created, but of course it just has the default folders in it w/ the little red icons next to them! Thanks in advance! -
I'm using MacBook Pro with 128GB SSD that has a limited disk space. As we know, when rendering in Project File (User/Movies/Final Cut Projects), it takes huge space and the limited disk space would not be enough for the whole editing.
My question is, Is there any method to get the rendering Projects file saved into an external hard drive which is connected with USB/ Thunderbolt/ Firewire, with huge disk space (eg. 500GB HDD).
Now, new project created in my Mac is automatically saved in (User/Movies/Final Cut Projects) and my Mac has ran out of space to hold the files.
Thank you.You have at least 3 different ways to show the project library:
1) Go to WIndow->Show Project Library
2) Click the button in bottom left of your window:
3) Hit the keyboard shortcut (Command-0)
The project library will be shown, occupying the area where the timeline usually is.
Your hard disks will be visible. Click the hard disk where you want the new project to reside and hit Cmd-N to create a new project. -
We will move a whole postoffice and every move is stuck with source domain
updatedI did a rebuild on the involved domains and postoffices
I recreated wpcsin wpcsout mslocal
On the netware server I put the in nodca in the startupfile for the
postoffice..
And now the user moves works..
"gregamy" <[email protected]> skrev i meddelandet
news:[email protected]..
>
> If you did not do checks, are *any *items coming over at all? Or are
> they all just stuck at the initial phases?
>
> If you did not do checks, and if the process started and a lot of items
> came over, and you don't do normally-scheduled checks, then it could
> just be you have some bad, stuck items. Those can be cleared easily.
>
>
> --
> Greg Amy
> GroupWise Admin
> Hartford (CT) Hospital
> ------------------------------------------------------------------------
> gregamy's Profile: http://forums.novell.com/member.php?userid=12509
> View this thread: http://forums.novell.com/showthread.php?t=438046
> -
User Move stuck.....
I have a user that I moved from a post office I am consolidating. It is stuck in the process right now, currently at the retry mailbox item retrieval.
I did, before the move, a standard content/structure gwcheck before, then did one with deldupfolder, then back to standard (if duplicate folders were found) until none were found and not issues....then a gwcheck with attclip..
When requesting pending items, it lists over a 100 items, with the first being a internal search folder, listed as To-Do.
I am sure there are more than a 100.
I have tried to simply skip the next item in the list, once, to see if it was a single item holding up.
I have tried retrying the last step of the move.
I have tried restarting the entire mailbox move.
Now, my log files are showing this for MANY MANY items, when I do mailbox retry....
02:24:54 578D (TRACKMOVE) Could not '_NgwrepFixItem' (53511 0x0000d107): paynej (egw) (paynej)
Only thing that I have found as a possible solution, would be to cancel the move...by moving the account BACK to the original post office, and then attempting again after running some additional gwchecks.
Thanks for any assistance you may be able to offer.I did a rebuild on the involved domains and postoffices
I recreated wpcsin wpcsout mslocal
On the netware server I put the in nodca in the startupfile for the
postoffice..
And now the user moves works..
"gregamy" <[email protected]> skrev i meddelandet
news:[email protected]..
>
> If you did not do checks, are *any *items coming over at all? Or are
> they all just stuck at the initial phases?
>
> If you did not do checks, and if the process started and a lot of items
> came over, and you don't do normally-scheduled checks, then it could
> just be you have some bad, stuck items. Those can be cleared easily.
>
>
> --
> Greg Amy
> GroupWise Admin
> Hartford (CT) Hospital
> ------------------------------------------------------------------------
> gregamy's Profile: http://forums.novell.com/member.php?userid=12509
> View this thread: http://forums.novell.com/showthread.php?t=438046
> -
Good day,
It has been awhile since I have had to monitor a GroupWise system, my last customer migrated to Google, and I'm a bit out of practice. Basically I'm being asked to track an administrator's move of a GroupWise user, from one location to another, and I just want to double check the process for tracking a user move? Thank you
-DOriginally Posted by dschaldenovell
Good day,
It has been awhile since I have had to monitor a GroupWise system, my last customer migrated to Google, and I'm a bit out of practice. Basically I'm being asked to track an administrator's move of a GroupWise user, from one location to another, and I just want to double check the process for tracking a user move? Thank you
-D
Two places you can track what's happening:
1) In the logs (make sure POA logging is set to verbose) of the source and destination PO.
2) ConsoleOne, in the main menu bar select "Tools" > GroupWise Utilities > User Move Status.
The first one will show more detail but will need to be monitored realtime and you also get other log items coming through at it's the general log. It's useful though to see how the move is progressing and how many items are still left to move and detail if any errors pop up.
The second one if useful to see in which phase the move is in (the different stages of it's progress or move complete) and can also be used to nudge stuck moves or see which items are pending/stuck.
Cheers,
Willem -
How to use company users on existing ldap server as EP6.0 sp2 Users?
Hi everybody
Our company user data is on a LDAP server we want to connect our EP6 UME to this existing LDAP server so that existing company users can access the Portal with their company id and password. What configuration we should do on the portal ?
thanks and regards
RajendraHi!
Look at Admin Guide:
Administration Guide->Portal Platform->System Administration->User Management Configuration->Configuration of Data Sources Used for User Management->Defining an LDAP Directory as a Data Source
WBR, Lnk -
How to configure External Authentication with corporate LDAP?
The below link tells how to configure Shared Services to support authentication of users stored in LDAP, refer to chap 10
http://download.oracle.com/docs/cd/E12032_01/doc/epm.921/hss_install.pdf -
WebLogic 6.1 sp2 does not allow Anonymous LDAP Binding
Hi,
I am trying to setup LDAP on WebLogic 6.1 SP2 and it refuses to bind
anonymously
to our iPlanet LDAP server.
If I specify an admin user that is in LDAP there isn't a problem, all
authentication works fine. Anonymous binding works find from
ldapsearch, PeopleSoft, etc ...
My config.xml definition is below, am I missing something ?
<CustomRealm
ConfigurationData="user.filter=(&(uid=%u)(objectclass=person));serve
r.authprotocol=none;user.dn=ou=People,ou=Internal,ou=Clients,o=mycorp;server.p
rincipal=uid=admin,ou=People,ou=Internal,ou=Clients,o=mycorp;membership.fil
ter=(&(uniquemember=%M)(objectclass=groupofuniquenames));group.filter=(&
(cn=%g)(objectclass=groupofuniquenames));server.host=ldap.mycorp.com;
group.dn=ou=Groups,ou=Internal,ou=Clients,o=mycorp"
Name="UMDSv2"
Notes="This is provided as an example. Before enabling this
Realm, you m
ust edit the configuration parameters as appropriate for your
environment."
Password="{3DES}lwSDdYvmhJClhXHELTDQlA=="
RealmClassName="weblogic.secur
ity.ldaprealmv2.LDAPRealm"/>
Thanks,
KimHi,
I am trying to setup LDAP on WebLogic 6.1 SP2 and it refuses to bind
anonymously
to our iPlanet LDAP server.
If I specify an admin user that is in LDAP there isn't a problem, all
authentication works fine. Anonymous binding works find from
ldapsearch, PeopleSoft, etc ...
My config.xml definition is below, am I missing something ?
<CustomRealm
ConfigurationData="user.filter=(&(uid=%u)(objectclass=person));serve
r.authprotocol=none;user.dn=ou=People,ou=Internal,ou=Clients,o=mycorp;server.p
rincipal=uid=admin,ou=People,ou=Internal,ou=Clients,o=mycorp;membership.fil
ter=(&(uniquemember=%M)(objectclass=groupofuniquenames));group.filter=(&
(cn=%g)(objectclass=groupofuniquenames));server.host=ldap.mycorp.com;
group.dn=ou=Groups,ou=Internal,ou=Clients,o=mycorp"
Name="UMDSv2"
Notes="This is provided as an example. Before enabling this
Realm, you m
ust edit the configuration parameters as appropriate for your
environment."
Password="{3DES}lwSDdYvmhJClhXHELTDQlA=="
RealmClassName="weblogic.secur
ity.ldaprealmv2.LDAPRealm"/>
Thanks,
Kim -
Creation of user and roles in ldap using jldap api
Please help me in creating user and roles in ldap through java api.
I am able to manupulate the existing user and role in ldap. Please give
me some steps or some sample code for creating user
satyanandasahu
satyanandasahu's Profile: http://forums.novell.com/member.php?userid=89095
View this thread: http://forums.novell.com/showthread.php?t=414763Thanks Jim..
this is doing the work. Here we have a custimised class with customised
attributes I am looking how to do that.
Can you give your mail id.
thanks again
Jim Willeke;1995096 Wrote:
> Have you seen these samples:
> 'Novell Documentation'
> (http://developer.novell.com/document...mple/index.htm)
>
> See the AddEntry.java
> -jim
>
> On 7/2/2010 9:36 AM, satyanandasahu wrote:
> >
> > Please help me in creating user and roles in ldap through java api.
> > I am able to manupulate the existing user and role in ldap. Please
> give
> > me some steps or some sample code for creating user
> >
> >
satyanandasahu
satyanandasahu's Profile: http://forums.novell.com/member.php?userid=89095
View this thread: http://forums.novell.com/showthread.php?t=414763 -
How can i get the list of all users present in the LDAP
Hi Experts,
How can i get the list of all users present in the LDAP ?
Is there any API or function Code to get all user list??
Please help me out!!!
Help will be rewardedWell it will depend on exactly where your UME configuration points to in the LDAP tree but yes, it is possible to get all users. Something like the following should do it:
import com.sap.security.api.*;
import com.sapportals.portal.prt.component.*;
IUserFactory iuf;
ISearchResult isr;
IUser user
String userid;
iuf = UMFactory.getUserFactory();
isr = iuf.getUniqueIDs();
you will need to iterate the ISearchResult object but you can get IUser objects by
userid = (String)isr.next();
user = iuf.getUser(userid);
then you can imanipulate / identify / or whatever you need with the user object
Haydn -
Search for users in a particular LDAP through Web Dynpro code...
Hi Experts,
Let me try explaining my problem. In my project we are using two ADAM LDAPs. One for storing internal users and the other for storing external users. I have configured the portal to connect to both the LDAPs. I am able to search for the users created in both the LDAPs through portal Indentity Management.
I am trying to search for the users in a specific LDAP through Web Dynpro coding... I am not lucky enough to get it done. Let me explain you what I did.
I created a custom attribute for UME through config tool. Gave a physical mapping for the custom attribute in dataSourceConfig_xxx.xml to the LDAP attribute distinguishedName which returns the distinguished Name for the user in ADAM LDAP.
For Example: Custom attribute in UME is ldapuser which is mapped to distinguishedName attribute in ADAM LDAP in dataSourceConfig_xxx.xml.
When I do a search for the users in a particular LDAP, I am trying to put a filter to the newly created ldapuser attribute to distinguish between the two LDAPs.
The search will result if I pass the value as '*'. If I try to specify the user path for the LDAP in this attribute it doesnt result any data.
For example:
userSearchFilter.setSearchAttribute(
"com.sap.com.cust.admn",
"ldapuser",
"OU=16482515,OU=Members",
ISearchAttribute.LIKE_OPERATOR,
false);
The above code will not return the data, whereas
userSearchFilter.setSearchAttribute(
"com.sap.com.cust.admn",
"ldapuser",
ISearchAttribute.LIKE_OPERATOR,
false);
Will result with user list from both the LDAPs.
If anyone tried searching for users in a particular LDAP through code, please help me with this issue.
Thank you in advance.
Regards,
Rekha MalavathuI just figured it out. Under "group-policy GroupPolicy_COMPANY_SSL_VPN attributes", I had to add "vpn-simultaneous-logins 15". Apparently, it was using the value "vpn-simultaneous-logins 0" under the NOACCESS group policy.
-
How to define user defined schema in LDAP
Hi guys,
I have created user defined fields in OIM through design console.
Could any one please help me in writing user defined schema in LDAP with the fileds created in OIM.
Thanks,
divyaHi Divya
I'm a little confused about what you're asking. Does the custom schema already exist within your target LDAP server? Are you trying to work out how to pass custom attribute values through as part of an OIM provisioning operation? Which particular LDAP Server and Connector are you using?
Or are you perhaps asking how to actually create a user-defined schema extension within the LDAP directory? In this case, that will completely depend on which LDAP Server implementation you're using and you should probably refer to the product docs for that product.
Hope this helps
Cheers
Rob -
I want to see list of Disabled user from AD and LDAP
Hi
i wan see the list of disabled user from AD and LDAP and it shows in the next page as Tabular format
having all the details of AD (Attributes)Hi
i wan see the list of disabled user from AD and LDAP and it shows in the next page as Tabular format
having all the details of AD (Attributes) -
Hello All,
Could anybody please let me know the pros and cons of the SAP CUA and Corporate LDAP?
Please this is urgent
Thanks,
Leena.Hi All,
Can anyone please suggest the advantages/disadvantages of SAP CUA over Corporate LDAP.
I've gone through several threads and a lot has been spoken about it but still I would like to know the pros and cons of each approach so that technical consultants can decide to choose the best as per their landscape.
Please also suggest the differences in terms of complexities and costs incurred in implementing the same.
Thanks & Regards,
Anurag Gwari
Maybe you are looking for
-
IMac 24" (Late 2006) 10.4.11 constantly needs formatting!
I have no idea why in the past 6 months to a year my iMac keeps getting more and more problems, and each one more serious. In about a week, I will have had this computer for 4 years, and for the first 3, there has never been the problems I have had i
-
I've stripped down some code to the one line that is bugging up. If I'm getting output that looks like this, then what's the problem with the way I'm running the CFloop? The Authors are 15,281,258 15,281,258 15,281,258 Note: I don't want the repeatin
-
since downloading free apple software updates, I keep getting blank pages for all my help viewers. This happens whether I am connected to the internet or not.The only other thing I have done is install i life '06 from the CD that came with my new Mac
-
Large online photo files cause slow Mac with spinning color wheel
My Mac Mini has been gradually getting slower to launch apps, any app, and now usually includes 15-30 seconds of spinning color wheel. Sometimes I get the wheel and delays while browsing. Finder windows populate slowly with file icons/names. This beh
-
Dear all, I have a downloaded .iso version of windows 8.1 burned in a dvd. Started the bootcamp app to install Windows, also downloaded the drivers in an external hard disk. I followed the normal steps, disk partition OK, iMac reboots and Windows ins