EP 6.0 SP2: Users move in Corporate LDAP,

Hello,
my corporate LDAP was changed. All the users moves from O=x to O=y. Now no user can login.
When i add the new users to the Portal, they lost there personel settings.
Is it possible to manipulate the Database? Or ist their any other trick?
Stephan

Hi Stephan,
if you move users in your LDAP-Directory you loose the role assignments because the roles are assigned to the DN (Distinguished Name) of the user. i.e: CN=user1, O=x, C=DE. So when you move the users from O=x to O=y the DN of the users changes and so the role assignment becomes invalid.
There is the possibility to change the uniqueID of users in the UME, so that it's not the DN but the CN, which in your case remains the same. You can do this be changing the attribute mapping in the UME.
More infos you can find here: http://help.sap.com/saphelp_ep60sp2/helpdata/en/b6/8b9aed8d7c11d5bdd8006094191908/frameset.htm
Be aware that if you change the uniqueID to CN you should also take care of the fact that the CN must be unique in the LDAP tree you use for the portal users. Also, a.f.a.i.k., after this change the Directory can only be integrated read-only.
Hope that helps,
Robert

Similar Messages

  • How do I create a new user, move my old files etc over, and delete old user

    This is why I think I need to.
    My computer got hit by lightening, and I may have created a new user account through netinfo rather than system preferences /accounts/+user. Mail used to open twice, but no longer. Now, Safari askes me for my keychain password twice, Spotlight can't find a folder on the computer when the search is restricted to folder and computer, though the folder is there and easyfind finds it, and when System Preferences/Spotlight/Privacy has the hard drive icon added, then deleted, Spotlight still does not find anything. (Yes, everything is backed up, on CD, DVD, and online.) Microsoft Tec Support says
    "Here is a summary of the key points of the case for your records.
    When you contacted us on August 8, you had requested assistance with Microsoft Office 2004, as your installation of the updates was unable to find the correct version of the software to update. After creating a New MAC User, we identified the issue to be with a corrupt MAC User account, and not a Microsoft issue. "
    I believe Microsoft. So, creating a new user was easy.
    But copying files uses up too much hard drive (movies, music), and may miss keychains, preferences, mail, address book, and documents. Since Spotlight no longer works, who knows what is happening. (Yes, I've repaired persmissions, and disk repair. No change). I'm using up my hard drive trying to move files to the new user. If I share files, or put them into a public folder, then delete the old user, will I still have the old user's files in the new user's account? It is not clear to me what I should be trying to do in order to create a new user, move my old files etc over, and delete old user. Thanks.
    My responses will be slow, because I have to drive to town to use the internet. I've ordered a new airport which may take care of that problem. SO be patient.

    Hey -
    I need to do the EXACT same thing, but have no idea how. Has anyone out there done this?
    My situation is a tad different..this is a new Mac (and I'm a brand new Mac user). Tons of querks occur under my original account (videos won't run, Safari won't support certain plug-ins). I spent 6 hours on the phone w/ 4 different Apple Reps and nobody could fix it. A rep finally looked at my MacBook Pro in person today. He created a new account just to see if that would work and under that new account, everything works perfectly fine (no querks, can view video). He tried switching a million settings in my original account to no avail.
    He said to create a new account (as he did) and move my files over to the new account and then go back to the original and delete it. How do you do this?! I can't figure it out! I've got a new account created, but of course it just has the default folders in it w/ the little red icons next to them! Thanks in advance!

  • MacBook Pro with SSD that has a limited disk space (120GB). Rendering in Project File (User/Movies/Final Cut Projects), it takes huge space and the limited disk space would not be enough for the whole editing.

    I'm using MacBook Pro with 128GB SSD that has a limited disk space. As we know, when rendering in Project File (User/Movies/Final Cut Projects), it takes huge space and the limited disk space would not be enough for the whole editing.
    My question is, Is there any method to get the rendering Projects file saved into an external hard drive which is connected with USB/ Thunderbolt/ Firewire, with huge disk space (eg. 500GB HDD).
    Now, new project created in my Mac is automatically saved in (User/Movies/Final Cut Projects) and my Mac has ran out of space to hold the files.
    Thank you.

    You have at least 3 different ways to show the project library:
    1) Go to WIndow->Show Project Library
    2) Click the button in bottom left of your window: 
    3) Hit the keyboard shortcut (Command-0)
    The project library will be shown, occupying the area where the timeline usually is.
    Your hard disks will be visible. Click the hard disk where you want the new project to reside and hit Cmd-N to create a new project.

  • Every user move stuck

    We will move a whole postoffice and every move is stuck with source domain
    updated

    I did a rebuild on the involved domains and postoffices
    I recreated wpcsin wpcsout mslocal
    On the netware server I put the in nodca in the startupfile for the
    postoffice..
    And now the user moves works..
    "gregamy" <[email protected]> skrev i meddelandet
    news:[email protected]..
    >
    > If you did not do checks, are *any *items coming over at all? Or are
    > they all just stuck at the initial phases?
    >
    > If you did not do checks, and if the process started and a lot of items
    > came over, and you don't do normally-scheduled checks, then it could
    > just be you have some bad, stuck items. Those can be cleared easily.
    >
    >
    > --
    > Greg Amy
    > GroupWise Admin
    > Hartford (CT) Hospital
    > ------------------------------------------------------------------------
    > gregamy's Profile: http://forums.novell.com/member.php?userid=12509
    > View this thread: http://forums.novell.com/showthread.php?t=438046
    >

  • User Move stuck.....

    I have a user that I moved from a post office I am consolidating. It is stuck in the process right now, currently at the retry mailbox item retrieval.
    I did, before the move, a standard content/structure gwcheck before, then did one with deldupfolder, then back to standard (if duplicate folders were found) until none were found and not issues....then a gwcheck with attclip..
    When requesting pending items, it lists over a 100 items, with the first being a internal search folder, listed as To-Do.
    I am sure there are more than a 100.
    I have tried to simply skip the next item in the list, once, to see if it was a single item holding up.
    I have tried retrying the last step of the move.
    I have tried restarting the entire mailbox move.
    Now, my log files are showing this for MANY MANY items, when I do mailbox retry....
    02:24:54 578D (TRACKMOVE) Could not '_NgwrepFixItem' (53511 0x0000d107): paynej (egw) (paynej)
    Only thing that I have found as a possible solution, would be to cancel the move...by moving the account BACK to the original post office, and then attempting again after running some additional gwchecks.
    Thanks for any assistance you may be able to offer.

    I did a rebuild on the involved domains and postoffices
    I recreated wpcsin wpcsout mslocal
    On the netware server I put the in nodca in the startupfile for the
    postoffice..
    And now the user moves works..
    "gregamy" <[email protected]> skrev i meddelandet
    news:[email protected]..
    >
    > If you did not do checks, are *any *items coming over at all? Or are
    > they all just stuck at the initial phases?
    >
    > If you did not do checks, and if the process started and a lot of items
    > came over, and you don't do normally-scheduled checks, then it could
    > just be you have some bad, stuck items. Those can be cleared easily.
    >
    >
    > --
    > Greg Amy
    > GroupWise Admin
    > Hartford (CT) Hospital
    > ------------------------------------------------------------------------
    > gregamy's Profile: http://forums.novell.com/member.php?userid=12509
    > View this thread: http://forums.novell.com/showthread.php?t=438046
    >

  • Tracking User Move

    Good day,
    It has been awhile since I have had to monitor a GroupWise system, my last customer migrated to Google, and I'm a bit out of practice. Basically I'm being asked to track an administrator's move of a GroupWise user, from one location to another, and I just want to double check the process for tracking a user move? Thank you
    -D

    Originally Posted by dschaldenovell
    Good day,
    It has been awhile since I have had to monitor a GroupWise system, my last customer migrated to Google, and I'm a bit out of practice. Basically I'm being asked to track an administrator's move of a GroupWise user, from one location to another, and I just want to double check the process for tracking a user move? Thank you
    -D
    Two places you can track what's happening:
    1) In the logs (make sure POA logging is set to verbose) of the source and destination PO.
    2) ConsoleOne, in the main menu bar select "Tools" > GroupWise Utilities > User Move Status.
    The first one will show more detail but will need to be monitored realtime and you also get other log items coming through at it's the general log. It's useful though to see how the move is progressing and how many items are still left to move and detail if any errors pop up.
    The second one if useful to see in which phase the move is in (the different stages of it's progress or move complete) and can also be used to nudge stuck moves or see which items are pending/stuck.
    Cheers,
    Willem

  • How to use company users on existing ldap server as EP6.0 sp2  Users?

    Hi everybody
    Our company user data is on a  LDAP server we want to connect our EP6  UME  to this existing LDAP server so that existing company users can access  the Portal with their company id and password. What configuration we should do on the portal ?
    thanks and regards
    Rajendra

    Hi!
    Look at Admin Guide:
    Administration Guide->Portal Platform->System Administration->User Management Configuration->Configuration of Data Sources Used for User Management->Defining an LDAP Directory as a Data Source
    WBR, Lnk

  • Corporate LDAP

    How to configure External Authentication with corporate LDAP?

    The below link tells how to configure Shared Services to support authentication of users stored in LDAP, refer to chap 10
    http://download.oracle.com/docs/cd/E12032_01/doc/epm.921/hss_install.pdf

  • WebLogic 6.1 sp2 does not allow Anonymous LDAP Binding

    Hi,
    I am trying to setup LDAP on WebLogic 6.1 SP2 and it refuses to bind
    anonymously
    to our iPlanet LDAP server.
    If I specify an admin user that is in LDAP there isn't a problem, all
    authentication works fine. Anonymous binding works find from
    ldapsearch, PeopleSoft, etc ...
    My config.xml definition is below, am I missing something ?
    <CustomRealm
    ConfigurationData="user.filter=(&(uid=%u)(objectclass=person));serve
    r.authprotocol=none;user.dn=ou=People,ou=Internal,ou=Clients,o=mycorp;server.p
    rincipal=uid=admin,ou=People,ou=Internal,ou=Clients,o=mycorp;membership.fil
    ter=(&(uniquemember=%M)(objectclass=groupofuniquenames));group.filter=(&
    (cn=%g)(objectclass=groupofuniquenames));server.host=ldap.mycorp.com;
    group.dn=ou=Groups,ou=Internal,ou=Clients,o=mycorp"
    Name="UMDSv2"
    Notes="This is provided as an example. Before enabling this
    Realm, you m
    ust edit the configuration parameters as appropriate for your
    environment."
    Password="{3DES}lwSDdYvmhJClhXHELTDQlA=="
    RealmClassName="weblogic.secur
    ity.ldaprealmv2.LDAPRealm"/>
    Thanks,
    Kim

    Hi,
    I am trying to setup LDAP on WebLogic 6.1 SP2 and it refuses to bind
    anonymously
    to our iPlanet LDAP server.
    If I specify an admin user that is in LDAP there isn't a problem, all
    authentication works fine. Anonymous binding works find from
    ldapsearch, PeopleSoft, etc ...
    My config.xml definition is below, am I missing something ?
    <CustomRealm
    ConfigurationData="user.filter=(&(uid=%u)(objectclass=person));serve
    r.authprotocol=none;user.dn=ou=People,ou=Internal,ou=Clients,o=mycorp;server.p
    rincipal=uid=admin,ou=People,ou=Internal,ou=Clients,o=mycorp;membership.fil
    ter=(&(uniquemember=%M)(objectclass=groupofuniquenames));group.filter=(&
    (cn=%g)(objectclass=groupofuniquenames));server.host=ldap.mycorp.com;
    group.dn=ou=Groups,ou=Internal,ou=Clients,o=mycorp"
    Name="UMDSv2"
    Notes="This is provided as an example. Before enabling this
    Realm, you m
    ust edit the configuration parameters as appropriate for your
    environment."
    Password="{3DES}lwSDdYvmhJClhXHELTDQlA=="
    RealmClassName="weblogic.secur
    ity.ldaprealmv2.LDAPRealm"/>
    Thanks,
    Kim

  • Creation of user and roles in ldap using jldap api

    Please help me in creating user and roles in ldap through java api.
    I am able to manupulate the existing user and role in ldap. Please give
    me some steps or some sample code for creating user
    satyanandasahu
    satyanandasahu's Profile: http://forums.novell.com/member.php?userid=89095
    View this thread: http://forums.novell.com/showthread.php?t=414763

    Thanks Jim..
    this is doing the work. Here we have a custimised class with customised
    attributes I am looking how to do that.
    Can you give your mail id.
    thanks again
    Jim Willeke;1995096 Wrote:
    > Have you seen these samples:
    > 'Novell Documentation'
    > (http://developer.novell.com/document...mple/index.htm)
    >
    > See the AddEntry.java
    > -jim
    >
    > On 7/2/2010 9:36 AM, satyanandasahu wrote:
    > >
    > > Please help me in creating user and roles in ldap through java api.
    > > I am able to manupulate the existing user and role in ldap. Please
    > give
    > > me some steps or some sample code for creating user
    > >
    > >
    satyanandasahu
    satyanandasahu's Profile: http://forums.novell.com/member.php?userid=89095
    View this thread: http://forums.novell.com/showthread.php?t=414763

  • How can i get the list of all users present in the LDAP

    Hi Experts,
    How can i get the list of all users present in the LDAP ?
    Is there any API or function Code to get all user list??
    Please help me out!!!
    Help will be rewarded

    Well it will depend on exactly where your UME configuration points to in the LDAP tree but yes, it is possible to get all users.  Something like the following should do it:
    import com.sap.security.api.*;
    import com.sapportals.portal.prt.component.*;
    IUserFactory iuf;
    ISearchResult isr;
    IUser user
    String userid;
    iuf = UMFactory.getUserFactory();
    isr = iuf.getUniqueIDs();
    you will need to iterate the ISearchResult object but you can get IUser objects by
    userid = (String)isr.next();
    user = iuf.getUser(userid);
    then you can imanipulate / identify / or whatever you need with the user object
    Haydn

  • Search for users in a particular LDAP through Web Dynpro code...

    Hi Experts,
    Let me try explaining my problem. In my project we are using two ADAM LDAPs. One for storing internal users and the other for storing external users. I have configured the portal to connect to both the LDAPs. I am able to search for the users created in both the LDAPs through portal Indentity Management.
    I am trying to search for the users in a specific LDAP through Web Dynpro coding... I am not lucky enough to get it done. Let me explain you what I did.
    I created a custom attribute for UME through config tool. Gave a physical mapping for the custom attribute in dataSourceConfig_xxx.xml to the LDAP attribute distinguishedName which returns the distinguished Name for the user in ADAM LDAP.
    For Example: Custom attribute in UME is ldapuser which is mapped to distinguishedName attribute in ADAM LDAP in dataSourceConfig_xxx.xml.
    When I do a search for the users in a particular LDAP, I am trying to put a filter to the newly created ldapuser attribute to distinguish between the two LDAPs.
    The search will result if I pass the value as '*'. If I try to specify the user path for the LDAP in this attribute it doesnt result any data.
    For example:
    userSearchFilter.setSearchAttribute(
         "com.sap.com.cust.admn",
          "ldapuser",
         "OU=16482515,OU=Members",
         ISearchAttribute.LIKE_OPERATOR,
         false);
    The above code will not return the data, whereas
    userSearchFilter.setSearchAttribute(
         "com.sap.com.cust.admn",
          "ldapuser",
         ISearchAttribute.LIKE_OPERATOR,
         false);
    Will result with user list from both the LDAPs.
    If anyone tried searching for users in a particular LDAP through code, please help me with this issue.
    Thank you in advance.
    Regards,
    Rekha Malavathu

    I just figured it out. Under "group-policy GroupPolicy_COMPANY_SSL_VPN attributes", I had to add "vpn-simultaneous-logins 15". Apparently, it was using the value "vpn-simultaneous-logins 0" under the NOACCESS group policy.

  • How to define user defined schema in LDAP

    Hi guys,
    I have created user defined fields in OIM through design console.
    Could any one please help me in writing user defined schema in LDAP with the fileds created in OIM.
    Thanks,
    divya

    Hi Divya
    I'm a little confused about what you're asking. Does the custom schema already exist within your target LDAP server? Are you trying to work out how to pass custom attribute values through as part of an OIM provisioning operation? Which particular LDAP Server and Connector are you using?
    Or are you perhaps asking how to actually create a user-defined schema extension within the LDAP directory? In this case, that will completely depend on which LDAP Server implementation you're using and you should probably refer to the product docs for that product.
    Hope this helps
    Cheers
    Rob

  • I want to see list of Disabled user from AD and LDAP

    Hi
    i wan see the list of disabled user from AD and LDAP and it shows in the next page as Tabular format
    having all the details of AD (Attributes)

    Hi
    i wan see the list of disabled user from AD and LDAP and it shows in the next page as Tabular format
    having all the details of AD (Attributes)

  • SAP CUA Vs Corporate LDAP

    Hello All,
       Could anybody please let me know the pros and cons of the SAP CUA and Corporate LDAP?
    Please this is urgent
    Thanks,
    Leena.

    Hi All,
    Can anyone please suggest the advantages/disadvantages of SAP CUA over Corporate LDAP.
    I've gone through several threads and a lot has been spoken about it but still I would like to know the pros and cons of each approach so that technical consultants can decide to choose the best as per their landscape.
    Please also suggest the differences in terms of complexities and costs incurred in implementing the same.
    Thanks & Regards,
    Anurag Gwari

Maybe you are looking for

  • IMac 24" (Late 2006) 10.4.11 constantly needs formatting!

    I have no idea why in the past 6 months to a year my iMac keeps getting more and more problems, and each one more serious. In about a week, I will have had this computer for 4 years, and for the first 3, there has never been the problems I have had i

  • CFloop repeating

    I've stripped down some code to the one line that is bugging up. If I'm getting output that looks like this, then what's the problem with the way I'm running the CFloop? The Authors are 15,281,258 15,281,258 15,281,258 Note: I don't want the repeatin

  • Blank help pages

    since downloading free apple software updates, I keep getting blank pages for all my help viewers. This happens whether I am connected to the internet or not.The only other thing I have done is install i life '06 from the CD that came with my new Mac

  • Large online photo files cause slow Mac with spinning color wheel

    My Mac Mini has been gradually getting slower to launch apps, any app, and now usually includes 15-30 seconds of spinning color wheel. Sometimes I get the wheel and delays while browsing. Finder windows populate slowly with file icons/names. This beh

  • Windows 8.1 setup loop

    Dear all, I have a downloaded .iso version of windows 8.1 burned in a dvd. Started the bootcamp app to install Windows, also downloaded the drivers in an external hard disk. I followed the normal steps, disk partition OK, iMac reboots and Windows ins