User details are not populating in access request
Hello All,
We have configured GRC 10 with LDAP and we are able to search the users in LDAP tcode(find option) and in the access request. But when i select the user and click on ok in the access request, user information is not populating to user details tab. I have followed the SAP Standard doc and configuration is fine. When i select data source as SAP system, user details are population as expected. But when i use LDAP as data source, i am having the issue. I hope this is an field mapping issue but i tried all different options but no solution i found. Kindly help me with your expert suggestions.
Field mapping is as follows:
LASTNAME
SN
FIRSTNAME
GIVENNAME
USERID
SAMACCOUNTNAME
ROLE_NAME
NAME
MEMBER_OF
MEMBEROF
EMAIL
MAIL
MANAGERID
MANAGER
Regards,
Jai Reddy.
I know the path, but how to check it? is it using metaverse search?
Look at the Runs. Are they succeeding, or failing to connect?
Remove the Bit 17 and try again.
Trevor Seward
Follow or contact me at...
  
This post is my own opinion and does not necessarily reflect the opinion or view of Microsoft, its employees, or other MVPs.
Similar Messages
-
ARQ: User details fields mappings problem in Access Request
Dear All,
My "User Search Data Sources" are: HR system and LDAP (in this order) and
"User Details Data Sources" are: HR system, LDAP, GRC Production system and ERP Development system (in this order)
I could search for the users in HR and LDAP systems correctly. However, the problems I am facing are:
1. For some users, First Name, Last Name and Email id fields are not getting mapped. Though they are correctly shown in search screen of ARQ. This
behavior is sporadic and not sure why this is not mapped for some of the users only. But for other users, they are getting mapped correclty!
2. For some other users selected users from the search result, First Name, Last Name and Email id fields are correctly mapped. However, "Manager" field is empty and not mapped! Though they are correctly maintained in HR system.
Any idea why this is behaving like this and how to solve this?
Please advise.
REgards,
FaisalHi,
I could figure out something.
I have below hierarchy in Active Directory:
1. OU=Unit1,OU=ABC,DC=123,DC=COM
2. OU=Unit2, OU=XYZ,DC123,DC=COM
Unit1 and Unit2 are peers, fall under DC "123" and contain different sub-nodes and users. What is happening is that, if a user and his manager are from same OU (Unit1 for example), it is pulled appropriately.
In case if a user is in Unit1 and manager is in Unit2, then in this case, manager first and last name is pulled and Manager id field is not filled.
I could only maintain one of the above entries in LDAP tcode. I dont know how I can maintain peer-OUs in LDAP!
When I maintained like this:
OU=Unit1,OU=ABC,DC=123,DC=COM;OU=Unit2, OU=XYZ,DC123,DC=COM
It give me error: "Entry does not exist".
It is looking for only one node at at time but can not traverse in multiple peer nodes.
CAn anyone suggest me on this?
Regards,
Faisal -
User details are missing in Access request in GRC 10.0
Hello All,
When we are trying to create Access request in GRC 10.0 for an user it results as user details not found.
Under SPRO - Maintain data source configuration we have configured 2 HR systems HR1 and HR2.
But the User details exits in HR1 system and lies in validity also. We have tried to run the Repository Object Sync also still unable to search the details.
But we observed even after the Sync job User details are not created in table GRACUSER and GRACUSERCONN. Is this could be the problem. Why its not updating even after the Sync job many times almost 10 times.
We have also configured parameter 5023 to YES.Please advise.
Thanks in advance.Did the sequence for HR1 set to 1 or 2, I hope you are following the suggestions given by Luciana in other thread.
Please post your data source config screenshots otherwise.
BR,
Mangesh -
Over the past year, when using iTunes Radio on my iMac, I keep getting the following message: "We could not complete you iTunes Store request. You are not authorized to access the requested resource. There was an error in the iTunes Store. Please try again later." This only happens on my Mac, not on my iPad.
I looked at the Apple Support Communities and the most common workaround is to click on Store/Authorize this Computer. After entering my Apple ID password, the response is "This computer is already authorized." Well, duh. But at least the iTunes Radio starts to work for awhile.
There are other workarounds, but none is easier than the one I just mentioned. But my question is, when will Apple fix this problem? It's just annoying.
ClayHello there, TaylorGraphics.
Some users have seen resolution to this issue by logging out of the iTunes Store and then back in. The following Knowledge Base article provides a reference on how to do that:
Using an existing Apple ID with the iTunes Store, Mac App Store, and iBooks Store
http://support.apple.com/kb/ht2589
Use your Apple ID with the iTunes Store
Open the latest version of iTunes.
Choose Store > Sign In.
Enter your Apple ID and password and click Sign In.
Click Review when asked to review your information.
Enter your billing information.
Click Continue after you enter your credit card and billing information. You can remove or edit your credit card information at any time. Learn more about updating your iTunes Store account information.
Thanks for reaching out to Apple Support Communities.
Cheers,
Pedro. -
System error - User not authorized to access requested Info Object!
Hi, Experts,
I have a user ID begin with S***, but when I click some links, the following message shows:
"System error - User not authorized to access requested Info Object!"
How could I have authorization to see these links?
Thanks!
LorrieHi Lorrie,
If you are a superuser, you should not get this error.
If not, you can not change any autohorizations.
Check it out. For your job, you have to be a super user.
Thanks,
Gordon -
Firefox was working perfectly before we've updated it to version 30.0. It seems that the new version does not like our Proxy setting which needs users to auth with their AD accounts.
In the past version, Firefox will pop-up a box that allow you to type in the username and password, which works perfect. However, it does not pop-up anymore and gives me this error message.
The following error was encountered:
Cache Access Denied.
Sorry, you are not currently allowed to request:
http://www.google.com.au/url?
from this cache until you have authenticated yourself.
I try to manually set up the username in key chain and allow firefox to access it but Firefox seems do not access that key chain at all.
Is anyone have the issue with the proxy which needs authenticate in Firefox30.0? Does anyone know the possible solutions?
Many thanks!
Shuopan
------------------------------------trouble shoot update-----------------------------------------
Quite interestingly, Firefox will work for 1 minute after I am using Safari with that Auth proxy. However, if I am not touching Safari for 1 or 2 minutes, Firefox will stop working and pop up the similar error message.
tried network.http.use-cache = false but not work
ThanksQuite interestingly, Firefox will work for 1 minute after I am using Safari with that Auth proxy. However, if I am not touching Safari for 1 or 2 minutes, Firefox will stop working and pop up the similar error message.
Thanks -
Users are not able to access two different SAP portals at a time
Hi Experts,
Users are not able to access two different SAP portals at a time, if users login the OLD SAP Portal then they are not able to access NEW SAP Production Portal asking user id's & Password while doing ECC & APO transactions.
If user clear the Internet Explorer cache then for time being they can access but its not the permanant solution.
Can any one please help me on this.
Thanks,
JayHello Jay,
here we are facing this problem, this company users not able to access both the portals at at time
If you want to access HTC and Armed at the same time you gotta complete SSO Config or User mapping between these two Portals. You can refer to the below link for more details.
http://help.sap.com/saphelp_nw04/helpdata/en/f8/3b514ca29011d5bdeb006094191908/content.htm
Thanks
SM -
You are not authorized to access the request resource
I just updated my iMac to the new OS Mavericks, and when I attempt to access the itunes radio, where I have my radio stations created, and I attempt to play them it returns this message: We could not complelte your iTunes Store request. You are not authorized to access the requested resource. Is this an issue with the new OS or is it an issue with iTunes working with the OS. Any suggestions on how to fix this issue so I can access the radio would be helpful.
ThanksHello there, TaylorGraphics.
Some users have seen resolution to this issue by logging out of the iTunes Store and then back in. The following Knowledge Base article provides a reference on how to do that:
Using an existing Apple ID with the iTunes Store, Mac App Store, and iBooks Store
http://support.apple.com/kb/ht2589
Use your Apple ID with the iTunes Store
Open the latest version of iTunes.
Choose Store > Sign In.
Enter your Apple ID and password and click Sign In.
Click Review when asked to review your information.
Enter your billing information.
Click Continue after you enter your credit card and billing information. You can remove or edit your credit card information at any time. Learn more about updating your iTunes Store account information.
Thanks for reaching out to Apple Support Communities.
Cheers,
Pedro. -
I can't get iTunes Radio to work. I get this error message, even when I'm signed in to iTunes:
"We could not complete your iTunes Store request. You are not authorized to access the requested resource. There was an error in the iTunes Store. Please try again later."
What the hey?
Anyone?
thanks!
PS: I'm running 10.8.5 but for some reason this website won't let me display that and keeps changing it to 10.8.2.Relaunched iTunes a few times, signed out, signed in, and it's finally working now. Good grief. But all's well.
-
Users are not able to query request submitted by other user .
users are not able to query request submitted by some other user using the same responsibility .
applications ver . 12.1.2I have just upgraded 11.5.10 to 12.1.3. I have followed doc ID 804296.1 so users can see out files within the same responsibility. But users still cannot see out files from other users. I really believe I have followed the doc completely. Any advice?
SQL> select bug_number from ad_bugs where bug_number like '8671003';
BUG_NUMBER
8671003
Also these are the steps I took per the doc:
sysadmin >Functional Developer >Security > Objects
Search on Database Object = FND_CONCURRENT_REQUESTS
Click on Concurrent Requests.
Click on Object Instance Sets tab.
Click on Create Instance Set button.
Name=Allow user to view other requests within same responsibility
Code=XXFND_CONC_REQUESTS_01
Description=Allow user to view other requests within same responsibility
Predicate=
&TABLE_ALIAS.request_id in (select cr.request_id from fnd_concurrent_requests cr where
cr.responsibility_id = fnd_global.resp_id and cr.responsibility_application_id =
fnd_global.resp_appl_id)
Sysadmin >User Management >Roles and Role Inheritance
Click Create Role button
Catagory=Miscellaneous
Role Code=UMX|XX_VIEW_OUTPUT
Display Name=View Output For Same Responsibility
Description=View Output For Same Responsibility
Click Create Grant and "Save and Continue'
Name=XX_VIEW_OUT
Description=View output of other users in same resposibility
Object=Concurrent Requests
Click Next
Data Content Type “Instance Set”
Instance Set=Allow user to view other requests within same responsibility
Click Next
At the bottom
Set=Request Operations
Click Next> Finish
Edited by: 893303 on Oct 26, 2011 6:53 AM -
We have in our enterprise the following scenario:
1 - Lync 2013 client is installed
2 - User accounts are not migrated to Lync 2013 Server, users are using Office Communicator as their main tool
3 - Users receive Lync 2013 meeting requests but when try to access them, Lync 2013 client launches and shows error. Users will need to open the browser and paste the URL to the address bar but this still open
4 - We cannot use the workaround of adding "?SL=1" to the Lync 2013 meeting URL as the user base is large and manual workaround is not accepted
5 - Question: is there any automated way, via egistry key or GPO setting, so that users temporarily (until their accounts are migrated to Lync 2013 server) can bypass Lync 2013 client completely and automatically open all Lync 2013 meetings
on the browser, using Lync Web Plug-in?Thanks for the response,
First, I should have mentioned clearly that users have Office Communicator 2007 client and Lync 2013 client installed in their machines. Their accounts are not migrated yet to Lync 2013 server.
Second, we are using IE9 and IE10. The issue is that users CAN join Lync 2013 meetings with their browsers but have to paste the URL manually to browser and add "?SL=1" otherwise, if they just click at the "Join Online Meeting" or "Join
Lync Meeting" URL it launches Lync 2013 client which shows error because is not configured yet, as they are using OCS client and migrating slowly to Lync 2013 server.
Is there a Group Policy setting or a registry key from Microsoft that can be turned on to these users machines and make will all Lync meeting requests to be opened in IE browser instead of Lync 2013 client. We need a way to ignore
Lync 2013 client until user accounts are migrated to Lync 2013 Server. Manually typing URLs is not an option in a big organization, can't explain thousands of users of different levels what to do.
We are regretting the decision not to separate Lync 2013 from Office 2013 package we deployed recently. If Lync 2013 is uninstalled then all Lync meeting requests are opened in browser without an issue. -
Service Account details are not going through header(OSB Business service)
Hi
I have an issue with service account. Assume I have a proxy service A, Business Service B, Proxy service C.
A invokes B and B invokes C (A --> B --> C). All calls are through http protocol.
I created a service account with userid and password details and attached it to the Business service B(Static for basic authentication).
Added log activity in proxy service C for context variable $header to verify whether userid and password are coming through request header or not.
I executed proxy service A from sbconsole but I couldn't see userid and password details of created service account in the logs. Only nemespace are logged in the file.
<soap:Header xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/" xmlns:soapenv="http://schemas.xmlsoap.org/soap/envelope/"></soap:Header>>
Can someone please help me why service account details are not going through business service request. Am I missing any steps?
Thanks in advance
KK
Edited by: 966531 on Oct 23, 2012 4:23 AMBasic authentication information is stored under transport headers (check $inbound) whereas $header is populated for message headers (for e.g. - SOAP headers), so you should be checking $inbound instead of $header
Regards,
Anuj -
Assessable value and the Excise details are NOT coming in MIGO
We are facing problem that assessable value and the Excise details are NOT getting populated automatically when doing MIGO in IN03 plant.We have a STO from a DC to plant. We created the outbound delivery and then captured the excise invoice using J1IJ.In migo we give the reference of this excise invoice in the excise invoice tab then the values calculated should flow in MIGO.This is not happening and user have to manually calculate the tax and put in the system.
I have followed the following steps
1. Create STO PO ME21N
2. Create outbound delivery using VL10B
3. Do the PGI using VL02N
4. Capture the exice invoice using J1IJ in depot
5. Do MIGO and give the reference of the excise invoice createdHi,
In STO, your supplying plant is your Vendor for the receiving plant. Hence, you have to maintain the supplying plant as vendor also. Pl. check in table J1ID that the vendor data is maintained for the supplying plant.
Regards,
Prashant -
You are not authorized to access the function Projects: Worklist. Please co
Hussein,
I enabled the multi - org, upgraded R12 from 11i. I try to login into Application, I am getting an error
You are not authorized to access the function Projects: Worklist. Please contact your System Administrator.
This could be multi - org issue? Please let me know.
Thanks
PrinceHi Prince,
Hussein,
I enabled the multi - org, upgraded R12 from 11i. I try to login into Application, I am getting an error
You are not authorized to access the function Projects: Worklist. Please contact your System Administrator.
This could be multi - org issue? Please let me know.
Thanks
PrincePlease check apache log files for details about the error (error_log* and access_log* files).
Is this happening to all users?
Did you enable Multi-Org successfully with no errors?
After Upgrade to 12.1, unable to Login with You are not authorized to access the function Applications Default Login Page [ID 1368800.1]
You Are Not Authorized To Access This Function When Using Iexpense [ID 295907.1]
Thanks,
Hussein -
"you are not authorized to access the function" issue
Hi folks,
I have a issue when I tried to include rich content container in one OA page. I defined the function according to the dev guide. Then the page shows error as "You are not authorized to access the function XXX. Please contact your System Administrator". Now the OA application has Application Short Name as SYSADMIN and Responsibility as SYSTEM_ADMINISTRATOR. And I defined the function under System Administrator->Application->Function. Any suggestion for this issue is appreciated.Hi Prince,
Hussein,
I enabled the multi - org, upgraded R12 from 11i. I try to login into Application, I am getting an error
You are not authorized to access the function Projects: Worklist. Please contact your System Administrator.
This could be multi - org issue? Please let me know.
Thanks
PrincePlease check apache log files for details about the error (error_log* and access_log* files).
Is this happening to all users?
Did you enable Multi-Org successfully with no errors?
After Upgrade to 12.1, unable to Login with You are not authorized to access the function Applications Default Login Page [ID 1368800.1]
You Are Not Authorized To Access This Function When Using Iexpense [ID 295907.1]
Thanks,
Hussein
Maybe you are looking for
-
How do I get the Blackberry symbol to show after I send a text message?
How do I get the Blackberry symbol to show after I send a text message?
-
I want to change from syncing to Palm to Outlook instead.
I have read community the postings, but can't find anything called PIM conduit sync and no place to tell it to change to Outlook. thanks. Post relates to: Tungsten T3
-
What is a html generation class in UIX?
There's a site which is used OAF. But some pages are not rendered well. The problem is caused by "<oa:messageFileUpload>" tag in XML file. PC browser renders it properly, but ie mobile 5 couldn't render it well. However in html source, it is showed a
-
I recently moved to a new MacBook Air with a physically larger hard drive. I had a coworker move over all of my software and data, and everything seems to be playing nicely. All of the current apps I have in place like Photoshop and Illustrator are w
-
I am attempting to migrate data from my old iMac G5 to my new MacBook. After booting the iMac into target disk mode, Migration assistant eventually times out showing some message about the target disk not supported or whatever. I forget what it said.