Allow a user disabled by a recon trust

We run a recon trust every day with our HR system. When an employee terminates, they supply cancelled and put in a disabled state. However, we have situations sometimes the employee is rehired. The recon trust aligns correctly the user re-engaged in the file of human resources with the existing record to the IOM, but it fails with the following error in the reconciliation Manager:

Keyword Error: DOBJ. GRP. USR_STATUS_ERROR
Description: The target user is disabled or deleted.

Is it possible to allow the user somehow for the recon event can complement and the employee can be activated?

If the status is at the origin of the questions, I suggest the following:

1. create a UDF of this status.
2 Add the field looking for the USR form triggers.
3 create an adapter that verifies the current (old value) and the new (incoming Recon) value. Based on these values, you will need to use the disableUser or enableUser API.
4 create an adapter of the entity that verifies the value of users for this field when inserting back so that if the user should be turned off during the initial load, it will disable the user when finished.
5 Add the adapter in step 3 to the process definition of provisionign of Xellerate user with the name of the task specified in the list of choices.

Now whenever this field changes, you can enable and disable the user with an adapter, and since it is a reliable source, the value will trigger change whenever it is updated.

-Kevin

Tags: Fusion Middleware

Similar Questions

  • The implementation of generator of random when password the user is created using recon trust in OIM 11 g R2 PS3

    Hello

    Event handlers in the process pre don t work with recon trust in OIM 11 g R2 PS3. In our scenario, we want to create the user using recon trust and need the password to be generated randomly for the user created through trust recon.

    What is the workaround that can be implemented.

    Help, please.

    Thank you

    Sahana

    Post event handler process on the user object to create a new action. Set the order after the current ootb event handler that generates the default.

    -Kevin

  • Approvals for recon trust in OIM 11 g 2

    People,

    I have a requirement to send create trusts from the user to a user during the reconciliation of trust of a file. Is it possible to achieve. ?

    That is to say we do not want to directly create users to IOM on recon trust rather send for approval and after successful approval the user must be created in the IOM.

    Concerning

    Isn't that the recon trust device?  I guess all you can do is to remove the rule to create a user when no match not found on the reconciliation rule.  Then force someone to handle these types of events.  I don't think you can have an approval process on the user create a recon trust.  You can not access even the events of preprocessor on the user.

    Hand, the only option I can think of is instead of making reconciliation, uses the user to create and edit API with custom code.  Then you can put an approval in place.

    -Kevin

  • Allow other users to connect through my internet connection of mobile phones.

    Quite simply, I'm setting up my xbox live to run through my internet connection of mobile.

    When I select the check box to allow other users of the network to connect through this computer's internet connection it turns off immediately, so is not enabled.

    I tried disabling the firewall etc to see if it limited the ability of sharing, but it did not work.

    Any information or help would be greatly appreciated.

    Hi Stewart,
     
    Please go through the article below which will help you to connect to windows live using your internet connection for your laptop.
    How to connect your Xbox 360 wired controller to a computer running Windows
    http://support.Microsoft.com/kb/906347

    Please also see the link below. This could help you.
    http://support.Microsoft.com/kb/978618

    If the problem persists, I suggest that question you post you to Xbox forums.
    Xbox support

    http://forums.Xbox.com/xbox_forums/xbox_support/default.aspx

     
  • that allows standard users change ppp settings, removing UAC admin fast pwd to DPIscaling.exe

    I am currently using windows vista ultimate 64-bit with an installed nvidia geforce 8800 gtx card. I'm the ADM on the machine, with the standards users who connect it. My account of adm does not have the problem. I'm trying to find a way to allow standard users on the machine to have the ability to change the ppp settings.

    The path of the file is C:\Windows\System32\DpiScaling.exe

    I tried to use the solution listed on this site: http://blogs.techrepublic.com.com/window-on-windows/?p=635

    and used the Application Compatibility Toolkit.  I used a lot of different options, the 32-bit version, 64-bit, different boxes, without success. When you click right on the file properties and click on the Compatibility tab, it says:
    Cannot be set on this program compatibility modes because it is part of the Windows version.

    I have a standard users also granted full control of the executable, and if the logged-on user account, he got always invited him to enter the administrator credentials. I understand that this only gives the user access to the file and not what the file does.

    I need to find a solution to allow standard users on the computer to change the DPI settings without the need of the admin password.  While looking for solutions here and on the site of regular microsoft (support.microsoft.com) support, all I could find are methods that disable the guests of UAC elevation and ways to disable UAC completely.    http://social.answers.Microsoft.com/forums/en-us/w7security/thread/0364515a-301e-47C5-AF99-39347b83c6b4-je don't want to do that.  I even tried and the standard user has always invited to enter an admin password.  I don't want to disable UAC or the guests of elevation, surprisingly these guests don't mind.   The computer is set to high resolution and need to continually change the DPI setting to enable the second monitor (my HDTV) text output in a format that is clear and correct.  The reason why we have change back is because the cursor of the mouse in the PC video games being played here on disappears when the DPI is set to what higher than normal / default. So before any game is played, the DPI settings in windows settings must be changed to the default / normal.

    Since I was the user only administrator on the machine, I am concerned when other users would like to play their games. but can not, because I am not present.  I want to be the only Admin account on the machine.  Bad things tend to happen when I allow other users are administrators on the machine.

    Hello

    Your question is more complex than what is generally answered in the Microsoft Answers forums. It is better suited to the security of Windows Vista on TechNet. Please ask your question in the TechNet forum.

    Diana

    Microsoft Answers Support Engineer

    Visit our Microsoft answers feedback Forum and let us know what you think.

    If this post can help solve your problem, please click the 'Mark as answer' or 'Useful' at the top of this message. Marking a post as answer, or relatively useful, you help others find the answer more quickly.

  • How to allow standard users to install and run games?

    I want to enable a standard to install and run games and such user account but I keep getting guests for an admin password, I tried to disable UAC, but I'm now just get guests who say that the administrator can install only. I would like to be able to do this without having to turn off UAC.

    You must have administrator rights to install anything, period.  Trying to allow standard users just did, it's as if we were trying to be a little bit pregnant. :-)

  • EventHandler for user disable/enable

    Hello

    is it possible to trigger the execution of a plug-in via an eventhandler when disable it (or allow) a user?

    entity-type = 'User', operation = "CHANGE" only triggers updates to the "usual" data

    Thank you

    C

    There's ENABLE / DISABLE operations too, which fires at these events. CREATE, EDIT, REMOVE, ENABLE, DISABLE, LOCK, UNLOCK, etc...

  • Recon trust with AD

    We do the recon commercial OIM.but trust, users are not created in IOM 11.1.1.5.
    Users are created in the ad with the information as below
    First name
    SN,
    password
    employee type = full time
    display name
    sAMAccountName

    The task recon trust with the below
    Lot size: 100
    Type of user of IOM = end user
    The Recon object name = User AD done trust
    Search the Base = OR = abc, dc = IOM, dc = com
    Sort by = samAccountname
    etc.

    In recon looking ahead events, we can see the information of the user name, lastname etc but when looking for users in IOM, unable to see the users.

    The error we receive if the advanced search:
    Not related to any user

    Thank you
    Harry

    incomming emp type must exist in Lookup.Users.Role--> key code.

    Check search above and add the new entry if necessary

    It is very important to make habbit to mark the thread as "useful" or correct if yoy get the solution

  • Allow the user from code java stand alone

    Hello
    I have a requirement where I need allow a user in IDM if it is in the disabled state. I wrote the java code that connects to the IOM server with username and password and made the necessary. But I have a new thing to implement here in which if the user status is disabled, then we call the user activate and allow the user in IDM DB. Please help in locating the method appropriate and API for this.


    Thank you
    Kalpana.

    Check this: http://docs.oracle.com/cd/E14571_01/apirefs.1111/e17334/oracle/iam/identity/usermgmt/api/UserManager.html#enable_java_util_ArrayList__boolean _
    and as it happens; Once you activate a user; tasks to activate resources would be triggered automatically.

    -Marie

    Published by: Bikash Bagaria on February 15, 2012 11:34

  • Recon trust cannot insert the RA_XELLERATEUSER2 due to RA_XELLERATEUSER2

    Hi all

    I saw a previous assignment for this error, but I still don't understand why I get this error. OIM 11 G and doiing a recon trust to the user Xellerate resource.

    I OrgName mapped on behalf of the Organization and set it to "Xellerate users" in the reconstruction plan. do not know what is happening.


    Thanks in advance.
    Fred

    You can use a more processReconciliationEvent after the call to the createReconciliationEvent API.

    Let me know the results.

  • Recon trust

    Whenever I run AD recon trusted user, all users who are in AD and not in IOM is created in IOM, which is as expected. But for all these users, resource profile shows that users have access to AD.

    That should come out connector AD or miss me something?

    This is the expected behavior, recon trust against AD so the data of the user are used to trigger the creation of a user of the IOM. If you want to bind the new user of the IOM to their AD resource, you need to run a unapproved recon as well and it will find the AD user and the corresponding IOM user and link the two. For each user, you will see while they attached AD resource.

  • Difficulty the front Dimension of the array, but allow the user to change the size of the array

    Hello

    I know there are a few other posts on table and scroll bars but mine is a little different. I want to have the physical size of the fixed table control and allow the user to change the size of the array as required and a scroll bar if the number of elements exceeds the specified physical dimension. I wouldn't mind if, at the end of the scroll bar, the user sees an uninitialized element.

    Thank you very much

    Hello

    The problem I have with the property Num Row node is it seems to replace the scroll bar. Whenever I try to change the line number, the table automatically resizes its physical size on the front and the scroll bar has no effect.

    However, I solved the problem by taking row completely digital. I just said if the table size is > to a constant value (i.e. 3), add a scroll bar and my front panel dashboard to be a size larger than what the value of this constant is size. Once I begin to add values in sequential order and I get to the fourth value, the scroll bar is added and the scroll bar has a feature where it adds an element of null for you, so if I fill this null element I just increased the size of the table and another null element appears underneath.

    Thanks for the help

  • INTERFACE design - what is the best way to allow the user to define a kind of infusion at various times (non-periodic)?

    I want to allow the user to specify a curve like this:

    Such as some under - VI shows the A2 value when a variable of time is between R1, A1 when the time variable is between A2 and A3 when time is in the range A3.

    My design looks like this:

    With the error checking that looks like this:

    My question is, is the approach of the table according to optimal? Otherwise, how could combat this?

    I think I can summarize the conversation on this point as a response to the original question (what is the best way...) -to start writing code, to think about what you want to accomplish and write it down (otherwise known as 'Write the first Documentation').  One of the points of a good User Interface is that it is not allow users to "stupid mistakes" - it leads the user "by hand", limiting the entries to the "legal values" and demanding that the entries be made logically.

    If you were going to have a list of Infusions to enter, it is therefore logical to decide or not to enter into time intervals (which are always > 0) or order the times (which, logically) are still growing.  You can (and should) decide that you (or you may have a control that allows the user decide, but maybe it's too flexible) and then apply your "rules".

    Let's say you've decided on "Intervals" (which seems to me to be more User Friendly).  After the user has entered the intervals (and you've provided a nice plot of perfusion vs. time), pouvez allow you the user to an interval of 'split', 'Delete' an interval, or "Edit the Infusion" interval, or you can decide to have a choice more simple "accept or start again" - If you have only a few intervals, the last would be the simplest (and therefore best) design choice.

    Spend more time thinking before coding usually pays Big dividends!

    (Speaking of sad experience) Bob Schor

  • Allow administrative users to update applications

    I have several new computers running Win7 Pro using the CAD and the standard name of user/login prompt.  Users run in standard user with no administrative privileges accounts.  Users get pop ups of various applications that want to run updates to day, but when the user selects the he is prompted for an administrative password.  Of course, they cannot continue.  The two main offenders are currently Java and adobe Acrobat.  Is there a way to allow administrative users to run software updates to the machine?

    I tried to add users to the power users group, but that did not help.

    My current idea is to create an admin user and set it so that the user can not connect interactively, but can be used to authenticate the update.

    You can't do that. If find you a hack to allow them to you have given the same level of access as an administrator and undermined all chances to avoid to install malicious software or dirt otherwise upward from their computers. If they can install the software in ProgramFiles or % of windows that they own the computer.

    Instead, set up an automated system to deploy software and updates. System Center Configuration Manager is probably overkill for your network, but there are several affordable tools of the 3 parties who could help with deployment and maintain applications. Http://www.kurtdillard.com Kurt Dillard

  • AnyConnect 3.1.04072 allows remote users

    I find no establishment of VPN Windows with "Allow remote users" in the profile editor. Is it discouraged?

    Pavlo,

    Could be a limitation of the profile editor you are using (stand-alone or ASDM?)

    The value exists in VPN XML reference:

    http://www.Cisco.com/en/us/docs/security/vpn_client/AnyConnect/anyconnect31/Administration/Guide/apxAvpnxmlref.html

    and his retirement to my knowledge.

    M.

Maybe you are looking for