Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Bastien_Lauc
Explorer

Loose role - Identity awareness

Hello,

I have a rule with source an access role where there are 2 AD groups.
A user tells me that he no longer arrives has matched the rule while he belongs to one of the 2 groups of the AD.
I saw in the logs that one moment he loses in his roles, the access role in question and it does not come back.
To work around the problem, I added in the rule an access role with its AD account in source (it works).
How can this problem be corrected?

 

Best Regards,

Bastien

0 Kudos
5 Replies
Chris_Atkinson
Employee Employee
Employee

Please share some additional information:

- Gateway version & Jumbo

- Identity source type: IDC or ADQuery - admin creds valid?

- What does 'pdp monitor user UserName' show?

- How many LDAP account units are there configured?

CCSM R77/R80/ELITE
0 Kudos
Bastien_Lauc
Explorer

Hello,

Gateway version r81.10

Identity source Identity collector

With pdp monitor user UserName, I don't see the role

There is only one LDAP account units 

Best Regards,

Bastien

0 Kudos
Chris_Atkinson
Employee Employee
Employee

If you are already using a recent JHF take for the Gateway and IDC agent version I would suggest a live session with TAC to troubleshoot the issue further.

CCSM R77/R80/ELITE
0 Kudos
Bastien_Lauc
Explorer

TAC 041

0 Kudos
Chris_Atkinson
Employee Employee
Employee

Take 41 is a valid take# for R81.20.

I assume instead this is your abbreviated IDC version?

CCSM R77/R80/ELITE
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events