eTID auto-generation failure during Account Template LDIF import in Identity Manager
search cancel

eTID auto-generation failure during Account Template LDIF import in Identity Manager

book

Article ID: 133670

calendar_today

Updated On:

Products

CA Identity Manager CA Identity Suite

Issue/Introduction

This article addresses the issue where the eTID attribute is not created or is inconsistently assigned when importing Account Templates using LDIF files. It identifies the required Provisioning layer and port configuration to ensure successful auto-generation of provisioning attributes.

Environment

Identity Manager 14.5 & 15

Cause

The eTID attribute fails to auto-generate when the LDIF file is imported directly into the Identity Manager Provisioning Directory (IMPD) layer. This layer does not trigger the internal logic required for automatic attribute generation. Direct imports to the IMPD can lead to blank templates and subsequent duplicate account creation.

Resolution

To ensure the eTID is correctly auto-generated, perform the following steps:

  1. Verify the connection parameters for your LDIF import tool (e.g., ldapmodify or etautil).
  2. Direct the import to the Identity Manager Provisioning Server (IMPS) layer.
  3. Use port 20389 (Non-SSL) or 20390 (SSL) for the connection.
  4. Confirm the successful import and verify the eTID presence in the Provisioning Manager.

IMPORTANT: Do not import LDIF data directly into the IMPD layer (port 20391), as this bypasses critical Provisioning Server logic.

Additional Information

To speak with a customer representative or a Support Engineer see Contact Support. Scroll to the bottom of the page and click on your respective region.