search cancel

More Details Direct Endpoints for AD

book

Article ID: 202779

calendar_today

Updated On:

Products

CA Identity Manager CA Identity Governance CA Identity Portal CA Identity Suite

Issue/Introduction

More Details on the Direct Endpoints for AD groups for example shows nothing. Is that a feature capability for the future and does nothing?

Environment

Release : 14.3

Component : CA IDENTITY SUITE (VIRTUAL APPLIANCE)

Cause

The group attributes are not being displayed on the "More Details" link due to how they are defined on the List Screen of the "Modify Active Directory Account" task's Groups tab in Identity Manager.  Basically, "More Details" will display the group attributes associated to the list screen, located in IM at: 

Roles and Tasks --> Modify Admin Tasks --> Search for "modify active directory account" --> Go to profiles --> edit the Groups relationship profile --> Browse the List Screen.

The reason you do not see the details in IP is due to how the product is coded:
 
1. If the attribute permission is Read-only (such as Group Name), then that attribute will not be displayed in More Details.

2. If the attribute Style is String (such as Container Name), then that attribute will not be displayed in More Details.

3. If the account does not have the "timeBoundMembershipsEnabled" flag, then the "Expiry Date" attribute will be ignored and thus not displayed in More Details.

Resolution

It appears that no, you cannot add more information other than the expiry date



Attachments