Target Account Discovery - Netbios Name on AD User Object Forces Capital Letters on Username

book

Article ID: 209429

calendar_today

Updated On:

Products

CA Privileged Access Manager (PAM)

Issue/Introduction

 PAM Admin manually configured multiple AD accounts in the past in They now want to move to pulling in target accounts from Active Directory using account discovery. The discovery finds the expected user accounts, but many of them do not match the existing target account. It turns out that all target accounts had been entered with lower case account name in PAM, but many have sAMAccountName in capital letters defined in AD. PAM does not match these entries, even though sAMAccountName is case insensitive in Active Directory.

Environment

Release : 3.3.x, 3.4.1 and 3.4.2

Component : PRIVILEGED ACCESS MANAGEMENT

Resolution

PAM 3.4.3