Recovering Missing User Store Records After Accidental Deletion - Identity Manager
search cancel

Recovering Missing User Store Records After Accidental Deletion - Identity Manager

book

Article ID: 234570

calendar_today

Updated On:

Products

CA Identity Suite CA Identity Manager

Issue/Introduction

This article details the recovery procedures for restoring users when they are accidentally deleted from the Identity Manager User Store but remain present in the Provisioning Store.

Environment

Identity Manager 14.5

Cause

The deletion of an Organization unit in Identity Manager removes associated User Store records. The Provisioning Store accounts remain as "orphaned" objects, as the Provisioning Store does not contain the full set of attributes (e.g., PX Policy activity, organizational membership) required to reconstruct the User Store.

Resolution

  1. Recommended Recovery Procedure: Restore the User Store from the last full backup or snapshot. This is the only method to ensure the recovery of all user attributes, relationships, and historical metadata.

  2. Manual Realignment (Fallback Method): If a valid backup is unavailable, use the following manual realignment procedure:

    • Create the User: Create a new user in the User Store using the exact login credentials of the original user.
    • Synchronize: Initiate a synchronization between the new User Store record and the existing account in the Provisioning Store to re-establish the link.
  3. Important Caution: Re-creating a user is not functionally identical to restoring the original record. The newly created user will lack historical data, potentially impacting workflows such as PX Policy activity or attribute-based reporting. Perform a thorough audit of the user's permissions and activity logs after realignment.

Additional Information

To speak with a customer representative or a Support Engineer see Contact Support. Scroll to the bottom of the page and click on your respective region.