Disabling MFA segment lookup in CA Identity Manager
search cancel

Disabling MFA segment lookup in CA Identity Manager

book

Article ID: 270887

calendar_today

Updated On:

Products

CA Identity Manager

Issue/Introduction

How to disable the MFA segment lookup.The LDAP issues general queries for acid data including the user's MFA segment which requires TSS ADMIN(xxxxxx) DATA(MFA) privileges.

Some customers request disabling the MFA segment look-up since they don't use the MFA segment.

 

Environment

Release : 14.3, 14.4 

Cause

The LDAP support wrote fix LT10161 which gives users the option to disable the MFA segment from being returned for a general query.

LT10161 works perfectly and disables the MFA segment from being returned.

However...IDM is explicitly extracting the MFA segment in their code.

Resolution

This is an Enhancement request and the requested feature is expected to be included in IDM 15.0 release.

Additional Information

Reference Defect: DE568939