We try to use Active Directory property to grant temporary a user to an AD, it is removed from AD but still in unab
Release : 14.1
We try to use Active Directoyr property to grant temporarly a user to an AD group like :
=> when right is grant => no problem, UNAB get it.
But after the end of TTL
=> we can the this is no more granted in Active Directory
but it 's always get by UNAB on UNIX server
I even try to remove UNAB database *.db on my unix server to be sure to be up to date on the server :
=> we can see my user have always T1_DV_GG_CAACCTRL_GA_LXDV0010PV group
whereas if I try to make an ldap search, I don't see it.
How to explain this ?
How UNAB get all groups of a user ?
Could you provide the ldap query use by unab to get this information ?
This is a Microsoft bug, more than creating a fix in UNAB we will wait for Microsoft to fix it.
Microsoft will have to fix this behaviour.