Trouble connecting and configuring a third-party LDAP Provider in VMware Identity Manager /vIDM
search cancel

Trouble connecting and configuring a third-party LDAP Provider in VMware Identity Manager /vIDM

book

Article ID: 397352

calendar_today

Updated On:

Products

VMware Aria Suite

Issue/Introduction

Importing Groups is fine, but users will not be imported, the VMware Identity Manager logs /opt/vmware/horizon/workspace/logs/connector.log  the LDAP query seems to be good:

xxxx-xx-xx INFO  (resourceSyncTaskExecutor-4) [;;;] com.vmware.horizon.directory.ldap.LdapConnector - Starting LDAP Query: Host: ldaps://xxxxx.xxxx.xxxxx:636 PageSize - 1000 SearchDN - dn=o=xxxx SearchFilter - (&(|(objectClass=groupOfUniqueNames)(objectClass=xxxxxxxx))(|(uid=uid=xxxxx,ou=people,o=group)(uid=uid=xxxxx,ou=people,o=group)(uid=uid=xxxxx,ou=people,o=group)(uid=uid=xxxxx,ou=people,o=group)(uid=uid=xxxxx,ou=people,o=group)(uid=uid=xxxxx,ou=people,o=group)

 

Syncing groups in VMware Identity Manager shows error: Failed Sync Action Exception Info: CREATE - No user found for the specified Identifier

Environment

 VMware Identity Manager 3.3.7.

Cause

This is a configuration issue, not VMware Identity Manager.

Resolution

In VMware Identity Manager, via Identity & Access Management >> Directory Name >> Settings >> LDAP configuration correct the configuration in directory settings on the VIDM side. 

Change the "User membership mapping filter" & "ObjectUuid from the value entryUUID to "EntryDN", which defines how to identify users who belong to a specific group. This is crucial for applications that use LDAP to manage user access and permissions, allowing them to determine which users should be granted access based on their group memberships.