Users integrated into CA Embedded Entitlements Manager (EEM) via LDAP/Active Directory groups for Autosys Workload Automation need to pull a list of users for SOX audit purposes. The EEM UI or standard export tools may not display or export these external users directly.
Product: Autosys Workload Automation AE / WCC
Component: CA Embedded Entitlements Manager (EEM)
Configuration: External User Store (LDAP/Active Directory)
When EEM is configured with an external LDAP user store, it does not store the users locally in its own database; they remain in the LDAP directory. Standard EEM export tools (like Safex or the Export Application option in the UI) are designed for internal user stores and application policies. Consequently, global users and groups from LDAP are not exported or listed because EEM acts as an authorization engine, not an LDAP browser.
To satisfy SOX audit requirements for integrated LDAP users, use the following methods:
Method 1: Export Application Policies
Auditors typically require proof of what users can do. You can export the application policies for both AutoSys (AE) and WCC.
Method 2: EEM Reporting Utility (ERU)
Use the ERU to provide an audit trail of user access.
Method 3: LDAP/AD Direct Export
Since the source of truth for the user identities is the external directory:
Code Fix: No code fix.
To speak with a customer representative or a Support Engineer see Contact Support. Scroll to the bottom of the page and click on the respective region.