Account Template Linking Issues after Migration
search cancel

Account Template Linking Issues after Migration

book

Article ID: 72468

calendar_today

Updated On:

Products

CA Identity Manager CA Identity Suite

Issue/Introduction

After migrating configurations from a previous Provisioning Server (PS) environment, performing an "Explore and Correlate" (E&C) process may result in accounts failing to link correctly to their assigned Account Templates.

This issue occurs when accounts are successfully recreated in the Provisioning Store but lack the necessary attribute mapping to establish the template association.

Environment

Identity Manager 14.x & 15

Cause

During the Explore and Correlate process, the account is recreated in the Provisioning Store; however, the eTPolicyDN attribute—which governs the relationship between the Account and the Template—is not automatically populated. This attribute is a multi-valued field that must contain the template names to link them to the account.

Resolution

To restore the link between your accounts and their templates, choose one of the following methods:

  1. Global User Re-synchronization:

    • Trigger a re-synchronization of the affected Global Users with their assigned Provisioning Roles.
    • This process forces the Provisioning Server to re-evaluate the account attributes, which should populate the eTPolicyDN field correctly for all associated accounts.
  2. Manual Data Import:

    • Alternatively, import the missing eTPolicyDN values directly into the CA Directory.
    • Ensure the values match the specific Account Template names previously associated with the account.

Here is the design showing which links are inclusions and which ones are managed by attributes.
(Global User) --- [eTRoleDN] ---> (Role)      --- [Inclusion]    ---> (Template) --- [inclusion] ---> (Endpoint)
(Global User) --- [inclusion] ---> (Account) --- [eTPolicyDN] ---> (Template)

Additional Information

To speak with a customer representative or a Support Engineer see Contact Support. Scroll to the bottom of the page and click on your respective region.