ALERT: Some images may not load properly within the Knowledge Base Article. If you see a broken image, please right-click and select 'Open image in a new tab'. We apologize for this inconvenience.

LDAPSync Tool deactivate ARA Users if trying to add new ARA users within a Usergroup


Article ID: 87782


Updated On:


CA Automic Workload Automation - Automation Engine


Error Message :

The issue occurs under the following circumstances:

The Usergroup needs to be populated with existing Users.

With Automation Engine only environments, the issue does not occur.

When adding newly created Users to Usergroup with existing Users, the "old" Users were decoupled from the Usergroup and set to inactive in ARA environment.

Please see screenshots for better understanding:

Adding new Users to the Usergroup using LDAPSync....

<Please see attached file for image>

This causes the existing Users within the Usergroup to be removed:

<Please see attached file for image>


It was possible to manually set back the Users to the Usergroup, however, they are set to "inactive" in the ARA environment. 

NOTE: The inactivation of the users on ARA was not seen on the regular user list in ARA Environment, the user was displayed as active. only at ImportExportCli - Tool, it was seen that the User was set as Inactive.


Cause type:
Root Cause: LDAPSync causes the user disconnection of the existing users, and set them inactive on Automation Engine / ARA end


Release: WAASER99000-1.0-Automic Workload Automation-Services


 Update to a fix version listed below or a newer version if available.

Fix Status: Released

Fix Version(s):
Component(s): LDAPSync

LDAPSync 1.0.4 - Available

Additional Information

Workaround :
Set back the Users to Active and to the Usergroup manually.


1558692742877000087782_sktwi1f5rjvs16lte.png get_app
1558692740265000087782_sktwi1f5rjvs16ltd.png get_app