• Importing a transport package from a lower OneIM version (9.2.2) to a higher OneIM version (9.3.1)

    Hi everyone.

    We have a peculiar case that we found ourselves in and I'm turning to you for advice.

    Our customer has 4 environments with following versions:

    - Development (version 9.3.1)
    - Quality assurance (version 9.2.2)
    - Staging (version 9.2.2)

  • MFA with RSTS

    Hi,

    I am using IDM version 10.0.

    I configured SSO using One Identity RSTS, and it is working correctly. However, when I try to configure MFA via RADIUS, I get the following error:

    "An error occurred while testing the settings: Exception has been thrown…

  • Unable to fetch Future dated TEMP HIRES


    We are trying to synchronize Temporary employees from Successfactor via starling connector. We are unable to get Temp Hires with Hire Date as Future date. We are getting Temp Hires only if hire date is the current day. We have already enabled configuration…

  • Password reset portal

    Hi,

    is there a way in the Password Reset Portal of the API Server to make it so that users only see certain accounts on which they can perform a reset?

    For example, I would like them to be able to reset only the Active Directory account password and not…

  • Active directory connection issue

    Hello,

    I am using One Identity Manager 10.0. The job service runs on a server joined to domain X. I am configuring, in the Sync Editor, the connector to AD for domain Y, but I get the error 'The specified domain does not exist or cannot be contacted'…

  • WebDesigner – YubiKey Integration for Request Signing

    Hello,
    I’m reaching out to get your input on a client requirement related to WebDesigner.
    We currently have a client request on which we would greatly appreciate your input. The client is using the WebDesigner portal and would like to implement…
  • How to add a "Delete" method in my Custom API Call with parameter

    Hi everyone!

    I created a new custom API to get some information and I would like to have also a Delete method.

    I realized that if I customize a standard API Call (for example from Table ShoppingCartPattern -> Class CartPatterAdminApi, the function EnableDelete…

  • GUID in the primary key has an invalid format

    We automated the creation of the Teams team via SQL. Now, it’s asking for a UID so it can insert into the database, so we just used a randomizer script. We ran a consistency check, and it’s showing an error that the GUID in the primary key has an invalid…

  • Authenticating to OneIdentity REST api with AD User

    Hello everyone,

    We want to use the API with an Active Directory user. We have defined several application roles for a sample user. Which application roles are mandatory? We are using it as shown below, but we haven't been able to overcome the error.…

  • System User Logs

    Hi, where can I find the logs for deleted system users (admins)? Thanks in advance!

  • Database installed with Windows Authentication – User deleted – Encrypted DB – Can we switch to SQL authentication for upgrades?

    Hello everyone,


    I am currently facing an issue in a One Identity Manager environment and would appreciate guidance from the community.

    Current Situation
    The One Identity Manager database was originally installed using Windows Authentication.
    The installation…

  • Database compilation stuck

    Hello,

    We are using One Identity Manager version 10.0.
    We restored the database and then tried to enable it using the “Enable a restored database” option from the Configuration Wizard.

    During the system compilation, the process gets stuck in…

  • Handling Secondary Mailboxes for Cross‑Department Employees

    Hello everyone,
    I have a rather functional question about a use case – less of a technical one.
    In our company, internal employees are transferred from the HR system to OIM, where they are created as primary identities. Depending on the business unit…

  • I Installed GraphAPI as SMTP Server in OneIdentityManager 9.3.1. I Tested the connection via PowerShell Modul and it works, after installing PowerShell Modul "Microsoft.Graph". Then I've done all the steps descriped in the user manual. At the

    I Installed GraphAPI as SMTP Server in OneIdentityManager 9.3.1. I Tested the connection via PowerShell Modul and it works, after installing PowerShell Modul "Microsoft.Graph". Then I've done all the steps descriped in the user manual. At the End I get…

  • OIM does not provision on Active Directory

    Hello everyone,

    I am encountering a problem in One Identity Manager (OIM) 9.3.1 in the production environment: on rare occasions, OIM creates the identity on the Person, creates the row on the LDAPAccount table, but does not provision the account or group…

  • CPU recommendation in SystemReport_Main Database 1IM 9.2

    Hello everyone, I hope you are all doing well.

    I have a question regarding the SystemReport_Main Database report. I recently extracted this report natively using the One Identity Manager 9.2 tool, and I came across a scenario that raised some questions…

  • custom theme is not reflecting in V9.2

    Hello I'm using 9.2 version and I'm trying to add a custom theme to my Angular Web Portal, I followed all the instructions in the readme, for some reason the corners of the EuiMastHead are kept in the original color and when trying to change the theme…

  • Clarification on Required Network Communication Between One Identity Manager Components

    We are currently validating the network and security requirements for a One Identity Manager implementation deployed in a highly segmented environment.

    In our scenario, all main components are deployed in separate VLANs, and some of them are located in…

  • OIM : SAP GRC Access Control - Provisioning SAP Application

    Hi everyone,

    Has anyone here implemented a connector in One Identity Manager to provision SAP applications through the SAP GRC Access Control module using web service calls?

    In particular, I am looking at using the SAP GRC Access Control web services…

  • How to Authenticate to the One Identity Application Server Using an Access Token Issued by OneLogin

    Hello everyone,

    I am trying to integrate OneLogin as an external Identity Provider for authentication against the One Identity Application Server, but I am struggling to find the correct approach.
    The scenario involves an external application that authenticates…

  • Request for Guidance on Syslog Configuration for SIEM Integration

    Hello,

    I need assistance with configuring syslog forwarding to Splunk from One Identity Manager Version: 9.2.

    We are currently facing an issue where logs are not being received in Splunk, and we would like to better understand the correct configuration…

  • Password History Validation Issue with QBMPwdHistory Hash Comparison

    Hi All,


     One of our customers requires that, when setting a user password, the system checks the last 12 previously used passwords and prevents saving the new password if it matches any of them.

    During our analysis, we observed that the password history…

  • Does one identity manager has an option to send a one time link?

    I am working on one scenario where I need to send out a unique link per contigent identity to the contigent worker mobile number.

    This link should have one identity form attributes such as passport no, expiry etc. Idea is that the contigent worker will…

  • Logged-in users cannot update their own Primary Location in Web Portal profile despite configuration and permissions

    We require that a specific group of five users be able to update their own Primary Location in their Main Data via the Web Portal profile (logged-in user profile settings).

    These users regularly move between offices as part of their job responsibilities…

  • Usage of decisiontype values in table pwodecisionhistory

    Hi all,
    I would like to understand when and how each decisiontype value is used.
    For example, I’ve seen that the value "query" is stored when someone raises an inquiry on a request.

    Could you please explain (or point me to documentation…