• [One Identity Manager 9.3] Is it possible to disable auto-submit for attestation decisions?

    Hi everyone,

    I'm working with One Identity Manager 9.3 and noticed that during an attestation campaign, as soon as an approver makes a decision (approve or deny), the action is automatically processed — meaning the item is submitted without needing to…

  • Manager unable to revoke subordinates' access in Web Portal – One Identity Manager 9.3

    Hello,

    We are using One Identity Manager 9.3 and noticed that, even with the manager role, a manager is unable to revoke access that has already been approved and assigned to their subordinates via the Web Portal.

    Current scenario:

    • The manager is able…
  • Problem in creating user on the portal, skipping ID(CentralAccount).

    Hello, I am Rafael, a technician at Cintech Brazil. We are working on a project with the company Sanepar and we have a problem related to user creation on the portal, specifically in CentralAccount. We are facing an issue with the creation of Keys (Identifier…

  • Error: The type initializer for 'SAP.Middleware.Connector.RfcConfigParameters' threw an exception

    I get this error while trying to test SAP R/3 Connection -> ( [System.Exception] The type initializer for 'SAP.Middleware.Connector.RfcConfigParameters' threw an exception.)

    I have

    One Identity Manager 9.3

    SAPNCo 3.1.6

    .NET version 9.0.301

    VS…

  • How to enable custom theme branding in Angular portal using oneim-api-server (v9.2)

    Hello,

    I am currently working on customizing the Angular end-user portal of One Identity Manager, using the official oneim-api-server Docker image, version 9.2, deployed on Kubernetes.

    I would like to enable the use of custom themes located under:
    /var…

  • Web Portal unusable after login

    Hi everyone,

    I'm currently testing the API Server / Web Portal (oneidentity/oneim-api:9.2) deployed in Kubernetes, and I’m encountering a critical issue.


    The App Server is deployed and reachable (tested separately).

    The API Server has 2 replicas…

  • App Server Error – /appserver/update/allowed not found (Kubernetes deployment, version 9.2)

    Hello,

    I'm currently deploying One Identity Manager 9.2 in a Kubernetes environment, using the official Docker images:

    • oneidentity/oneim-appserver:9.2

    • oneidentity/oneim-api:9.2

    Context

    • I deployed the App Server with the appropriate environment…

  • Question about custom target systems and account tables

    Hi everyone,

    I'm working on a custom target system, and I noticed there's a table called UNSAccountB, but it doesn't follow the structure I need for my use case.

    Is it considered a good practice to extend the UNSAccountB table to meet custom…

  • Implementing Random Delay in Orchestrated Processes to Prevent API Overload

    Hi everyone,

    I'm working with an Orchestrated Process that calls an external API. Currently, all requests hit the endpoint simultaneously, causing it to return a 500 Internal Server Error due to overload. I'm seeing errors like this in the logs:…

  • Data Importer - Multi-Valued template

    Hello Experts,

    I have a table I need to pull data from and it has person records in it with them associated to multiple entries.

    I'm looking to create a multi-valued template to get them populated. Is there a way from data importer to populate all the…

  • UCIgroup3 table in UCI Connector is not getting update from SCIM Connector.

    Hello,

    I am trying to integrate Salesforce with Identity Manager using SCIM Connector. We are using 9.0 version. I created 2 sync projects:

    1. using SCIM Connector 

    2. using UCI connector to load data in CSM Tables

    The permission set groups are in UCIgroup3…

  • How to synchronize existing One Identity Manager password to AD during account creation?

    Hi everyone,

    I have a scenario in One Identity Manager where a user already exists in the One Identity environment with a defined and valid password. However, this user does not yet exist in Active Directory.

    When I assign an Account Definition to trigger…

  • Cannot Connect to database because a system update is running.

    Hello Guys,

    I have a customer environment and it was working fine, then suddenly when I try to open any of the admin tools, it keeps telling me "Cannot connect to database because a system update is running".

    It has been into this state now…

  • How to connect to Peoplesoft?

    Hi all,

     

    I’m looking for a way to connect One Identity Manager 9.3 to PeopleSoft application. Due to not have an original connector, with best practice is recommended for: using psjoa.jar, directly to database or other?

     

    Thanks

  • custom API Integration in angular portal

    We are using the Version 9.2 of one idenity and I have created the new page for contracts, and the API is also ready. I would like to integrate the API into the frontend. I typically handle API integration using the HttpClient in a service file. However…

  • Exchange field ForwardingSmtpAddress Sync and Lifecycle Management Options?

    We have a requirement to populate and manage the lifecycle (provision/sync/update/delete) of field ForwardingSmtpAddress. This is a different field than 'ForwardingAddress'.

    It's a valid field on the mailbox but I do not see it in the Sync Editor…

  • Process information - Role Based permissions

    Hello Experts,

    Can anyone point me to how to grant permissions to view Process Information to Role-Based Active Directory user? 

    Is this only something a system user can view?

    Thank you,

    Lu

  • Identity Audit - SoD for multiple roles

    Hi, 

    i got the challenge, that we´re trying to implement a SoD-model where the identity inherits a SoD-tag (extended attribute) from it´s department.

    Now every systemrole we use also has a SoD-tag (extended attribute) assigned. I now need a…

  • Select with distinct in api collection

    I am trying to load a collection using IEntitySource.GetCollection method. I need to have distinct values in this collection so I am trying to use Distinct() method after loading the collection. However, the next method should use an IEntityCollection…

  • One Identity and Active Roles connector slow

    Hello Experts,

    I'm having issues with two environments moving from Native AD connector to ARS connector. I would imagine the initial sync should take longer with it having to proxy through and the additional virtual attributes created with the ARS schema…

  • INSERT Event Trigger Not Firing When Inserting via Script

    Hi everyone,

    Has anyone managed event triggers following an insert operation via script into a table?
    The issue is that when inserting an object into any table through a script, the INSERT event is not triggered. This happens because the operation is done…

  • Angular Web Not Showing Attestation and Business Role


    Hi all,

    I'm using the new angular web portal on the 9.2 version of One Identity Manager. I followed all the steps in the given link “support.oneidentity.com/.../3. Firstly, I downloaded the project from GitHub and then customized the project and built…

  • Web Portal How to change Product Name?

    Hi all,

    I cannot change the name of the product. I found how to change the logo from the admin portal, but I am unable to change the Productname. Could you assist me with this?

    Thank you,


  • Permisson to revoke account definition

    Hi everyone,

    we want to enable a role based permisson group to revoke the account definition of an ADs Account. 
    We already tried to assign the task permission to the permisson group but it didnt work. (1. User Interface -> 2. Task definitions -> 3. RevokeAccountDef…

  • ADS_ADSDomain_Maintain_OtherSID frozen "Write permission denied for value Canonical Name"

    Hi all,

    We installed an OIM environment with multiple AD-Domains.

    three of these Domains are connected using an AppServer for SQL Connection and one is configured to connect to the Database directly.

    The sync with the "local" domain (direct Database…