on 04-18-2012 11:28 AM
Hello,
In order to manage SSO with SPNEGO, we created a custom attribute in SAP EP and want to use SAP IDM to provision it.
I created a custom attribute in IDM, linked it to MX_PERSON but am still facing 2 issues to make it work:
Thank you very much for your precious help.
Very best regards,
Estelle
It's been a while since I created a custom attribute on portal and provisioned to it, but I remember <namespace>:<attribute> being the syntax to write to it. Make sure your IdM user has the authority to write to it. Not sure why that's not working for you.
As far as your 2nd question goes, it depends what version your're running. In IdM 7.2 this is controlled by the system privileges (PRIV:SYSTEM*). Check on MX_PRIV_MODIFY_POLICY in help. That might lead you to the right answer.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hello,
Thank you. I solved the first part of the issue but the second one remains.
I am working with SAP IDM 7.2.
Indeed my MX_PRIV_MODIFY_POLICY is set to 0 but it still does not work.
Do you have any clue on what could be the blocking problem?
Thank you in advance for your help.
Best regards,
Estelle
In the Identity Center MMC -> Go to your ID Store -> Go to Schema -> Privileges -> Filter on "PRIV:SYSTEM -> on each system privilege go to the Tasks tab -> on the tasks tab you will see all the attributes that will trigger a modify action. They have a checkbox next to them.
If a user has this given system privilege, a modify the users given attribute will trigger a modify if the box is checked.
Hope that clears things up.
User | Count |
---|---|
93 | |
10 | |
10 | |
9 | |
9 | |
7 | |
6 | |
5 | |
5 | |
4 |
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.