Skip to Main Content

Security Software

Announcement

For appeals, questions and feedback about Oracle Forums, please email oracle-forums-moderators_us@oracle.com. Technical questions should be asked in the appropriate category. Thank you!

Issue with Active Directory User Target Delete Recon in Production environment

KhanhJun 9 2017 — edited Jun 15 2017

Hello,

I have an issue with the Active Directory User Target Delete Recon in the Production environment (only in this environment--The same ST runs fine in the Dev environment).

The behavior I observed in prod is as follows:

I used the access policy to create an AD account for a test user.  The account showed as Provisioned in OIM.  I logged into the AD target system and deleted the account using AD users and computers Admin console.

I ran the AD User Target Delete Recon ST and it showed a Success status.  The AD account in OIM still showed as Provisioned.  The reconciliation event showed a failed event with the following data:

Event ID 1058368
Current Status Data Validation Failed

Entity Account

Type Delete

Key Fields 47b8ecc8d40bab47ab505556a5d6a637,4

Action Date Action Date not specified

Date and Time June 9, 2017 1:44:32 PM MDT

Job ID 902679

Resource Name AD User

Profile Name AD User

Modifier ID Internal User

Retry Count 0

The error was:

Required Data Missing in table - RA_ADUSERE469E5C8 check required column values: RA_UNIQUEID575B37CA, RA_ITRESOURCENAME70C9F928, RA_USERPRINCIPALNAME86B6DC52

Have you run into the same issue (I am on OIM 11gr2ps1, BP09).  How can this be fixed?

Thanks

Khanh

This post has been answered by Philipp Grigoryev on Jun 13 2017
Jump to Answer
Comments
Locked Post
New comments cannot be posted to this locked post.
Post Details
Locked on Jul 13 2017
Added on Jun 9 2017
17 comments
746 views