Skip to Content
avatar image
Former Member

LDAP integration

Hello all,

I need LDAP only to bring User Details to the Access Request screen automatically.

I´m configuring GRC AC to communicate with LDAP. I´m using the guide from note bellow as reference:

1584110 - GRC Access Controls 10 - How to configure LDAP connectors

I can´t configure the "Assign group field mapping" because the option for fields  "AC FIeld Name", "System Fld Name", "Table Name" and "Subtype" are not available. Please check the print bellow for "Connector Action 3":

For "Connector Action 4" I can select the "AC Field Name" but not the others:

Someone knows why this is happening? I´m at the right way?

Thanks in advance,

Pedro

LDAP1.jpg (67.4 kB)
LDAP2.jpg (70.0 kB)
Add comment
10|10000 characters needed characters exceeded

  • Get RSS Feed

1 Answer

  • Best Answer
    Sep 19, 2014 at 05:02 AM

    Hello,

    AC Field Name is the field of GRC System and System field is of Target system can be LDAP or portal etc.

    Like email is field is GRC System but the same may be stored in other system as mail.

    if you use LDAP.

    USERID in sapsystem is but user id are stored in LDAP as SAMACCOUNTNAME.

    all your details are stored in security account manager database in LDAP .

    when you map field you need to do mapping for above example

    ACfiled name is USERID and System field value in SAMACCOUNTNAME

    1 more example is

    user first name is Firstname is GRC system id  but in LDAP its given name

    so mapping is FIRSTNAME in AC field value and mapping to given name in System field value

    like what field you want to get imported and which attribute to be read to update that field.

    the same you can understand about the attribute in LDAP mapping .

    Regards,

    Prasant

    Add comment
    10|10000 characters needed characters exceeded