Skip to Content
avatar image
Former Member

Ignoring disabled user in LDAP with Portal 7.5

Hi

We need our SAP Portal UME, that is connected to the LDAP, to ignore users that are disabled on our LDAP system.

Is there a parameter i can set to make the UME ignore all the disabled users?

Thanks!

Yoav

Add comment
10|10000 characters needed characters exceeded

  • Get RSS Feed

4 Answers

  • Best Answer
    avatar image
    Former Member
    Apr 09 at 12:58 PM

    Hi.

    We solved the issue by editing the dataSourceConfiguration_ads_readonly_db_with_krb5......xml and adding at the end of it, under <privateSection>, the following line which filters the disabled users:

    <privateSection>

    <ume.ldap.negative_user_filter>useraccountcontrol=[514,546,66050,66082,262658,262690,328194,328226];objectclass=[computer]</ume.ldap.negative_user_filter>

    The numbers are LDAP codes that by adding them you filter out the disabled users.

    Thanks!

    Yoav

    Add comment
    10|10000 characters needed characters exceeded

  • Jun 18 at 06:59 PM

    Dear Yoav,

    Hope you are doing good.

    This information is also documented in SAP NOTE ##2150353 - AS Java User Management Engine LDAP Negative and Positive User Filter.

    Kind Regards, Hemanth Kumar |
    SAP Product Support
    *****************************************************************************

    Add comment
    10|10000 characters needed characters exceeded

  • Mar 26 at 08:52 PM

    I could not find such flag. Deleting the users would not be an option for you?

    Add comment
    10|10000 characters needed characters exceeded

  • Mar 27 at 07:36 AM

    Hi Yoav,

    Yep, there is no option to filter out those undesired users from LDAP server. You might need to remove those user directly from LDAP.

    You could refer to below help url for more information: https://help.sap.com/saphelp_nw70ehp1/helpdata/en/48/d1d13f7fb44c21e10000000a1550b0/frameset.htm

    Regards,
    Herman

    Add comment
    10|10000 characters needed characters exceeded