Skip to Content

GRC 10.1 - Active Directory Groups Provisioning - Error in Provisioning

Hello,

We currently have LDAP integrated to out GRC 10.1 SP 19 system, we use LDAP as our data source and have no issues so far with this connection. We are now trying to assign AD groups to end users as part of our next steps of this integration, we were able to import the AD groups as roles into GRC successfully and the repository sync also ran successfully. The role search of the AD groups shows the role as existing in the system.

However when an access request is submitted for the end user to be added to the corresponding AD group, the request is being successfully submitted and approved. The system is unable to provision users to the AD group.

In SLG1 I get following message and audit log for request says: "Auto provisioning failed; Cannot connect to LDAP system". The LDAP Service ID has the required authorization for assigning users to the AD group.

I have reviewed the below discussion on SDN but did not find any resolution, other than a few suggestions that were copied from SAP notes.

https://archive.sap.com/discussions/thread/3765410

Can anyone let me know if they have faced similar issue? If resolved, what steps were taken to resolve this issue.

Thanks in advance

capture.png (21.3 kB)
Add comment
10|10000 characters needed characters exceeded

  • Follow
  • Get RSS Feed

1 Answer

  • Jul 12, 2018 at 04:42 PM

    Narasimha,

    Check this not if its applicable.

    2490936 - Issue with LDAP SYNC

    Thanks

    Ramesh

    Add comment
    10|10000 characters needed characters exceeded