cancel
Showing results for 
Search instead for 
Did you mean: 

Provisioning does not proceed for 1 SAP repository

former_member91276
Active Participant
0 Kudos

Hi All,

IDM 7.2 SP 8

Role assignment does not take place for 1 repository, but is successful for the other.

The same workflow is used. But after COMMIT APPROVAL, ordered task group 'provisioning' is triggered for 1rep, but not for the other.

Could you please suggest on the solution

Regards

Plaban

Accepted Solutions (0)

Answers (2)

Answers (2)

normann
Advisor
Advisor

Hi Plaban,

what is the status of the assignment? Is it still pending or OK?

If OK: You are missing the assignment tasks on the repository OR on your privileges the assignment tasks are disabled (MX_ADD_MEMBER_TASK=-1). This happens if the update or initial load job gets interrupted somewhere.

If Pending: Check out the provisioning monitor in Admin UI. Probably a task is in state error or just missing a dispacher assignment.

Regards

Norman

former_member91276
Active Participant
0 Kudos

Hi Norman,

Status is OK for the role, while it shows 'pending' for the underlying privileges

Assignment task is set-up for the repository. But could you suggest, in which view/table can i see the attribute MX_ADD_MEMBER_TASK=-1. I searched all *valink*/*ext* views. But could not find this attribute.

Regards

Plaban

normann
Advisor
Advisor
0 Kudos

Hi Plaban,

this would be in idmv_value_basic (select * from idmv_value_basic where mskey = ... and attrname like 'MX_%_TASK'). But if you cannot find it it is a good sign: If it is not set on the privilege it is inherited from the repository.

Can you check what C Kumar suggested, whether user has account privilege (PRIV:<repName>:ONLY) in state OK.

Regards

Norman

Ckumar
Contributor
0 Kudos

Hello Plaban,

As you commented - "Status is OK for the role, while it shows 'pending' for the underlying privileges".

I will suggest checking the corresponding account privilege status. Generally, Repository privileges go to the pending state when Account privilege is not assigned to the user correctly (status - failed or pending) or the user doesn't have it.

Regards,

C Kumar

former_member91276
Active Participant
0 Kudos

Hi Kumar,

The user is being provisioned the first time. So he doesn't have the account privilege.

Regards

Plaban

Ckumar
Contributor
0 Kudos

Hello Plaban,

To provision user to any target application, account privilege is necessary so if user doesn't have account privilege then assign it to user from UI or from job.

Regards,

C Kumar

former_member91276
Active Participant

Hi Kumar,

The problem got auto solved, and I don't know the reason why.

But thanks a lot for your support

Regards

Plaban