Hi Adolfo,
Yes this is possible via etautil to explore a specific endpoint account which is not yet into the provisioning directory.
I had no SAP endpoint under the hand this morning, So I wrote a sample for Lotus Notes endpoint:
etautil -d im -u superadmin -p secret -DYN explore
'eTLNDOrganizationalUnitName=support,eTLNDOrganizationName=caorg,eTLNDDirectoryName=lnd901fp5,
eTNamespaceName=Lotus Domino Server' eTLNDAccount eTLNDAccountName='John Do' list ExploreUpdateEtrust
:ETA_S_0023<EAC>, Lotus Domino Account 'John Do' exploration successful: (objects added: 1, deleted: 0, updated: 0, unchanged: 0, failures: 0)
:ETA_I_1336, ETAUTIL command completed Wed Sep 19 09:39:54 2018
You should not get obstacles to do the same for a SAP account.
The account container DN should be something as:
'eTSAPAccountContainerName=Accounts,eTSAPDirectoryName=YourEndpointName,eTNamespaceName=SAP R3'
Use the Provisioning Manager UI help to get info.
By instance for the list options;
At least one of the following keywords is required:
ExploreUpdateEtrust
Retrieves all managed objects.
ExploreCorrelateUsers
Correlates accounts with existing global users.
ExploreCreateUsers
Creates global users as needed during the correlation.
ExploreUpdateUsers
Sets/refreshes the global user attributes using account attribute values.
Note: Combining explore, correlate and update actions into a single request is not supported.
Regards,
Philippe.