Symantec IGA

  • 1.  Disable User in IDM on delete from AD LDS

    Posted Dec 17, 2018 01:44 AM

    Hello Everyone,

     

    We have created a custom AD LDS connector. We have a user termination scenario where, when the user get removed from AD LDS we want the user to be disabled in CA IDM. We run explore and correlate to remove user account from global user. We want the user to be disabled in CA IDM after that. I would like to know the best approach to do the same. Any suggestions would be welcome.

     

    Thanks

    Ankur Arora



  • 2.  Re: Disable User in IDM on delete from AD LDS
    Best Answer

    Posted Dec 26, 2018 12:55 PM

    You can try taking a look at the PX Policy Reverse Sync Policies. That might let you do what you want but I have not tried so I am not sure. One thing to keep in mind is that if you disable the IM user the application will also want to disable the provisioning user and remaining accounts that are associated to it.