oblocktime not getting cleared when 'unlocking' user
Issue:
Lockouts set the oblockouttime in the OID user entry. Unlocking them through OIM does not remove this attribute.
Context:
Recently applied the patches, updated the metadata and OID/OVD schema as specified in Oracle Support ID 1496808.1 to *fix* lockouts in OIM/OAM/OVD (with ldapsync) 11g.
Observations:
I can see the oblockedon attribute being added when user locks out. If I lock the user out via the option in OIM console, I can unlock (which removes this attribute) without a problem. This issue is when OAM sets the oblockedon *and* the oblockouttime attribute. The unlocking within OIM does not 'sync' back to the LDAP entry; I would assume there is an issue with ldapsync.
Lockouts set the oblockouttime in the OID user entry. Unlocking them through OIM does not remove this attribute.
Context:
Recently applied the patches, updated the metadata and OID/OVD schema as specified in Oracle Support ID 1496808.1 to *fix* lockouts in OIM/OAM/OVD (with ldapsync) 11g.
Observations:
I can see the oblockedon attribute being added when user locks out. If I lock the user out via the option in OIM console, I can unlock (which removes this attribute) without a problem. This issue is when OAM sets the oblockedon *and* the oblockouttime attribute. The unlocking within OIM does not 'sync' back to the LDAP entry; I would assume there is an issue with ldapsync.
0