OAM allowing disabled accounts in OID to authenticate
We are using Access Manager 11g as our authentication mechanism with accounts stored in OID. When I set orclisenabled to DISABLED for a user, OAM still lets that user authenticate. Before I log an SR, has anyone seen this before? According to all documentation I can find, OAM should check the value of orclisenabled and if it is DISABLED, the user should not be allowed to authenticate.