Hello,
OAM connecting to AD as its identity store -> when a user in "inactive" state in AD tries to login to an OAM protected app, by supplying valid credentials, they should not be authenticated.
Is it possible to include AD attribute "userAccountControl" in the identity store config? Or else how about in any step of Kerberos Plugin that OAM initiates for authentication?
Your response will be appreciated!!!