Click HERE to see how Saviynt Intelligence is transforming the industry. |
07/10/2024 04:21 AM
Hi
To set-up ADSI Group Management i have done all required configurations as per Saviynt documentation. While verifying the UI for "Create ADSI Groups" i don't see any value populating in dropdown for "Application Name" which is a mandatory field. But the rest of the fields on UI have correct values as configured.
Am i missing anything here?
Please let me know if you require further inputs on my query.
Regards
Gaurav
Solved! Go to Solution.
07/10/2024 05:21 AM
@GauravJain Did you select the workflow in entitlement Type details page?
Ensure that there is a workflow selected for the groups created. Go to Admin > Security Systems > Endpoints > Entitlement Type > View Details icon. In the Entitlement Type Show page, select the workflow under Add Workflow
07/10/2024 05:25 AM
Yes, i have selected AutoApprovalWorkflow.
07/10/2024 05:41 AM
Also, when i am using "Manage Role" tiles to update an existing group, that time too "Application Name" is not populating. From where Saviynt pulls this information? as per tooltip its a container information under selected domain name so if domain names are populating correctly, why container information is not populating.
07/10/2024 05:58 AM
What all configs done mentioned all in 1 liner
07/10/2024 06:08 AM
All the configs mentioned on these links are done
Configuring Group Management (saviyntcloud.com)
Managing Active Directory Groups (saviyntcloud.com)
Managing ADSI Groups (saviyntcloud.com)
Regards
Gaurav
07/10/2024 09:30 AM
Did you added Entitlement Type under sav role - create home option ?
07/12/2024 02:18 AM
Yes, i have selected "ADSI Groups" there.
The problem i am facing is on the "Create ADSI Groups" screen which a user can access only when he/she is part of a sav role with these required features - Manage Roles : Create Role & Manage Roles : Update Role.
"Application Name" on Create ADSI Group screen gets pre-populated values already stored in Saviynt repository OR it makes an API call at runtime to pull this information? probably i could find something in logs if Saviynt triggers an API call at runtime.
07/12/2024 08:28 AM
Connection Configuration added under Endpoint ?
07/14/2024 11:30 PM
Yes.
{"conf":[{"ADDMEMBERTOENT":"TRUE"},{"ADDUSERTOENT":"TRUE"}]}
07/15/2024 01:09 AM
Make sure to select respective ADSI connection in AD Group Management Connection under Global Configurations--> Roles --> Management.
Add this if not and try once.
07/15/2024 01:39 AM
Hi @pmahalle - thanks for revert. i have made this configuration as well and retried but still facing issue with "Application Name" field on "Create ADSI Groups" screen.
From the below description, i am not sure when do we need this configuration? what is Enabler role? Secondly, is it also applicable for ADSI groups management?
Regards
Gaurav
08/12/2024 09:26 AM
Hi @GauravJain ,
Did you get any solution for this issue? Even we are facing the same.
08/13/2024 09:46 PM
You need to update "create.gsp" file for ADSI from "Settings->File Directory".
Add all the baseDN's for your groups in that file inside this function "populateAppName" for your respective domains. currently it displays data only for this domain "DC=saviyntlabs,DC=org".
08/14/2024 06:26 AM
Thank you @GauravJain, that worked successfully in our case too.