Announcing the Saviynt Knowledge Exchange unifying the Saviynt forums, documentation, training,
and more in a single search tool across platforms. Read the announcement here.

Getting error while enabling account in AD

TheSaviyntBoy
Regular Contributor
Regular Contributor

Hi, 

I am getting the following error while enabling a disabled account on AD: 

Checking DN for CN=AD.Test17,OU=Saviynt_Dev_2,OU=Saviynt UAT,OU=OUName,DC=domain,DC=local. Error while searching for DN-Cannot invoke method equalsIgnoreCase() on null object Checking DN for CN=AD.Test171,OU=Saviynt_Dev_2,OU=Saviynt UAT,OU=OUName,DC=domain,DC=local. Checking DN for CN=AD.Test172,OU=Saviynt_Dev_2,OU=Saviynt UAT,OU=OUName,DC=domain,DC=local. Checking DN for CN=AD.Test173,OU=Saviynt_Dev_2,OU=Saviynt UAT,OU=OUName,DC=domain,DC=local. Checking DN for CN=AD.Test174,OU=Saviynt_Dev_2,OU=Saviynt UAT,OU=OUName,DC=domain,DC=local. Checking DN for CN=AD.Test175,OU=Saviynt_Dev_2,OU=Saviynt UAT,OU=OUName,DC=domain,DC=local. SAV-Error while enabling account,No account found using disable rules

The enableAccountJSON is: 

{
"USEDNFROMACCOUNT": "NO",
"DISABLEACCOUNTCHECKRULE": [
"CN=${user.username},OU=Saviynt_Dev_2,OU=Saviynt UAT,OU=OUName,DC=domain,DC=local",
"CN=${user.username}1,OU=Saviynt_Dev_2,OU=Saviynt UAT,OU=OUName,DC=domain,DC=local",
"CN=${user.username}2,OU=Saviynt_Dev_2,OU=Saviynt UAT,OU=OUName,DC=domain,DC=local",
"CN=${user.username}3,OU=Saviynt_Dev_2,OU=Saviynt UAT,OU=OUName,DC=domain,DC=local",
"CN=${user.username}4,OU=Saviynt_Dev_2,OU=Saviynt UAT,OU=OUName,DC=domain,DC=local",
"CN=${user.username}5,OU=Saviynt_Dev_2,OU=Saviynt UAT,OU=OUName,DC=domain,DC=local"
],
"ATTRIBUTESTOCHECK": {
"sAMAccountName": "${user.username}",
"sn": "${user.lastname}",
"givenName": "${user.firstname}"
},
"MOVEDN": "YES",
"ENABLEACCOUNTOU": "OU=Saviynt_Dev_1,OU=Saviynt UAT,OU=OUName,DC=domain,DC=local",
"AFTERMOVEACTIONS": {
"userAccountControl": "512"
},
"REMOVEGROUPS": "YES"
}

What can be going wrong? 

Thank you. 

1 REPLY 1

TheSaviyntBoy
Regular Contributor
Regular Contributor

The issue was solved from using the following JSON:

{
"USEDNFROMACCOUNT": "YES",
"MOVEDN": "YES",
"REMOVEGROUPS": "NO",
"ENABLEACCOUNTOU":"OU=Saviynt_Dev_1,OU=Saviynt UAT,OU=OUName,DC=Domain,DC=local",
"healthscopeUID": "${user.username}",
"AFTERMOVEACTIONS" : {
"userAccountControl": "512"}
}

Can someone please explain what is healthscopeUID, I am not able to find about it in docs.