Start a conversation

Access Control issue in Remote AD

Versions / Builds Affected

Version 20, 20.1 - Builds 20151118, 20160420

Status

Open

TT / JIRAID

GFIME-898

How to Identify

In Access Control when settings user "testGFI" with Quarantine Access rights, this is ignored and user gets his Personal Quarantine view. AD Query is successful: 2016-06-16,11:12:14,492,1,"#00003350","#00000236","info ","SID","GetADItems getting directory entry count..." 2016-06-16,11:12:14,492,1,"#00003350","#00000236","info ","SID","GetDirectoryEntries: Remote AD is Direct DC bind" 2016-06-16,11:12:14,492,1,"#00003350","#00000236","info ","SID","GetDirectoryEntries entry: LDAP://twm.ch:389" 2016-06-16,11:12:14,492,1,"#00003350","#00000236","info ","SID","GetADItems getting directory entry count... 1" 2016-06-16,11:12:14,492,1,"#00003350","#00000236","info ","SID","GetADItems Directory path: LDAP://twm.ch:389" 2016-06-16,11:12:14,492,1,"#00003350","#00000236","info ","SID","GetADItems query: (&(&(sAMAccountName=testgfi)))" 2016-06-16,11:12:14,523,1,"#00003350","#00000236","info ","SID","GetADItems Query duration: 00:00:00.0315101" 2016-06-16,11:12:14,523,1,"#00003350","#00000236","info ","SID","GetADItems returning 1 items" This might appear in Attendant logs: 2016-06-16,11:24:44,650,1,"#00003350","#00000234","info ","UserManagement","Account Locked and Can not delete" In Attendant/Data/UserManagement.xml user is inserted correctly: S-1-5-21-1844237615-861567501-1417001333-12178 QuarAdmin twm.ch\testgfi false false

Workaround / Fix Details

None at the moment

Required Actions

- Update case subject to: KI - Access Control issue in Remote AD - Assign case to PSG
Choose files or drag and drop files
Was this article helpful?
Yes
No
  1. Priyanka Bhotika

  2. Posted

Comments