Access Control issue in Remote AD
Versions / Builds Affected
Version 20, 20.1 - Builds 20151118, 20160420
Status
Open
TT / JIRAID
GFIME-898
How to Identify
In Access Control when settings user "testGFI" with Quarantine Access rights, this is ignored and user gets his Personal Quarantine view. AD Query is successful: 2016-06-16,11:12:14,492,1,"#00003350","#00000236","info ","SID","GetADItems getting directory entry count..." 2016-06-16,11:12:14,492,1,"#00003350","#00000236","info ","SID","GetDirectoryEntries: Remote AD is Direct DC bind" 2016-06-16,11:12:14,492,1,"#00003350","#00000236","info ","SID","GetDirectoryEntries entry: LDAP://twm.ch:389" 2016-06-16,11:12:14,492,1,"#00003350","#00000236","info ","SID","GetADItems getting directory entry count... 1" 2016-06-16,11:12:14,492,1,"#00003350","#00000236","info ","SID","GetADItems Directory path: LDAP://twm.ch:389" 2016-06-16,11:12:14,492,1,"#00003350","#00000236","info ","SID","GetADItems query: (&(&(sAMAccountName=testgfi)))" 2016-06-16,11:12:14,523,1,"#00003350","#00000236","info ","SID","GetADItems Query duration: 00:00:00.0315101" 2016-06-16,11:12:14,523,1,"#00003350","#00000236","info ","SID","GetADItems returning 1 items" This might appear in Attendant logs: 2016-06-16,11:24:44,650,1,"#00003350","#00000234","info ","UserManagement","Account Locked and Can not delete" In Attendant/Data/UserManagement.xml user is inserted correctly: S-1-5-21-1844237615-861567501-1417001333-12178 QuarAdmin twm.ch\testgfi false false
Workaround / Fix Details
None at the moment
Required Actions
- Update case subject to: KI - Access Control issue in Remote AD - Assign case to PSG
Priyanka Bhotika
Comments