Writing to an AD Attribute as a User via OVD 11g Fails with: LDAP: error code 50 problem 4003 (INSUFF_ACCESS_RIGHTS)

(Doc ID 1925863.1)

Last updated on MARCH 08, 2017

Applies to:

Oracle Virtual Directory - Version 11.1.1.0 and later
Information in this document applies to any platform.

Symptoms

Setting up a specific Active Directory (AD) user to be able to write to an attribute in AD through Oracle Virtual Directory (OVD).

Enabled an Access Control Level (ACL) in OVD for the user to have access to the attribute (also in the OVD schema), but writing to the attribute via OVD fails with, e.g.:

[LDAP: error code 50 - 00002098: SecErr: DSID-03150A45, problem 4003 (INSUFF_ACCESS_RIGHTS), data 0

Already verified that using the same specific AD user to write to the attribute through AD works fine.

Cause

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms