Accounts Disabled by Access Policy Are Enabled When the User Is Enabled (Doc ID 2030736.1)

Last updated on MARCH 08, 2017

Applies to:

Identity Manager - Version 11.1.2.2.6 and later
Information in this document applies to any platform.

Goal

Scenario:

1. Created user in OIM
2. Provided resource object using access policy
3. Account got provisioned
4. Responsible OIM role is removed from user
5. Account got disabled
6. Disabled the user
7. Then enabled the user
8. Account got enabled

Account should not get enabled as it was disabled using access policy.

9. Executed "Evaluate Access Policy", still no effect on account status. It is in enabled state.
 

Solution

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms