Extending AD Connector To Support For PASSWD_CANT_CHANGE(ntSecurityDescription) Attribute

(Doc ID 2287268.1)

Last updated on JULY 23, 2017

Applies to:

Identity Manager Connector - Version 11.1.1.6.0 and later
Information in this document applies to any platform.

Goal

Configured the AD UM connector and want to add support for recon / provision to the "user cannot change password" AD attribute.

According to the Microsoft documentation this attribute is controlled via the ntSecurityDescription attributes ( changing some bits inside this attribute )

How can one extend the ad connector to support this attribute?
 

Solution

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms