My Oracle Support Banner

Reconciliation from SAP UM is removing the IT Resource Prefix from the Role System Name field. This prevents Access Policy Harvesting from Identifying those Roles for Harvesting (Doc ID 2724449.1)

Last updated on NOVEMBER 05, 2020

Applies to:

Identity Manager - Version 12.2.1.3.200108.2108 and later
Information in this document applies to any platform.

Symptoms

SAP UM connector is installed via Application Onboarding in OIG 12c.  User accounts and entitlements are provisioned correctly to SAP.  When that user is retrieved by reconciliation, the 'name' associated with the account or entitlement is returned from SAP without the IT Resource prefix.

Ex: 
Provisioned as this:  '24~MANAGER'
Reconciled back as:  'MANAGER'

If the Evaluate User Policy job is run to handle the Access Policy Harvesting, this account or entitlement will not match with the lookup values stored in the Access Policy and no harvesting will occur.

Changes

New implementation, first use of Application Onboarding 

Cause

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Symptoms
Changes
Cause
Solution


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.