OCM - IDCS Group Automatic Synchronization Not Working
(Doc ID 2965927.1)
Last updated on AUGUST 10, 2023
Applies to:
Oracle Content Management - Version N/A and laterInformation in this document applies to any platform.
Symptoms
There is an issue when adding users to a given OCM instance through custom IDCS group.
- It is needed to manually force Group synchronization in OCM to let the users login.
The set up is as follows:
- Within IDCS, several IDCS groups are created with OCM application roles for different business purposes (business editors, analyst, admins, etc).
- Within OCM, we have associated access to several elements (like repositories) through these IDCS groups.
- When a user needs to work with OCM we just associate the user to the right group (based on the user duties).
- Then we wait about an hour to ensure enough time is has passed for the updated user details to propagate to the server.
- But at this point the user still cannot access OCM.
- We can see the given group is out of sync, from OCM's System setup (Web Console > System panel > Users > Group sync).
- In OCM, it is required to manually run the group synchronization process.
- Then the users can successfully access OCM.
Context:
This issue happened in OCM private and public instances.
The users are federated, they exist in IDCS, they are added to an IDCS group to allow them access to OCM.
Question:
We would like to check with Support if this is the expected behavior.
BUSINESS IMPACT
-----------------------
The issue has the following business impact:
Due to this issue, users cannot sync or access content.
Cause
To view full details, sign in with your My Oracle Support account. |
|
Don't have a My Oracle Support account? Click to get started! |
In this Document
Symptoms |
Cause |
Solution |
References |