is there any sample for authorization?

182 byte By Legolas.wa at 2007-11-27 5:02:18
HiThank you for reading my postis there any sample that shows how we can use authorization from by using client SDK?any hint is very welcome.Thanks

role membership limits

103 byte By dmknapea at 2007-11-27 5:02:24
I was wondering if there is a practical limit to the number of roles an object can be member of?

Replication error

724 byte By xhza at 2007-11-27 5:02:36
Hi,When I try to initialize replication between two servers (d2 and d3), I got the following error:bash-2.05# /opt/SUNWdsee/ds6/bin/dsconf init-repl-dest -h d2 -p 389 dc=mycompany,dc=com d3:636Enter "cn=Directory Manager" password: Started initialization of "d3:636"; May 21, 2007 5:09:54 ...

regarding multi master replication

1589 byte By ap7926a at 2007-11-27 5:02:38
hi i am getting below error while i am doing multi master replication.I had master 1 with some entries and now i am doing replication with master-2 which doesn't have any entries.[21/May/2007:16:52:15 -0700] - import userRoot: Import complete. Processed 258 entries in 6 seconds. (43.00 ...

How can i solve this problem

484 byte By ibOa at 2007-11-27 5:03:47
I had run identity manager server on vmware ( that set memory to 256 MB ) when i try to reconcile with LDAP server in my networkit show this error : Error iterating accounts for resource LDAPSPU:java.lang.OutOfMemoryError: Java heap space so i move to run identity manager server on sparc ...

Regarding a problem in passwordexpirationtime in DS 5.2 patch

357 byte By Shrinijanaka at 2007-11-27 5:04:44
Hello,Curently I am using Directory server 5.2 patch 4When i set Expire Password on 24855 days.Password warning on 24854 dayswhen i create a person the passwordexpirationtime is getting set as "20380119031407Z" but it should be "2075119031407Z".Advice me how to solve this problem ...

Cookie Domain

893 byte By the_trupoa at 2007-11-27 5:06:20
Hi, i have Access Manager and JbossPortal plugin.I don't understand the meaning for AM parameter "Cookie Domain".I tried several configurations, but what I get is this behaviour:- if I log as administrator on the AM console, it works- if I access JbossPortal home page, the plugin redirects me ...

Account creation,deletion etc

425 byte By rahulsainia at 2007-11-27 5:09:00
Hi AllI have configured SMTP mail server in sun identity manager 7.0.It has sucessfully configured.I am getting only account creation approval mail only.But I am not getting any mail like normal account creation,deletion,password reset, reconcilation etc.In log i am not getting any error.Please ...

Role based user provisioning in sun idm 7 with AD

857 byte By rahulsainia at 2007-11-27 5:09:07
Hi friendI am using a flat file as a authorative data source. Active directory my target resource.In a flat file i am passing accountId, firstname,lastname,role, rolestatus, departmentnumber and department.I have three group in AD sales,IT,HR.I have three role sales,IT,HRmy role mapping with AD ...

Date Math in Xpress

1302 byte By jasonburta at 2007-11-27 5:09:54
So, I'm trying to compare some dates and having a bit of a problemwith it and I was hoping you could look at it and tell me if you seewhat I'm doing wrong.Here is the express code I'm using:<sub><invoke ...

Logout URL for the AM 7.1

472 byte By Vivek.Gupta.eToucha at 2007-11-27 5:10:14
Hi,I have 2 AM 7.1 behind a load balancer. We have configured the load balancer as a site and both AM instances underneath it. The login works fine through the load balancer. We can navigate to all the AMConsole screens. When we click the logout button, it redirects us to /amserver/UI/Logout of ...

ISW1-2004Q3 - Is it possible to synchronize the sub-branches of AD to LDAP?

265 byte By nfsv4a at 2007-11-27 5:10:31
Hi,I am facing a problem like the idsync is not updating the uid's in the sub-braches of AD to LDAP. I have configured it to synchronize the top branch in the SUL. But it is not synchronizing the sub-branches. Any information on this will be helpful.

to Install Directory Service Control Center FromNative packages

1149 byte By Alpa at 2007-11-27 5:11:50
Hi All, I am trying to install DSCC for Directory Server 6.0 and I am using this "DSEE[1].6.0.Solaris-Sparc-full.tar " installation document says that I should have the screen which consist of"Sun Java(TM) System Directory Server Enterprise Edition 6.0" and subtree of this "Java Enterprise ...

Email configuration in IDM7

724 byte By Aganthaka at 2007-11-27 5:12:14
Hi,Please let me know from where and how i can configure smtp server in IDM.I have given the smtp server address in Email template tab which is under configure->servers-> default server.And also i have updated all configurations files for the email templates which under ...

Weblogic 8.1 Portal Startup error -Need Help

2371 byte By praghosa at 2007-11-27 5:12:29
While starting managed instance on Weblogic Portal, I am getting the following error :***************************************************************************The WebLogic Server did not start up properly.weblogic.security.service.SecurityServiceRuntimeException: [Security:090371]Problem ...

DS6 configuration commands

155 byte By Grzembaa at 2007-11-27 5:13:01
the documentation use mostly the commands dsconf and dpconf, but my Solaris Installation has only dscfg and dpcfg commands.Wy this confusion?

DS6 dpcfg has no jdbc subcommands

108 byte By Grzembaa at 2007-11-27 5:13:16
it seems to be that in the Solaris installation dpcfg has no JDBC subcommands.Where are these?

XPRESS <invoke> exception:

1247 byte By greenfan88a at 2007-11-27 5:13:45
Hellos. I am trying to test a rule. I get the error "com.waveset.util.WavesetException: Can't call method listObjects on class com.waveset.session.RemoteSession"We need to generate a unique AD samaccountname. We need to check all IDM user accounts to test if an extended attribute has same ...

Windows LDAP client authentication

368 byte By xhza at 2007-11-27 5:15:32
Hi,I have set up Directory Server 6.0 on 3 Solaris 9 systems and enable replication among those 3 servers. Right now I want to set up a Windows LDAP client to authenticate against the DS server 6 on Solaris 9 systems. What steps I need to follow to configure Windows client? Windows LDAP client ...

sunone directory server to openldap

1596 byte By kpaxian25a at 2007-11-27 5:16:13
Is there anyone out there successfully replicated sunone directory server to openldap.I set the agreement in SUN DS to replicate to openldap with openldap cn=manager credentialsand then in openldap added the following two lines in slapd.conf updatedncn=Directory Managerupdateref ...

develop end user pages

264 byte By idmuser81a at 2007-11-27 5:16:34
Can anyone please give an idea how to develop end user pages i.e; login, password reset pages. I know that we have to implement in BPE. once the forms and workflows are created how we will connect end user interface to the IDM admin interfacethanks..

Is there support in certmap.conf for using DN's with dc= attributes

1398 byte By Scott.R.Corzinea at 2007-11-27 5:18:00
Hi Folks-The Question:Is there any support on certmap.conf (or the like) for dealing with suffixes that use the "dc=example,dc=com" format (in either 5.2 or 6.0)?The Details/Background:Like many places our suffixes are named ending with "dc" attributes (e.g. dc=example,dc=com). I've been ...

Policy Agent 2.2 Error

2976 byte By baron49a at 2007-11-27 5:18:11
Running Policy Agent 2.2 on Oracle application server and getting the following errors:2007-05-22 16:36:58.332Error 8170:1917e0 AM_SSO_SERVICE: SSOTokenService::getSessionInfo(): Error 16 for sso token ID AQIC5wM2LY4SfcxgQrsHCuGgBD/Dq9eYjSA4xk/Lw5z3nu4=@AAJTSQACMDI=#.2007-05-22 ...

When changing passwd, pam.conf is not using dsee6 for password policy

12743 byte By ericduggana at 2007-11-27 5:18:40
I have dsee 6.0 installed on a solaris 10 server (nznsfn60).I have a solaris 9 server (nznsfn29) set up to use ldap authentication.bash-2.05# cat /var/ldap/ldap_client_file## Do not edit this file manually; your changes will be lost.Please use ldapclient (1M) instead.#NS_LDAP_FILE_VERSION= ...

Place IDM USer in specific Active directory Container based on Department

3125 byte By rahulsainia at 2007-11-27 5:18:51
<?xml version='1.0' encoding='UTF-8'?><!DOCTYPE Configuration PUBLIC 'waveset.dtd' 'waveset.dtd'><Configuration wstype='UserForm' name='FlatFile ActiveSync Form'> <Extension><Form><Field name='waveset.accountId'> <Comments> email. ...

AM and Sun Cluster 3.1

712 byte By burrutiaa at 2007-11-27 5:19:06
Im running now the DS6 and WS7 under sun cluster 3.1 Both reources are working fine within the cluster eviroment.I had installed AM in both nodes of the cluster. In the primary node I deploy the AM an everything seems to be working fine. I can access de amconsole interface do some changes, ...

migration from v5.2 to v6.0

16660 byte By Alpa at 2007-11-27 5:20:47
Hi all, I am doing a migration from DS5.2 to 6.0Schema Migration is succeed but the others are failed unfortunatelyI have added the migration log file below, slapd cannot start after security,config and data migrationcan anyone help me for this subject? I appreciate any helpmany thanks ...

SSO using PingFederate and Access Manager

312 byte By SlippyNicka at 2007-11-27 5:22:19
HiMy company has a partner using PingFederate (saml v2). They want to use SSO and access our sites, using the IdP initiated Artifact process. Can anyone tell me if this is possible, and if so, are there any examples out there to help to set this up?Thanks in advanceNick ...

can't login to Directory Service Control Center 6

626 byte By Re-La at 2007-11-27 5:22:49
After installition of Sun JES 5 Directory Server (OS Solaris SPARC 9) i'm trying to login to DSCC.I provide username admin and a password for admin.But after clicking the LogIn Button I see a message Authentification error.IWhen I explore a Directory server through LADP browser (as ...

Federation manager and policy agent

317 byte By romario14a at 2007-11-27 5:23:21
Hi,If i have portal server and access manager in one machine in domain X, how i can achieve SSO with second machine (domain Y) with web application on Sun Web Server 7?Can I install Federation Manager and Policy Agent on Sun Web Server 7? And then configure Federation Manager and Access ...

Search user by attribute (for example waveset.osobni_cislo)

1262 byte By poslusnya at 2007-11-27 5:23:44
Is it possible to rewrite this rule to searching users by attribute osobni_cislo (or fullname) , for me it works only for name and lastname:<Rule name='getPSUsers'><RuleArgument name='full'><Comments>The fullname of a ...

migration from v5.2 to v6.0 failure

2514 byte By chilimonkeya at 2007-11-27 5:25:29
Hello all,I'm trying to migrate our DS5.2 data to a newly installed DS6 and am getting errors. root@opserv13:/opt/SUNWdsee/ds6/bin# ./dsmig migrate-all /var/Sun/mps/slapd-opserv13 /var/opt/SUNWdsee/dsins1Launching Schema Migration of server instance /var/Sun/mps/slapd-opserv13 .....Stopping ...

Configuring LDAP over SSL on DS 5.2 using T2000 hardware token

404 byte By qwerty246a at 2007-11-27 5:26:16
Hi All,I would like to configure LDAP over SSL (LDAPS) for DS 5.2 sp4 on T2000 hardware using the "Sun Metaslot" hardware token. I am able to configure LDAPS using the software "Internal" token from the command line. However, I have been unable to do this using the in-built hardware SSL ...

How to update existing TaskDefinitions while active tasks are pending

458 byte By donjosha at 2007-11-27 5:26:30
We currently have a TaskDefinition workflow that handles customer self registration. Once deployed in production if there are active tasks pending we can not deploy a new version of that workflow until all task are finished and no longer pending. This seems to be a big issue and unreasonable ...

Configuring SSL for Directory Proxy Server

476 byte By Prabhjeeta at 2007-11-27 5:27:22
Hi,My requirement is that I need a simple non-secure connection between my backend LDAP Server and Proxy Server and SSL connection between my Proxy Server and the client application (all on Windows platform). The problem is whenever I try to add server certificate in the Proxy Server, it adds ...

CPU load with request on Uniquemember attribute

703 byte By NPTa at 2007-11-27 5:30:33
Hi All, I migrate 3 directory server of Iplanet Directory Server 5.1SP4 to Sun One Directory Server 5.2SP4 and since this day, I have several problems on the 3 migrated servers, especially with requests on Uniquemember attribute !!I already checked the indexes and the attribute Uniquemember is ...

Problem Renaming a Task Instance

1480 byte By JimBearda at 2007-11-27 5:31:48
Howdy all,I have a problem. I am trying to rename my active sync task instance so I can see easily which task was which user. I'm trying to use the rename method of the InternalSession object. My code looks like this: <invoke name='rename'><new ...

how we can use ISPermission?

443 byte By Legolas.wa at 2007-11-27 5:37:50
HiThank you for reading my postcan some one please give me details about what we should configure in access manager in order to make this code works? ISPermission perm = new ISPermission("iPlanetAMWebAgentService"," http://www.sun.com:80","GET"); AccessController.checkPermission(perm); ...

LDAP users and groups, and local groups

1918 byte By Dougiesica at 2007-11-27 5:39:05
Following on from my previous topic: http://forum.java.sun.com/thread.jspa?threadID=5173933&tstart=20I have several LDAP users and netgroups, all working well now....I have posix groups configured, and they all work well too....E.g. LDAP uid of dmacpherson is a member of the LDAP posixgroup ...

implementing SSO with policy agent "Service URL not found:session"

1205 byte By deepshara at 2007-11-27 5:40:02
Hi,here is my envpolicy agent 2.2 for sun app server 8.1I have an application for which I want to implement SSO.Now I have installed agent on my app server and when I try to access my protected page I am redirected to Access Manager login page which is fine.After that I get the page I want to ...

IDM Version 7.x

141 byte By R_L23456a at 2007-11-27 5:40:04
I am currently using IDM 6.x and wondering if IDM 7.x is backward compatible.If not, broadly speaking what needs to be updated?

Connection Exception during Installation (Locate Repository)

1203 byte By rahul.honrao@patni.coma at 2007-11-27 5:46:36
Hi,I am trying to install IDM 7. Following are more details:Win XP, JDK 1.4.2_04, ODBC MySQL Connector 3.51, My SQL 5.0, Tomcat 5.0.When I reach the Launch Setup step, after copying the mysqljdbc.jar file inside IDM_HOME\WEB-INF\lib when I proceed, I get the error (pasted below) on selecting ...

How to Get the attribute values from the IDM to workflow

239 byte By Sun_Java_Identuty_Manager@Suna at 2007-11-27 5:46:52
Hi .....am getting the external attribute values like department,location etc...i want to use that values to built a workflow , am not able to get that values ina workflow......please anybody help me ....

Java Post-Operation Plugin

469 byte By dkichlinea at 2007-11-27 5:48:37
We are running Sun One Directory Server 5.2.I have the distinct honor of inheriting a number of Post-Operation plug-ins written by a person who just left the company. Unfortunately, this person was also the only person that knew how they worked.These plug-ins were written with Java. The only ...

remove resource

366 byte By @waveseta at 2007-11-27 5:49:37
I loaded users into IDM using a form which assigns a fsync resource to a user. Now when I am trying to update this user,IDM says that I remove this resource from the user or correct the resource.Then I tired command,user,waveset.resourcesupdate,user1,|Remove|fsync.and still getting the same ...

Fresh Install Help Needed

1885 byte By BenGarfielda at 2007-11-27 5:49:52
I have worked with SunONE Directory Servers all the way back to verson 3. However, I am having a very hard time getting this new version to work.I am attempting to install it in a Solaris 10 Full Local Zone, but I am having no success.After running the native Solaris 10 install using the ...

DS 5.2 Plugin for samba attributes

216 byte By LE-PRIEUR_Laurenta at 2007-11-27 5:49:53
Hello,I search a plugin for DS5.2 for update SambaNTPassword, SambaLMPassword (and if possible sambaPwdLastSet) attributes when a user modify userPassword or if i had a new entry in the DS.Thanks

the attribute inserted some time in base64 and some time in clearly text

517 byte By suuupera at 2007-11-27 5:53:11
Hi to all,i have a problem with insert attributes in my ldap.The attribute are defined in this way:attributeTypes: ( spadaId-oid NAME 'spadaId' SYNTAX 1.3.6.1.4.1.1466.115.121.1. 15 SINGLE-VALUE X-ORIGIN 'user defined' )But if i exec many add, the same attribute, are inserted some time ...

Positng XML over HTTPS

734 byte By simusera at 2007-11-27 5:53:23
We are trying to do the following. Can anyone help by providing any pointers as how to do it.1. A java client will be posting XML over http(s) to the IDM server.2. The IDM server has to do the following:- Validate the user credentails and verify that it is an valid user on IDM- Do some DB ...

ActiveSync limit TargetResources

530 byte By don-rajaa at 2007-11-27 5:54:54
We are creating user accounts in an LDAP resource and updating the Lighthouse account using an ActiveSync process.In our activesync logs, we are noticing that the resource accounts for the other resources in the users profile are being read. This is causing performance delays since activesync ...