Unable to create AD account in appropriate OU

I could not create AD resource account in appropriate OU and could not figure out what could be wrong.

However, I noticed some ,ResultItem type='message' status='warning'>

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,68):<Message id="Error getting user flag settings: 'Get(): 0X8000500D: E_ADS_PROPERTY_NOTFOUND, "> error and could not find what it could be.

Can anybody put some thoughts in this?

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2760): attr DOES NOT need lookup

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2851): attribute, value: 'HR-M'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2732): Adding attribute, name: 'displayName'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2760): attr DOES NOT need lookup

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2851): attribute, value: 'test testing'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2732): Adding attribute, name: 'division'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2760): attr DOES NOT need lookup

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2851): attribute, value: 'Employee,OU=hr-m,OU=MidWest'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2732): Adding attribute, name: 'givenName'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2760): attr DOES NOT need lookup

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2851): attribute, value: 'test'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2732): Adding attribute, name: 'l'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2760): attr DOES NOT need lookup

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2851): attribute, value: 'Denver'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2732): Adding attribute, name: 'postalCode'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2760): attr DOES NOT need lookup

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2851): attribute, value: '22312'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2732): Adding attribute, name: 'sAMAccountName'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2760): attr DOES NOT need lookup

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2851): attribute, value: 'testert'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2732): Adding attribute, name: 'sn'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2760): attr DOES NOT need lookup

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2851): attribute, value: 'tester'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2732): Adding attribute, name: 'st'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2760): attr DOES NOT need lookup

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2851): attribute, value: 'CO'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2732): Adding attribute, name: 'streetAddress'

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2760): attr DOES NOT need lookup

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2851): attribute, value: '8904 East Main St

05/11/2007 16.28.01.992000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,2732): Adding attribute, name: 'userPassword'

05/11/2007 16.28.02.042000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,3074): Setting password if not yet set

05/11/2007 16.28.02.042000 [4400] (../../../../src/wps/agent/connect/RAEncryptor.cpp,67): RAEncryptor::Decrypt3DES: input length (8) moded to 1

05/11/2007 16.28.02.042000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,3867): Enter: setPassword(obj, ident, user, op, result)

05/11/2007 16.28.02.042000 [4400] (../../../../src/wps/agent/connect/RAEncryptor.cpp,67): RAEncryptor::Decrypt3DES: input length (8) moded to 1

05/11/2007 16.28.02.042000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,3941): Setting password for 'cn=test tester,ou=common,dc=ad,dc=omd,dc=net'

05/11/2007 16.28.02.103000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,4024): setPassword returning true

05/11/2007 16.28.02.103000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,4025): Exit: setPassword(obj, ident, user, op, result)

05/11/2007 16.28.02.103000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,3139): Adding password expired value: ''

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,4479): Enter: createUserDirs

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,4540): Exit: createUserDirs

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,11816): Enter: setTerminalServicesAttrs

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,11852): Exit: setTerminalServicesAttrs

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,3464): Exit: updateObjectAttrs

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,4976): SID cache disabled

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,6057): Enter: addUserToGroups

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,6170): Exit: addUserToGroups

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,118): Enter: reply

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,76): Enter: sendBuffer

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,90): Sending buffer:

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,68): <?xml version='1.0' encoding='UTF-16'?>

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,68): <Response>

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,68):<Result status='warning'>

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,68):<ResultItem type='message' status='warning'>

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,68):<Message id="Error getting user flag settings: 'Get(): 0X8000500D: E_ADS_PROPERTY_NOTFOUND, ">

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,68):</Message>

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,68):</ResultItem>

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,68):<ResultItem type='ACCOUNT_CREATED'>

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,68): <object class='String'>cn=test tester,ou=common,dc=ad,dc=omd,dc=net</object></ResultItem>

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,68):<ResultItem type='PASSWORD_SET'>

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,68): <object class='String'>cn=test tester,ou=common,dc=ad,dc=omd,dc=net</object></ResultItem>

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,68):<ResultItem type='GOT_GUID'>

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,68): <object class='String'>bb305a806161dc459cd10c7f69f3d391////cn=test tester,ou=common,dc=ad,dc=omd,dc=net</object></ResultItem>

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,68):</Result>

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,68): </Response>

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/connect/RAomdureConnection.cpp,110): SendPrivate: count: 1458 pad: 2

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,105): Exit: sendBuffer

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,126): Exit: reply

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/adsi/ADSIExtension.cpp,4868): Exit: createObject - 1

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,562): Exit: ProcessCommand

05/11/2007 16.28.02.113000 [4400] (../../../../src/wps/agent/object/RequestHandler.cpp,699): Exit: handleRequest

05/11/2007 16.29.20.066000 [4400] (../../../../src/wps/agent/connect/RAomdureConnection.cpp,65): ~RAomdureConnection: deleting connection handler

Thanks.

[9969 byte] By [G_identitya] at [2007-11-27 4:20:20]
# 1

The error is an AD error code that is being thrown if you access an unavailable or invalid property.

I encountered the same error when I mapped attributes from the schema mapping incorrect. If you are not using Exchange, make sure to remove all the attributes that starts with 'mDB' . Refer to the resource Adapter documentation for more details.

Btw, some post in the forum mentioned about some bugs in ID M 6.0 that require patching to to SP1 to solve this problem. Maybe you want to take a look at that also.

Good luck!

harrywkla at 2007-7-12 9:27:20 > top of Java-index,Web & Directory Servers,Directory Servers...
# 2

I am using Exchange and MDB and MTA are indispensible. I had these attributes mapped properly and could not create a mailbox.

I created AD account but when sent a test email to the new account,

I got this error:

The e-mail account does not exist at the organization this message was sent to. Check the e-mail address, or contact the recipient directly to find out the correct address.

Am I missing anything here?

Thanks.

G_identitya at 2007-7-12 9:27:20 > top of Java-index,Web & Directory Servers,Directory Servers...
# 3

One suggestion would be to tackle the AD first by removing all your mDB and MTA attributes to isolate the problem. Once you have successfully provision to AD then you add the attributes back to the list again.

Btw, are what did you use fill in for your 'Container' field? I see that it's ou=Common.

By default AD users are created in 'User' container.

Are you using IDM 6.0 or 7.0? In IDM 7.0 I had to uncheck the 'required' check from the schema to gete rid of this problem.

harrywkla at 2007-7-12 9:27:20 > top of Java-index,Web & Directory Servers,Directory Servers...
# 4
We are using IDM6.0.Our forest is little bit different with ou=common as container where the users are created.cn=$fullname$,ou=common,dc=ad,dc=omd,dc=netI will try the suggestion and let me get back to you.Thanks.
G_identitya at 2007-7-12 9:27:20 > top of Java-index,Web & Directory Servers,Directory Servers...