# Manager correlation

**URL:** <https://developer.sailpoint.com/discuss/t/manager-correlation/71998>\
**Category:** SHF Discussion and Questions\
**Tags:** identity-security-cloud\
**Created:** [July 11, 2024, 1:15pm UTC](https://developer.sailpoint.com/discuss/t/manager-correlation/71998 "2024-07-11T13:15:12Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![sidhantpandey](https://avatars.discourse-cdn.com/v4/letter/s/cab0a1/32.png) [@sidhantpandey](https://developer.sailpoint.com/discuss/u/sidhantpandey)\
**Post date:** [July 11, 2024, 1:15pm UTC](https://developer.sailpoint.com/discuss/t/manager-correlation/71998/1 "2024-07-11T13:15:12Z")

</div>

I have authoritative source as AD and some of the identities have multiple manager primary and secondary stored in a multi valued attribute separated by ; like 123456;987654. We have set the UI manager correlation that points the identity attribute to this attribute on AD. In our identity profile we have split the values in 2 attributes: primary in OOTB Manager Name (manager) and secondary in new attribute called Secondary Manager (secondaryManager). But for the users with 2 managers the manager correlation does not work as the identity attribute (123456) does not match AD attribute (123456;987654) as it is multi valued. Is there a way to resolve this issue without writing the manager correlation rule?

---

<div class="post-metadata">

**Author:** ![agutschow](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/agutschow/32/8543_2.png) [@agutschow](https://developer.sailpoint.com/discuss/u/agutschow)\
**Post date:** [July 11, 2024, 5:31pm UTC](https://developer.sailpoint.com/discuss/t/manager-correlation/71998/2 "2024-07-11T17:31:58Z")

</div>

Do you have the managerDN field set in Active Directory? Could you use this instead of your custom field?

Alicia

---

<div class="post-metadata">

**Author:** ![sidhantpandey](https://avatars.discourse-cdn.com/v4/letter/s/cab0a1/32.png) [@sidhantpandey](https://developer.sailpoint.com/discuss/u/sidhantpandey)\
**Post date:** [July 12, 2024, 6:37am UTC](https://developer.sailpoint.com/discuss/t/manager-correlation/71998/3 "2024-07-12T06:37:31Z")

</div>

Since these are non human accounts and can have multiple owners, we have the extensionAttribute set as the manager(s).

---

<div class="post-metadata">

**Author:** ![iamnithesh](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/iamnithesh/32/4884_2.png) [@iamnithesh](https://developer.sailpoint.com/discuss/u/iamnithesh)\
**Post date:** [July 12, 2024, 12:20pm UTC](https://developer.sailpoint.com/discuss/t/manager-correlation/71998/4 "2024-07-12T12:20:32Z")

</div>

You got to use Manager Correlation Rule in this case. Have a look at

> **[Manager Correlation Rule | SailPoint Developer Community](https://developer.sailpoint.com/docs/extensibility/rules/cloud-rules/manager-correlation-rule)**
>
> This rule calculates a manager relationship between identities.

---

<div class="post-metadata">

**Author:** ![system](https://global.discourse-cdn.com/sailpoint/original/2X/f/f2136700ed5e3703e0b85e02f6be799dacca7735.png) [@system](https://developer.sailpoint.com/discuss/u/system)\
**Post date:** [September 29, 2024, 8:22am UTC](https://developer.sailpoint.com/discuss/t/manager-correlation/71998/6 "2024-09-29T08:22:54Z")

</div>

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.
