Re-enable a terminated user

Which IIQ version are you inquiring about?

8.3

Please share any other relevant files that may be required (for example, logs).

Errors: Error(s) reported back from the IQService - Failed to update attributes for identity CN=xyz Yyyyy,OU=Internal,OU=_People,DC=xxxxx,DC=co,DC=nz. There is no such object on the server.

Share all details about your problem, including any error messages you may have received.

There is no such object on the server., this is happening for all the users who are with the status Terminated.

@bhaskarjampala Could you please provide more details about the issue? If you’re encountering problems while rehiring or re-enabling an identity or AD account, it seems the error indicates that the AD account cannot be found. Typically, when an identity is terminated, the AD account is moved to an inactive container. Please check the distinguishedName of the AD account for this identity.

Hi @bhaskarjampala - I am assuming the underscore in OU=_People is supposed to be there. If you are running updates at the same time or after a user is moved to a disabled container, then make sure to do a targeted aggregation to update the DN in IIQ. Also make sure your AD connector can search the disabled OU.

Thank you for your reply. apparently, we received confirmation that the AD account was in different OU.

Thanks for your reply, If the status (IdentityStatus) is Terminated is it same as Disabled? If the user was not activated in time, automatically his account gets terminated. What we are trying here is to re-enable the user. Hence, the error. Apparently, this issue is to do with the AD connector, we came to know that the user was not present in the OU.