Project

General

Profile

Actions

Feature #1787

closed

Send attribute to system ONLY with password

Added by Roman Kučera over 4 years ago. Updated almost 3 years ago.

Status:
Closed
Priority:
High
Assignee:
Vít Švanda
Category:
Systems
Target version:
Start date:
08/09/2019
Due date:
% Done:

100%

Estimated time:
16.00 h
Owner:

Description

It would be nice if we will have another option in attribute mapping. Now we can select to send some attribute with password but this attribute will be send with and without password.
This new checkbox should be to Send only with password - that's mean attribute with this setting will be send to system only with password.

This feature will be very useful for AD system and attribute pwdLastSet. Where we want to set this attribute only with password because otherwise we will send this attribute always and all then all user will need to change they password after every provisioning.

Workaround:
There is possible workaround how to solve this issue. Solutions contains eav attribute on identity and custom proccesors before and after password reset. (probably will work in general before/after provisioning) But our use case on project was with password generate on identity.
Complete guide to workaround TODO

Actions

Also available in: Atom PDF