Displaying information about deprovisioning Active Directory user accounts and Active Directory groups
The following properties are displayed for deprovisioning Active Directory user accounts and Active Directory groups:
Table 9: Deprovisioning data
Deprovisioning status |
Status of deprovisioning sequence through when an object is deleted. The data is loaded from on synchronization.
-
No deprovisioning: The Active Directory object is active.
-
Deprovisioning successful: The Active Directory object was successfully deprovisioned.
-
Deprovisioning failed: An error occurred while deprovisioning the Active Directory object. |
Deprovisioning date |
Status of deprovisioning sequence through an when a object is deleted. The information is loaded from the during synchronization. |
To display main data of deprovisioning an Active Directory user account
-
In the Manager, select the Active Directory > User accounts category.
-
Select the user account in the result list.
-
Select the Change main data task.
-
Select the tab.
To display main data of deprovisioning an Active Directory group
-
In the Manager, select the Active Directory > Groups category.
-
Select the group in the result list.
-
Select the Change main data task.
-
Select the tab.
Related topics
Restoring deprovisioned Active Directory user accounts and Active Directory groups in the One Identity Manager
You can restore deprovisioned Active Directory user account and Active Directory groups using One Identity Manager if required. The following methods are used to do this:
Both methods initiate a process for deprovisioning Active Directory objects in . The process finds the deprovisioning status, updates some of the Active Directory object properties, like the name and the Active Directory container and in the One Identity Manager database, and sets the Active Directory object status to changed. All the Active Directory object properties are loaded in the One Identity Manager database by the next synchronization and the status is changed to published.
Detailed information about this topic
Deprovisioning Active Directory user accounts and Active Directory groups
Use this method to undo Active Directory user account and Active Directory group deprovisioning. You can use this method independent of the deprovisioning method implemented.
To undo Active Directory user account deprovisioning
-
In the Manager, select the Active Directory > User accounts > Deprovisioned accounts category.
-
Select the user account in the result list.
-
Select the Undo deprovisioning task.
- Confirm the security prompt with Yes.
-
Confirm with OK.
To undo Active Directory group deprovisioning
-
In the Manager, select the Active Directory > User accounts > Deprovisioned groups category.
-
Select the group in the result list.
-
Select the Undo deprovisioning task.
- Confirm the security prompt with Yes.
-
Confirm with OK.
Related topics
Restoring deleted objects
You can use this method as an alternative for Active Directory user accounts and Active Directory groups you have deprovisioned using the method Deprovision not delete. You find the deprovisioned Active Directory object, in this case, in the One Identity Manager database with status Deleted.
To restore a user account
-
In the Manager, select the Active Directory > User accounts category.
-
Select the user account in the result list.
-
Click in the result list.
To restore a group
-
In the Manager, select the Active Directory > Groups category.
-
Select the group in the result list.
-
Click Undo delete in the result list toolbar.
Related topics