In Identity Manager 9.2.x with the Azure AD (Microsoft Entra ID) connector configured for PIM (Privileged Identity Management) mode, the Initial Synchronization workflow fails with System.OutOfMemoryException when processing PimDirectoryRoleEligibilitySchedule.
The Synchronization Editor may also become unresponsive and consume all available memory when browsing that table.
The trace log shows repeated entries:
Translating roledefinitionId (MS inconsistency on custom roles)
Product defect #449166 in the Azure AD connector PIM handling.
The connector enters an unbounded memory allocation pattern when resolving roleDefinitionId GUIDs for custom roles during PimDirectoryRoleEligibilitySchedule queries.
If you encounter this issue, please contact our Support and ask for hotfix #449166.
The hotfix is compatible with both Identity Manager 9.2.0 and 9.2.1.
For long-term resolution, upgrade to a fully supported version (9.3 or later) where this defect is fixed in the base product.
© ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center