<html>
  <head>
    <meta content="text/html; charset=utf-8" http-equiv="Content-Type">
  </head>
  <body bgcolor="#FFFFFF" text="#000000">
    Hi,<br>
    <br>
    please check if you have the following configuration:<br>
    you need to configure entitlement representing the groups and
    account to group associations in resource, and then you can see
    "Associations" container when editing user. Can you see the
    Associations in GUI?<br>
    <br>
    This is from our sample opendj-resource-genericsync.xml:<br>
    <br>
    In the account schema handling:<br>
    ...<br>
               <association><br>
                    <ref>ri:group</ref><br>
                    <displayName>LDAP Group
    Membership</displayName><br>
                    <kind><b>entitlement</b></kind><br>
                    <intent><b>ldapGroup</b></intent><br>
                    <direction>objectToSubject</direction><br>
                   
    <associationAttribute>ri:uniqueMember</associationAttribute><br>
                   
    <valueAttribute>icfs:name</valueAttribute><br>
                </association><br>
    ...<br>
    </objectType><br>
            <objectType><br>
                    <kind><b>entitlement</b></kind><br>
                <intent><b>ldapGroup</b></intent><br>
                <displayName>LDAP Group</displayName><br>
               
    <objectClass>ri:GroupObjectClass</objectClass><br>
    . . .<br>
    <br>
    </objectType><br>
    <br>
    This should be sufficient. Of course your objectClass or
    associationAttribute may differ; this is our configuration for
    OpenDJ.<br>
    <br>
    Please see also
    <a class="moz-txt-link-freetext" href="https://wiki.evolveum.com/display/midPoint/Entitlements">https://wiki.evolveum.com/display/midPoint/Entitlements</a><br>
    <br>
    What midPoint version are you using?<br>
    <br>
    Regards,<br>
    Ivan<br>
    <br>
    <div class="moz-cite-prefix">On 02/16/2015 05:22 AM, Dharmendra
      Parakh wrote:<br>
    </div>
    <blockquote
cite="mid:CAJG9dDvxrEL=w2c=Fs-4En=bmL1_863mQycRQTZtBQcH=3+R1Q@mail.gmail.com"
      type="cite">
      <div dir="ltr">Hi
        <div><br>
        </div>
        <div>We have a ldap resource that is configured with group
          provisioning and association. Our resource is provisioning
          ldap group membership to user properly but the assigned groups
          cannot be seen in GUI (expanding the provisioned account in
          Accounts panel).</div>
        <div><br>
        </div>
        <div>Are we missing any configuration or is it an issue, please
          provide some pointers on it.</div>
        <div><br>
        </div>
        <div><br>
        </div>
        <div>Thanks & regards</div>
        <div>Dharmendra</div>
      </div>
      <br>
      <fieldset class="mimeAttachmentHeader"></fieldset>
      <br>
      <pre wrap="">_______________________________________________
midPoint-dev mailing list
<a class="moz-txt-link-abbreviated" href="mailto:midPoint-dev@lists.evolveum.com">midPoint-dev@lists.evolveum.com</a>
<a class="moz-txt-link-freetext" href="http://lists.evolveum.com/mailman/listinfo/midpoint-dev">http://lists.evolveum.com/mailman/listinfo/midpoint-dev</a>
</pre>
    </blockquote>
    <br>
    <pre class="moz-signature" cols="72">-- 
  Ing. Ivan Noris
  Senior Identity Management Engineer & IDM Architect
  evolveum.com                     evolveum.com/blog/
  ___________________________________________________
  "Semper Id(e)M Vix."
</pre>
  </body>
</html>