[midPoint] User to Role assignment activation date not working for AD group

Alcides Carlos de Moraes Neto alcides.neto at gmail.com
Tue Apr 16 00:26:33 CEST 2019


Hello list,

We have working user and role association to AD users and groups. However,
if we give users an assignment with activation expiration date in midpoint,
they are not removed from the AD group when the date comes. The assignment
shows as expired, but they are not removed from the AD group that the role
projects to, even when recomputing.

Even removing the expired assignment will not remove the user from the list.

Also, when trying to modify any of the activation parameters from these
assignments, we're getting a NPE:
java.lang.NullPointerException: null
com.evolveum.midpoint.prism.util.ItemDeltaItem.findIdi(ItemDeltaItem.java:218)
com.evolveum.midpoint.repo.common.expression.ExpressionUtil.resolvePath(ExpressionUtil.java:232)
com.evolveum.midpoint.model.common.mapping.MappingImpl.parseSource(MappingImpl.java:874)
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.evolveum.com/pipermail/midpoint/attachments/20190415/e99ee144/attachment.htm>


More information about the midPoint mailing list