[midPoint] "An attempt to modify an immutable" when tyring to create account in OpenLDAP with 4.10.x

Oliver Schonefeld schonefeld at ids-mannheim.de
Fri Mar 20 09:51:12 CET 2026


Hello fellow midPoint users,

when trying to provision accounts in an OpenLDAP-Instance, I get an
java.lang.IllegalStateException exception:

An attempt to modify an immutable: 
SAC(attributes):[PCV(null):[RA({.../resource/instance-3}sn):[PPV(String:$REDACTED$)], 
RA({.../resource/instance-3}departm
entNumber):[PPV(String:$REDACTED$)], 
RA({.../resource/instance-3}idsAccountType):[PPV(String:employee)], 
RA({.../resource/instance-3}uid):[PPV(String:$REDACTED$)], 
RA({.../resource/instance-3}o):[P
PV(String:$REDACTED$)], 
RA({.../resource/instance-3}idsAccountUuid):[PPV(String:$REDACTED$)], 
RA({.../resource/instance-3}cn):[PPV(String:$REDACTED$)], RA({.../res
ource/instance-3}dn):[PPV(String:$REDACTED,dc=de)], 
RA({.../resource/instance-3}givenName):[PPV(String:$REDACTED$)], 
RA({.../resource/instance-3}mail):[PPV(String
:$REDACTED$)], 
RA({.../resource/instance-3}roomNumber):[PPV(String:$REDACTED$)], 
RA({.../resource/instance-3}telephoneNumber):[PPV(String:+49 $REDACTED$)]]]

 From the exception I don't understand which attributes or what is 
"immutable".

If I manually create an Entry on the LDAP server, I can link resource 
object to a user in midPoint. Also attribute synchronization

The same resource-config works with 4.9.x.

Any hints?


Thank you and best regards
   Oliver
-- 
Oliver Schonefeld
Leibniz-Institut für Deutsche Sprache, Informationstechnik (IT)
R5, 6-13, D-68161 Mannheim
+49 621 1581 168 | https://www.ids-mannheim.de

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4944 bytes
Desc: Kryptografische S/MIME-Signatur
URL: <https://lists.evolveum.com/pipermail/midpoint/attachments/20260320/dfb74b98/attachment-0001.bin>


More information about the midPoint mailing list