Advertisement
Guest User

Untitled

a guest
Oct 16th, 2017
441
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 381.91 KB | None | 0 0
  1. 10:11:04 2B431700 Drvrs: CADS ST:Start transaction.
  2. 10:11:04 2B431700 Drvrs: CADS ST:Processing events for transaction.
  3. 10:11:04 2B431700 Drvrs: CADS ST:
  4. <nds dtdversion="4.0" ndsversion="8.x">
  5. <source>
  6. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  7. <contact>NetIQ Corporation</contact>
  8. </source>
  9. <input>
  10. <modify cached-time="20171016161104.118Z" class-name="User" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  11. <modify-attr attr-name="ORGAccessCADS">
  12. <add-value>
  13. <value timestamp="1508170264#2" type="state">true</value>
  14. </add-value>
  15. </modify-attr>
  16. <modify-attr attr-name="ORGCADSgroup">
  17. <add-value>
  18. <value timestamp="1508170264#1" type="string">FACSN</value>
  19. </add-value>
  20. </modify-attr>
  21. </modify>
  22. </input>
  23. </nds>
  24. 10:11:04 2B431700 Drvrs: CADS ST:Applying event transformation policies.
  25. 10:11:04 2B431700 Drvrs: CADS ST:Applying policy: ORG-scoping-sub-etp.
  26. 10:11:04 2B431700 Drvrs: CADS ST: Applying to modify #1.
  27. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Veto if attributes not available'.
  28. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "add") = FALSE.
  29. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  30. 10:11:04 2B431700 Drvrs: CADS ST:Policy returned:
  31. 10:11:04 2B431700 Drvrs: CADS ST:
  32. <nds dtdversion="4.0" ndsversion="8.x">
  33. <source>
  34. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  35. <contact>NetIQ Corporation</contact>
  36. </source>
  37. <input>
  38. <modify cached-time="20171016161104.118Z" class-name="User" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  39. <modify-attr attr-name="ORGAccessCADS">
  40. <add-value>
  41. <value timestamp="1508170264#2" type="state">true</value>
  42. </add-value>
  43. </modify-attr>
  44. <modify-attr attr-name="ORGCADSgroup">
  45. <add-value>
  46. <value timestamp="1508170264#1" type="string">FACSN</value>
  47. </add-value>
  48. </modify-attr>
  49. </modify>
  50. </input>
  51. </nds>
  52. 10:11:04 2B431700 Drvrs: CADS ST:Applying policy: ORG-enable_disable-sub-etp.
  53. 10:11:04 2B431700 Drvrs: CADS ST: Applying to modify #1.
  54. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Purge user'.
  55. 10:11:04 2B431700 Drvrs: CADS ST: Query from policy
  56. 10:11:04 2B431700 Drvrs: CADS ST:
  57. <nds dtdversion="4.0" ndsversion="8.x">
  58. <source>
  59. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  60. <contact>NetIQ Corporation</contact>
  61. </source>
  62. <input>
  63. <query class-name="User" dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" scope="entry">
  64. <read-attr attr-name="ORGAccessCADS"/>
  65. <read-attr attr-name="ORGCADSgroup"/>
  66. </query>
  67. </input>
  68. </nds>
  69. 10:11:04 2B431700 Drvrs: CADS ST: Pumping XDS to eDirectory.
  70. 10:11:04 2B431700 Drvrs: CADS ST: Performing operation query for \ORG-IDV\ORG\data\users\employees\testuser.
  71. 10:11:04 2B431700 Drvrs: CADS ST: --JCLNT-- \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS : Duplicating : context = 1955071268, tempContext = 1955071285
  72. 10:11:04 2B431700 Drvrs: CADS ST: --JCLNT-- \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS : Calling free on tempContext = 1955071285
  73. 10:11:04 2B431700 Drvrs: CADS ST: Query from policy result
  74. 10:11:04 2B431700 Drvrs: CADS ST:
  75. <nds dtdversion="4.0" ndsversion="8.x">
  76. <source>
  77. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  78. <contact>NetIQ Corporation</contact>
  79. </source>
  80. <output>
  81. <instance class-name="User" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222">
  82. <attr attr-name="ORGAccessCADS">
  83. <value timestamp="1508170264#2" type="state">true</value>
  84. </attr>
  85. <attr attr-name="ORGCADSgroup">
  86. <value timestamp="1508170264#1" type="string">FACSN</value>
  87. </attr>
  88. </instance>
  89. <status level="success"></status>
  90. </output>
  91. </nds>
  92. 10:11:04 2B431700 Drvrs: CADS ST: (if-src-attr 'ORGAccessCADS' not-available) = FALSE.
  93. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  94. 10:11:04 2B431700 Drvrs: CADS ST:Policy returned:
  95. 10:11:04 2B431700 Drvrs: CADS ST:
  96. <nds dtdversion="4.0" ndsversion="8.x">
  97. <source>
  98. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  99. <contact>NetIQ Corporation</contact>
  100. </source>
  101. <input>
  102. <modify cached-time="20171016161104.118Z" class-name="User" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  103. <modify-attr attr-name="ORGAccessCADS">
  104. <add-value>
  105. <value timestamp="1508170264#2" type="state">true</value>
  106. </add-value>
  107. </modify-attr>
  108. <modify-attr attr-name="ORGCADSgroup">
  109. <add-value>
  110. <value timestamp="1508170264#1" type="string">FACSN</value>
  111. </add-value>
  112. </modify-attr>
  113. </modify>
  114. </input>
  115. </nds>
  116. 10:11:04 2B431700 Drvrs: CADS ST:Applying policy: ORG-set-division-sub-etp.
  117. 10:11:04 2B431700 Drvrs: CADS ST: Applying to modify #1.
  118. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Set division'.
  119. 10:11:04 2B431700 Drvrs: CADS ST: Query from policy
  120. 10:11:04 2B431700 Drvrs: CADS ST:
  121. <nds dtdversion="4.0" ndsversion="8.x">
  122. <source>
  123. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  124. <contact>NetIQ Corporation</contact>
  125. </source>
  126. <input>
  127. <query class-name="User" dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" scope="entry">
  128. <read-attr attr-name="ORGCADSgroup"/>
  129. </query>
  130. </input>
  131. </nds>
  132. 10:11:04 2B431700 Drvrs: CADS ST: Pumping XDS to eDirectory.
  133. 10:11:04 2B431700 Drvrs: CADS ST: Performing operation query for \ORG-IDV\ORG\data\users\employees\testuser.
  134. 10:11:04 2B431700 Drvrs: CADS ST: --JCLNT-- \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS : Duplicating : context = 1955071268, tempContext = 1955071285
  135. 10:11:04 2B431700 Drvrs: CADS ST: --JCLNT-- \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS : Calling free on tempContext = 1955071285
  136. 10:11:04 2B431700 Drvrs: CADS ST: Query from policy result
  137. 10:11:04 2B431700 Drvrs: CADS ST:
  138. <nds dtdversion="4.0" ndsversion="8.x">
  139. <source>
  140. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  141. <contact>NetIQ Corporation</contact>
  142. </source>
  143. <output>
  144. <instance class-name="User" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222">
  145. <attr attr-name="ORGCADSgroup">
  146. <value timestamp="1508170264#1" type="string">FACSN</value>
  147. </attr>
  148. </instance>
  149. <status level="success"></status>
  150. </output>
  151. </nds>
  152. 10:11:04 2B431700 Drvrs: CADS ST: (if-src-attr 'ORGCADSgroup' available) = TRUE.
  153. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  154. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Set division'.
  155. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  156. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  157. 10:11:04 2B431700 Drvrs: CADS ST: (if-src-attr 'ORGCADSgroup' equal "ASTUD") = FALSE.
  158. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  159. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  160. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  161. 10:11:04 2B431700 Drvrs: CADS ST: (if-src-attr 'ORGCADSgroup' equal "RSTUD") = FALSE.
  162. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  163. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  164. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  165. 10:11:04 2B431700 Drvrs: CADS ST: (if-src-attr 'ORGCADSgroup' equal "ACAAD") = FALSE.
  166. 10:11:04 2B431700 Drvrs: CADS ST: (if-src-attr 'ORGCADSgroup' equal "ACPIF") = FALSE.
  167. 10:11:04 2B431700 Drvrs: CADS ST: (if-src-attr 'ORGCADSgroup' equal "ACPTF") = FALSE.
  168. 10:11:04 2B431700 Drvrs: CADS ST: (if-src-attr 'ORGCADSgroup' equal "FACSN") = TRUE.
  169. 10:11:04 2B431700 Drvrs: CADS ST: Performing if actions.
  170. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("LV_Division",scope="driver","Academic Affairs Administration").
  171. 10:11:04 2B431700 Drvrs: CADS ST: arg-string("Academic Affairs Administration")
  172. 10:11:04 2B431700 Drvrs: CADS ST: token-text("Academic Affairs Administration")
  173. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "Academic Affairs Administration".
  174. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-break().
  175. 10:11:04 2B431700 Drvrs: CADS ST:Policy returned:
  176. 10:11:04 2B431700 Drvrs: CADS ST:
  177. <nds dtdversion="4.0" ndsversion="8.x">
  178. <source>
  179. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  180. <contact>NetIQ Corporation</contact>
  181. </source>
  182. <input>
  183. <modify cached-time="20171016161104.118Z" class-name="User" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  184. <modify-attr attr-name="ORGAccessCADS">
  185. <add-value>
  186. <value timestamp="1508170264#2" type="state">true</value>
  187. </add-value>
  188. </modify-attr>
  189. <modify-attr attr-name="ORGCADSgroup">
  190. <add-value>
  191. <value timestamp="1508170264#1" type="string">FACSN</value>
  192. </add-value>
  193. </modify-attr>
  194. </modify>
  195. </input>
  196. </nds>
  197. 10:11:04 2B431700 Drvrs: CADS ST:Subscriber processing modify for \ORG-IDV\ORG\data\users\employees\testuser.
  198. 10:11:04 2B431700 Drvrs: CADS ST:Converting <modify> to <add>
  199. 10:11:04 2B431700 Drvrs: CADS ST:Reading relevant attributes from \ORG-IDV\ORG\data\users\employees\testuser.
  200. 10:11:04 2B431700 Drvrs: CADS ST:
  201. <nds dtdversion="4.0" ndsversion="8.x">
  202. <source>
  203. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  204. <contact>NetIQ Corporation</contact>
  205. </source>
  206. <input>
  207. <query class-name="User" dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" scope="entry">
  208. <read-attr attr-name="Description"/>
  209. <read-attr attr-name="Facsimile Telephone Number"/>
  210. <read-attr attr-name="Full Name"/>
  211. <read-attr attr-name="Given Name"/>
  212. <read-attr attr-name="Initials"/>
  213. <read-attr attr-name="Internet EMail Address"/>
  214. <read-attr attr-name="ORGAccessCADS"/>
  215. <read-attr attr-name="ORGCADSgroup"/>
  216. <read-attr attr-name="L"/>
  217. <read-attr attr-name="Login Allowed Time Map"/>
  218. <read-attr attr-name="Login Disabled"/>
  219. <read-attr attr-name="Login Expiration Time"/>
  220. <read-attr attr-name="nspmDistributionPassword"/>
  221. <read-attr attr-name="Physical Delivery Office Name"/>
  222. <read-attr attr-name="Postal Code"/>
  223. <read-attr attr-name="Postal Office Box"/>
  224. <read-attr attr-name="S"/>
  225. <read-attr attr-name="SA"/>
  226. <read-attr attr-name="Surname"/>
  227. <read-attr attr-name="Telephone Number"/>
  228. <read-attr attr-name="Title"/>
  229. </query>
  230. </input>
  231. </nds>
  232. 10:11:04 2B431700 Drvrs: CADS ST:Pumping XDS to eDirectory.
  233. 10:11:04 2B431700 Drvrs: CADS ST:Performing operation query for \ORG-IDV\ORG\data\users\employees\testuser.
  234. 10:11:04 2B431700 Drvrs: CADS ST:--JCLNT-- \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS : Duplicating : context = 1955071268, tempContext = 1955071285
  235. 10:11:04 2B431700 Drvrs: CADS ST:--JCLNT-- \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS : Calling free on tempContext = 1955071285
  236. 10:11:04 2B431700 Drvrs: CADS ST:Read result:
  237. 10:11:04 2B431700 Drvrs: CADS ST:
  238. <nds dtdversion="4.0" ndsversion="8.x">
  239. <source>
  240. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  241. <contact>NetIQ Corporation</contact>
  242. </source>
  243. <output>
  244. <instance class-name="User" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222">
  245. <attr attr-name="Full Name">
  246. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  247. </attr>
  248. <attr attr-name="Given Name">
  249. <value timestamp="1496939376#7" type="string">Armando</value>
  250. </attr>
  251. <attr attr-name="Internet EMail Address">
  252. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  253. </attr>
  254. <attr attr-name="ORGAccessCADS">
  255. <value timestamp="1508170264#2" type="state">true</value>
  256. </attr>
  257. <attr attr-name="ORGCADSgroup">
  258. <value timestamp="1508170264#1" type="string">FACSN</value>
  259. </attr>
  260. <attr attr-name="nspmDistributionPassword" is-sensitive="true"><!-- content suppressed -->
  261. </attr>
  262. <attr attr-name="Surname">
  263. <value timestamp="1496939376#6" type="string">Anglesey</value>
  264. </attr>
  265. </instance>
  266. <status level="success"></status>
  267. </output>
  268. </nds>
  269. 10:11:04 2B431700 Drvrs: CADS ST:Synthetic add:
  270. 10:11:04 2B431700 Drvrs: CADS ST:
  271. <nds dtdversion="4.0" ndsversion="8.x">
  272. <source>
  273. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  274. <contact>NetIQ Corporation</contact>
  275. </source>
  276. <input>
  277. <add cached-time="20171016161104.118Z" class-name="User" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  278. <add-attr attr-name="Full Name">
  279. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  280. </add-attr>
  281. <add-attr attr-name="Given Name">
  282. <value timestamp="1496939376#7" type="string">Armando</value>
  283. </add-attr>
  284. <add-attr attr-name="Internet EMail Address">
  285. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  286. </add-attr>
  287. <add-attr attr-name="ORGAccessCADS">
  288. <value timestamp="1508170264#2" type="state">true</value>
  289. </add-attr>
  290. <add-attr attr-name="ORGCADSgroup">
  291. <value timestamp="1508170264#1" type="string">FACSN</value>
  292. </add-attr>
  293. <add-attr attr-name="nspmDistributionPassword" is-sensitive="true"><!-- content suppressed -->
  294. </add-attr>
  295. <add-attr attr-name="Surname">
  296. <value timestamp="1496939376#6" type="string">Anglesey</value>
  297. </add-attr>
  298. </add>
  299. </input>
  300. </nds>
  301. 10:11:04 2B431700 Drvrs: CADS ST:Password synchronization event detected.
  302. 10:11:04 2B431700 Drvrs: CADS ST:Password synchronization command detected.
  303. 10:11:04 2B431700 Drvrs: CADS ST:Applying object matching policies.
  304. 10:11:04 2B431700 Drvrs: CADS ST:Applying policy: NOVLADDCFG-sub-mp-Scoping.
  305. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  306. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'remember relative position in hierarchy'.
  307. 10:11:04 2B431700 Drvrs: CADS ST: (if-src-dn in-subtree "ORG\data\users") = TRUE.
  308. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-property 'attempt-to-match' not-equal "false") = TRUE.
  309. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  310. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'remember relative position in hierarchy'.
  311. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-set-op-property("unmatched-src-dn",token-unmatched-src-dn(convert="true")).
  312. 10:11:04 2B431700 Drvrs: CADS ST: arg-string(token-unmatched-src-dn(convert="true"))
  313. 10:11:04 2B431700 Drvrs: CADS ST: token-unmatched-src-dn(convert="true")
  314. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "CN=testuser,OU=employees".
  315. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "CN=testuser,OU=employees".
  316. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-set-op-property("attempt-to-match","true").
  317. 10:11:04 2B431700 Drvrs: CADS ST: arg-string("true")
  318. 10:11:04 2B431700 Drvrs: CADS ST: token-text("true")
  319. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "true".
  320. 10:11:04 2B431700 Drvrs: CADS ST:Policy returned:
  321. 10:11:04 2B431700 Drvrs: CADS ST:
  322. <nds dtdversion="4.0" ndsversion="8.x">
  323. <source>
  324. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  325. <contact>NetIQ Corporation</contact>
  326. </source>
  327. <input>
  328. <add cached-time="20171016161104.118Z" class-name="User" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  329. <add-attr attr-name="Full Name">
  330. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  331. </add-attr>
  332. <add-attr attr-name="Given Name">
  333. <value timestamp="1496939376#7" type="string">Armando</value>
  334. </add-attr>
  335. <add-attr attr-name="Internet EMail Address">
  336. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  337. </add-attr>
  338. <add-attr attr-name="ORGAccessCADS">
  339. <value timestamp="1508170264#2" type="state">true</value>
  340. </add-attr>
  341. <add-attr attr-name="ORGCADSgroup">
  342. <value timestamp="1508170264#1" type="string">FACSN</value>
  343. </add-attr>
  344. <add-attr attr-name="nspmDistributionPassword" is-sensitive="true"><!-- content suppressed -->
  345. </add-attr>
  346. <add-attr attr-name="Surname">
  347. <value timestamp="1496939376#6" type="string">Anglesey</value>
  348. </add-attr>
  349. <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees"/>
  350. </add>
  351. </input>
  352. </nds>
  353. 10:11:04 2B431700 Drvrs: CADS ST:Applying policy: NOVLADDCFG-sub-mp.
  354. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  355. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'veto out-of-scope events'.
  356. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-property 'attempt-to-match' not-available) = FALSE.
  357. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-property 'attempt-to-match' equal "false") = FALSE.
  358. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  359. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'generate full name if not in Identity Vault'.
  360. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "User") = TRUE.
  361. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'FullNameMap' equal "true") = TRUE.
  362. 10:11:04 2B431700 Drvrs: CADS ST: (if-attr 'Full Name' not-available) = FALSE.
  363. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  364. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'match users based on NT logon name'.
  365. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "User") = TRUE.
  366. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'LogonNameMap' equal "true") = TRUE.
  367. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  368. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'match users based on NT logon name'.
  369. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-find-matching-object(scope="subtree",arg-dn(token-global-variable("drv.user.container")),arg-match-attr("CN",token-replace-all("[^a-zA-Z0-9\x21\x23-\x29\x2d\x2e\x40\x5e-\x60\x7b\x7d\x7e\xc0-\xf6\xf8-\xff\u0410-\u044f]","",token-src-name()))).
  370. 10:11:04 2B431700 Drvrs: CADS ST: arg-dn(token-global-variable("drv.user.container"))
  371. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.user.container")
  372. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  373. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  374. 10:11:04 2B431700 Drvrs: CADS ST: arg-match-attr("CN",token-replace-all("[^a-zA-Z0-9\x21\x23-\x29\x2d\x2e\x40\x5e-\x60\x7b\x7d\x7e\xc0-\xf6\xf8-\xff\u0410-\u044f]","",token-src-name()))
  375. 10:11:04 2B431700 Drvrs: CADS ST: arg-string(token-replace-all("[^a-zA-Z0-9\x21\x23-\x29\x2d\x2e\x40\x5e-\x60\x7b\x7d\x7e\xc0-\xf6\xf8-\xff\u0410-\u044f]","",token-src-name()))
  376. 10:11:04 2B431700 Drvrs: CADS ST: token-replace-all("[^a-zA-Z0-9\x21\x23-\x29\x2d\x2e\x40\x5e-\x60\x7b\x7d\x7e\xc0-\xf6\xf8-\xff\u0410-\u044f]","",token-src-name())
  377. 10:11:04 2B431700 Drvrs: CADS ST: token-replace-all("[^a-zA-Z0-9\x21\x23-\x29\x2d\x2e\x40\x5e-\x60\x7b\x7d\x7e\xc0-\xf6\xf8-\xff\u0410-\u044f]","",token-src-name())
  378. 10:11:04 2B431700 Drvrs: CADS ST: token-src-name()
  379. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  380. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "testuser".
  381. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  382. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "testuser".
  383. 10:11:04 2B431700 Drvrs: CADS ST: Query from policy
  384. 10:11:04 2B431700 Drvrs: CADS ST:
  385. <nds dtdversion="4.0" ndsversion="8.x">
  386. <source>
  387. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  388. <contact>NetIQ Corporation</contact>
  389. </source>
  390. <input>
  391. <query class-name="User" dest-dn="OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" scope="subtree">
  392. <search-class class-name="User"/>
  393. <search-attr attr-name="CN">
  394. <value type="string">testuser</value>
  395. </search-attr>
  396. <read-attr/>
  397. </query>
  398. </input>
  399. </nds>
  400. 10:11:04 2B431700 Drvrs: CADS ST: Fixing up association references.
  401. 10:11:04 2B431700 Drvrs: CADS ST: Applying schema mapping policies to output.
  402. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  403. 10:11:04 2B431700 Drvrs: CADS ST: Mapping attr-name 'CN' to 'sAMAccountName'.
  404. 10:11:04 2B431700 Drvrs: CADS ST: Mapping class-name 'User' to 'user'.
  405. 10:11:04 2B431700 Drvrs: CADS ST: Mapping class-name 'User' to 'user'.
  406. 10:11:04 2B431700 Drvrs: CADS ST: Applying output transformation policies.
  407. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-FormatConversions.
  408. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  409. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Street Address: Convert LF to CR-LF'.
  410. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  411. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Street Address: Convert LF to CR-LF'.
  412. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("streetAddress",token-replace-all("[^\r]\n","\r\n",token-local-variable("current-value"))).
  413. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'logonHours: Convert to Active Directory form'.
  414. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  415. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'logonHours: Convert to Active Directory form'.
  416. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
  417. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'accountExpires: Convert to Active Directory form'.
  418. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'accountExpires' changing) = FALSE.
  419. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  420. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'lockoutTime: Convert to Active Directory form'.
  421. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'lockoutTime' available) = FALSE.
  422. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  423. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add: User - convert multi-valued Telephone to single value'.
  424. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "add") = FALSE.
  425. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  426. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'update Active Directory logon name'.
  427. 10:11:04 2B431700 Drvrs: CADS ST: (if-xpath true "self::status[@level = 'success']/operation-data/windows-2000-logon-name") = FALSE.
  428. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  429. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  430. 10:11:04 2B431700 Drvrs: CADS ST:
  431. <nds dtdversion="4.0" ndsversion="8.x">
  432. <source>
  433. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  434. <contact>NetIQ Corporation</contact>
  435. </source>
  436. <input>
  437. <query class-name="user" dest-dn="OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="subtree">
  438. <search-class class-name="user"/>
  439. <search-attr attr-name="sAMAccountName">
  440. <value type="string">testuser</value>
  441. </search-attr>
  442. <read-attr/>
  443. </query>
  444. </input>
  445. </nds>
  446. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-ExchangeEntitlementQuery.
  447. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  448. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add dest-dn to the Exchange Entitlement Query'.
  449. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "query") = TRUE.
  450. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "msExchPrivateMDB") = FALSE.
  451. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  452. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  453. 10:11:04 2B431700 Drvrs: CADS ST:
  454. <nds dtdversion="4.0" ndsversion="8.x">
  455. <source>
  456. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  457. <contact>NetIQ Corporation</contact>
  458. </source>
  459. <input>
  460. <query class-name="user" dest-dn="OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="subtree">
  461. <search-class class-name="user"/>
  462. <search-attr attr-name="sAMAccountName">
  463. <value type="string">testuser</value>
  464. </search-attr>
  465. <read-attr/>
  466. </query>
  467. </input>
  468. </nds>
  469. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-otp-EmailOnFailedPwdPub.
  470. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  471. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Send e-mail for a failed publish password operation'.
  472. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'notify-user-on-password-dist-failure' equal "true") = TRUE.
  473. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "status") = FALSE.
  474. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  475. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  476. 10:11:04 2B431700 Drvrs: CADS ST:
  477. <nds dtdversion="4.0" ndsversion="8.x">
  478. <source>
  479. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  480. <contact>NetIQ Corporation</contact>
  481. </source>
  482. <input>
  483. <query class-name="user" dest-dn="OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="subtree">
  484. <search-class class-name="user"/>
  485. <search-attr attr-name="sAMAccountName">
  486. <value type="string">testuser</value>
  487. </search-attr>
  488. <read-attr/>
  489. </query>
  490. </input>
  491. </nds>
  492. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-otp-Subscribe.
  493. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  494. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Do not process Account Tracking policies if modify with no source-dn '.
  495. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = FALSE.
  496. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  497. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - Initialize Realm Mapping'.
  498. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' equal "true") = TRUE.
  499. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  500. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  501. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - disregard if disabled or wrong object class'.
  502. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  503. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'AccountTracking - disregard if disabled or wrong object class'.
  504. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  505. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  506. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' not-equal "true") = FALSE.
  507. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  508. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-for-each(arg-node-set(token-global-variable("drv.acctTrk.objectClass"))).
  509. 10:11:04 2B431700 Drvrs: CADS ST: arg-node-set(token-global-variable("drv.acctTrk.objectClass"))
  510. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.acctTrk.objectClass")
  511. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: {"user"}.
  512. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: {"user"}.
  513. 10:11:04 2B431700 Drvrs: CADS ST: Performing actions for local-variable(current-node) = "user".
  514. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  515. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  516. 10:11:04 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'user'.
  517. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "$current-node$") = TRUE.
  518. 10:11:04 2B431700 Drvrs: CADS ST: Performing if actions.
  519. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("pass",scope="policy","true").
  520. 10:11:04 2B431700 Drvrs: CADS ST: arg-string("true")
  521. 10:11:04 2B431700 Drvrs: CADS ST: token-text("true")
  522. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "true".
  523. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  524. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  525. 10:11:04 2B431700 Drvrs: CADS ST: (if-local-variable 'pass' not-available) = FALSE.
  526. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  527. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - add operation-data for regular operations'.
  528. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  529. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  530. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - add operation-data for mapped operations'.
  531. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  532. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  533. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - strip AccountTrackingAccountStatus attribute'.
  534. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'AccountTrackingAccountStatus' available) = FALSE.
  535. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  536. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  537. 10:11:04 2B431700 Drvrs: CADS ST:
  538. <nds dtdversion="4.0" ndsversion="8.x">
  539. <source>
  540. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  541. <contact>NetIQ Corporation</contact>
  542. </source>
  543. <input>
  544. <query class-name="user" dest-dn="OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="subtree">
  545. <search-class class-name="user"/>
  546. <search-attr attr-name="sAMAccountName">
  547. <value type="string">testuser</value>
  548. </search-attr>
  549. <read-attr/>
  550. </query>
  551. </input>
  552. </nds>
  553. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  554. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  555. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  556. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  557. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  558. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  559. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  560. 10:11:04 2B431700 Drvrs: CADS ST:
  561. <nds dtdversion="4.0" ndsversion="8.x">
  562. <source>
  563. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  564. <contact>NetIQ Corporation</contact>
  565. </source>
  566. <input>
  567. <query class-name="user" dest-dn="OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="subtree">
  568. <search-class class-name="user"/>
  569. <search-attr attr-name="sAMAccountName">
  570. <value type="string">testuser</value>
  571. </search-attr>
  572. <read-attr/>
  573. </query>
  574. </input>
  575. </nds>
  576. 10/16/2017
  577. 10:11:04 2B431700 Drvrs: CADS ST: Submitting document to subscriber shim:
  578. 10:11:04 2B431700 Drvrs: CADS ST:
  579. <nds dtdversion="4.0" ndsversion="8.x">
  580. <source>
  581. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  582. <contact>NetIQ Corporation</contact>
  583. </source>
  584. <input>
  585. <query class-name="user" dest-dn="OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="subtree">
  586. <search-class class-name="user"/>
  587. <search-attr attr-name="sAMAccountName">
  588. <value type="string">testuser</value>
  589. </search-attr>
  590. <read-attr/>
  591. </query>
  592. </input>
  593. </nds>
  594. 10:11:04 2B431700 Drvrs: CADS ST: Remote Interface Driver: Sending...
  595. 10:11:04 2B431700 Drvrs: CADS ST:
  596. <nds dtdversion="4.0" ndsversion="8.x">
  597. <source>
  598. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  599. <contact>NetIQ Corporation</contact>
  600. </source>
  601. <input>
  602. <query class-name="user" dest-dn="OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="subtree">
  603. <search-class class-name="user"/>
  604. <search-attr attr-name="sAMAccountName">
  605. <value type="string">testuser</value>
  606. </search-attr>
  607. <read-attr/>
  608. </query>
  609. </input>
  610. </nds>
  611. 10:11:04 2B431700 Drvrs: CADS ST: Remote Interface Driver: Document sent.
  612. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Received.
  613. 10:11:04 2BA58700 Drvrs: CADS :
  614. <nds dtdversion="1.1" ndsversion="8.7">
  615. <source>
  616. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  617. <contact>NetIQ Corporation</contact>
  618. </source>
  619. <output>
  620. <status event-id="0" level="success"/>
  621. </output>
  622. </nds>
  623. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Received document for subscriber channel
  624. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Waiting for receive...
  625. 10:11:04 2B431700 Drvrs: CADS ST: SubscriptionShim.execute() returned:
  626. 10:11:04 2B431700 Drvrs: CADS ST:
  627. <nds dtdversion="1.1" ndsversion="8.7">
  628. <source>
  629. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  630. <contact>NetIQ Corporation</contact>
  631. </source>
  632. <output>
  633. <status event-id="0" level="success"/>
  634. </output>
  635. </nds>
  636. 10:11:04 2B431700 Drvrs: CADS ST: Applying input transformation policies.
  637. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  638. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  639. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  640. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  641. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  642. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  643. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  644. 10:11:04 2B431700 Drvrs: CADS ST:
  645. <nds dtdversion="1.1" ndsversion="8.7">
  646. <source>
  647. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  648. <contact>NetIQ Corporation</contact>
  649. </source>
  650. <output>
  651. <status event-id="0" level="success"/>
  652. </output>
  653. </nds>
  654. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-Publish.
  655. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  656. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  657. 10:11:04 2B431700 Drvrs: CADS ST:
  658. <nds dtdversion="1.1" ndsversion="8.7">
  659. <source>
  660. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  661. <contact>NetIQ Corporation</contact>
  662. </source>
  663. <output>
  664. <status event-id="0" level="success"/>
  665. </output>
  666. </nds>
  667. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: Scope.
  668. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  669. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Vetos adds and moves'.
  670. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  671. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  672. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  673. 10:11:04 2B431700 Drvrs: CADS ST:
  674. <nds dtdversion="1.1" ndsversion="8.7">
  675. <source>
  676. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  677. <contact>NetIQ Corporation</contact>
  678. </source>
  679. <output>
  680. <status event-id="0" level="success"/>
  681. </output>
  682. </nds>
  683. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-WriteAccounts.
  684. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  685. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  686. 10:11:04 2B431700 Drvrs: CADS ST:
  687. <nds dtdversion="1.1" ndsversion="8.7">
  688. <source>
  689. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  690. <contact>NetIQ Corporation</contact>
  691. </source>
  692. <output>
  693. <status event-id="0" level="success"/>
  694. </output>
  695. </nds>
  696. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-SubscriberUserAdd.
  697. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  698. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  699. 10:11:04 2B431700 Drvrs: CADS ST:
  700. <nds dtdversion="1.1" ndsversion="8.7">
  701. <source>
  702. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  703. <contact>NetIQ Corporation</contact>
  704. </source>
  705. <output>
  706. <status event-id="0" level="success"/>
  707. </output>
  708. </nds>
  709. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-FormatConversions.
  710. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  711. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  712. 10:11:04 2B431700 Drvrs: CADS ST:
  713. <nds dtdversion="1.1" ndsversion="8.7">
  714. <source>
  715. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  716. <contact>NetIQ Corporation</contact>
  717. </source>
  718. <output>
  719. <status event-id="0" level="success"/>
  720. </output>
  721. </nds>
  722. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-itp-EmailOnFailedPwdSub.
  723. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  724. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  725. 10:11:04 2B431700 Drvrs: CADS ST:
  726. <nds dtdversion="1.1" ndsversion="8.7">
  727. <source>
  728. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  729. <contact>NetIQ Corporation</contact>
  730. </source>
  731. <output>
  732. <status event-id="0" level="success"/>
  733. </output>
  734. </nds>
  735. 10:11:04 2B431700 Drvrs: CADS ST: Applying schema mapping policies to input.
  736. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  737. 10:11:04 2B431700 Drvrs: CADS ST: Resolving association references.
  738. 10:11:04 2B431700 Drvrs: CADS ST: Query from policy result
  739. 10:11:04 2B431700 Drvrs: CADS ST:
  740. <nds dtdversion="1.1" ndsversion="8.7">
  741. <source>
  742. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  743. <contact>NetIQ Corporation</contact>
  744. </source>
  745. <output>
  746. <status event-id="0" level="success"/>
  747. </output>
  748. </nds>
  749. 10:11:04 2B431700 Drvrs: CADS ST: No matches found.
  750. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'match users based on full name'.
  751. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "User") = TRUE.
  752. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'FullNameMap' equal "true") = TRUE.
  753. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'Full Name' available) = TRUE.
  754. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  755. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'match users based on full name'.
  756. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  757. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  758. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.subPlacementType' equal "flat") = TRUE.
  759. 10:11:04 2B431700 Drvrs: CADS ST: Performing if actions.
  760. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-find-matching-object(scope="entry",arg-dn("CN="+token-escape-for-dest-dn(token-attr("Full Name"))+","+token-global-variable("drv.user.container"))).
  761. 10:11:04 2B431700 Drvrs: CADS ST: arg-dn("CN="+token-escape-for-dest-dn(token-attr("Full Name"))+","+token-global-variable("drv.user.container"))
  762. 10:11:04 2B431700 Drvrs: CADS ST: token-text("CN=")
  763. 10:11:04 2B431700 Drvrs: CADS ST: token-escape-for-dest-dn(token-attr("Full Name"))
  764. 10:11:04 2B431700 Drvrs: CADS ST: token-escape-for-dest-dn(token-attr("Full Name"))
  765. 10:11:04 2B431700 Drvrs: CADS ST: token-attr("Full Name")
  766. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "Anglesey, Armando".
  767. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "Anglesey, Armando".
  768. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "Anglesey\, Armando".
  769. 10:11:04 2B431700 Drvrs: CADS ST: token-text(",")
  770. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.user.container")
  771. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  772. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "CN=Anglesey\, Armando,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  773. 10:11:04 2B431700 Drvrs: CADS ST: Query from policy
  774. 10:11:04 2B431700 Drvrs: CADS ST:
  775. <nds dtdversion="4.0" ndsversion="8.x">
  776. <source>
  777. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  778. <contact>NetIQ Corporation</contact>
  779. </source>
  780. <input>
  781. <query class-name="User" dest-dn="CN=Anglesey\, Armando,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" scope="entry">
  782. <search-class class-name="User"/>
  783. <read-attr/>
  784. </query>
  785. </input>
  786. </nds>
  787. 10:11:04 2B431700 Drvrs: CADS ST: Fixing up association references.
  788. 10:11:04 2B431700 Drvrs: CADS ST: Applying schema mapping policies to output.
  789. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  790. 10:11:04 2B431700 Drvrs: CADS ST: Mapping class-name 'User' to 'user'.
  791. 10:11:04 2B431700 Drvrs: CADS ST: Mapping class-name 'User' to 'user'.
  792. 10:11:04 2B431700 Drvrs: CADS ST: Applying output transformation policies.
  793. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-FormatConversions.
  794. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  795. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Street Address: Convert LF to CR-LF'.
  796. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  797. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Street Address: Convert LF to CR-LF'.
  798. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("streetAddress",token-replace-all("[^\r]\n","\r\n",token-local-variable("current-value"))).
  799. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'logonHours: Convert to Active Directory form'.
  800. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  801. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'logonHours: Convert to Active Directory form'.
  802. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
  803. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'accountExpires: Convert to Active Directory form'.
  804. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'accountExpires' changing) = FALSE.
  805. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  806. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'lockoutTime: Convert to Active Directory form'.
  807. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'lockoutTime' available) = FALSE.
  808. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  809. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add: User - convert multi-valued Telephone to single value'.
  810. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "add") = FALSE.
  811. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  812. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'update Active Directory logon name'.
  813. 10:11:04 2B431700 Drvrs: CADS ST: (if-xpath true "self::status[@level = 'success']/operation-data/windows-2000-logon-name") = FALSE.
  814. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  815. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  816. 10:11:04 2B431700 Drvrs: CADS ST:
  817. <nds dtdversion="4.0" ndsversion="8.x">
  818. <source>
  819. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  820. <contact>NetIQ Corporation</contact>
  821. </source>
  822. <input>
  823. <query class-name="user" dest-dn="CN=Anglesey\, Armando,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  824. <search-class class-name="user"/>
  825. <read-attr/>
  826. </query>
  827. </input>
  828. </nds>
  829. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-ExchangeEntitlementQuery.
  830. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  831. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add dest-dn to the Exchange Entitlement Query'.
  832. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "query") = TRUE.
  833. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "msExchPrivateMDB") = FALSE.
  834. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  835. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  836. 10:11:04 2B431700 Drvrs: CADS ST:
  837. <nds dtdversion="4.0" ndsversion="8.x">
  838. <source>
  839. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  840. <contact>NetIQ Corporation</contact>
  841. </source>
  842. <input>
  843. <query class-name="user" dest-dn="CN=Anglesey\, Armando,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  844. <search-class class-name="user"/>
  845. <read-attr/>
  846. </query>
  847. </input>
  848. </nds>
  849. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-otp-EmailOnFailedPwdPub.
  850. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  851. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Send e-mail for a failed publish password operation'.
  852. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'notify-user-on-password-dist-failure' equal "true") = TRUE.
  853. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "status") = FALSE.
  854. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  855. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  856. 10:11:04 2B431700 Drvrs: CADS ST:
  857. <nds dtdversion="4.0" ndsversion="8.x">
  858. <source>
  859. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  860. <contact>NetIQ Corporation</contact>
  861. </source>
  862. <input>
  863. <query class-name="user" dest-dn="CN=Anglesey\, Armando,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  864. <search-class class-name="user"/>
  865. <read-attr/>
  866. </query>
  867. </input>
  868. </nds>
  869. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-otp-Subscribe.
  870. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  871. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Do not process Account Tracking policies if modify with no source-dn '.
  872. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = FALSE.
  873. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  874. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - Initialize Realm Mapping'.
  875. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' equal "true") = TRUE.
  876. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  877. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  878. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - disregard if disabled or wrong object class'.
  879. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  880. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'AccountTracking - disregard if disabled or wrong object class'.
  881. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  882. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  883. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' not-equal "true") = FALSE.
  884. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  885. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-for-each(arg-node-set(token-global-variable("drv.acctTrk.objectClass"))).
  886. 10:11:04 2B431700 Drvrs: CADS ST: arg-node-set(token-global-variable("drv.acctTrk.objectClass"))
  887. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.acctTrk.objectClass")
  888. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: {"user"}.
  889. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: {"user"}.
  890. 10:11:04 2B431700 Drvrs: CADS ST: Performing actions for local-variable(current-node) = "user".
  891. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  892. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  893. 10:11:04 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'user'.
  894. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "$current-node$") = TRUE.
  895. 10:11:04 2B431700 Drvrs: CADS ST: Performing if actions.
  896. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("pass",scope="policy","true").
  897. 10:11:04 2B431700 Drvrs: CADS ST: arg-string("true")
  898. 10:11:04 2B431700 Drvrs: CADS ST: token-text("true")
  899. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "true".
  900. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  901. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  902. 10:11:04 2B431700 Drvrs: CADS ST: (if-local-variable 'pass' not-available) = FALSE.
  903. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  904. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - add operation-data for regular operations'.
  905. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  906. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  907. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - add operation-data for mapped operations'.
  908. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  909. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  910. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - strip AccountTrackingAccountStatus attribute'.
  911. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'AccountTrackingAccountStatus' available) = FALSE.
  912. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  913. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  914. 10:11:04 2B431700 Drvrs: CADS ST:
  915. <nds dtdversion="4.0" ndsversion="8.x">
  916. <source>
  917. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  918. <contact>NetIQ Corporation</contact>
  919. </source>
  920. <input>
  921. <query class-name="user" dest-dn="CN=Anglesey\, Armando,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  922. <search-class class-name="user"/>
  923. <read-attr/>
  924. </query>
  925. </input>
  926. </nds>
  927. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  928. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  929. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  930. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  931. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  932. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  933. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  934. 10:11:04 2B431700 Drvrs: CADS ST:
  935. <nds dtdversion="4.0" ndsversion="8.x">
  936. <source>
  937. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  938. <contact>NetIQ Corporation</contact>
  939. </source>
  940. <input>
  941. <query class-name="user" dest-dn="CN=Anglesey\, Armando,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  942. <search-class class-name="user"/>
  943. <read-attr/>
  944. </query>
  945. </input>
  946. </nds>
  947. 10:11:04 2B431700 Drvrs: CADS ST: Submitting document to subscriber shim:
  948. 10:11:04 2B431700 Drvrs: CADS ST:
  949. <nds dtdversion="4.0" ndsversion="8.x">
  950. <source>
  951. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  952. <contact>NetIQ Corporation</contact>
  953. </source>
  954. <input>
  955. <query class-name="user" dest-dn="CN=Anglesey\, Armando,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  956. <search-class class-name="user"/>
  957. <read-attr/>
  958. </query>
  959. </input>
  960. </nds>
  961. 10:11:04 2B431700 Drvrs: CADS ST: Remote Interface Driver: Sending...
  962. 10:11:04 2B431700 Drvrs: CADS ST:
  963. <nds dtdversion="4.0" ndsversion="8.x">
  964. <source>
  965. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  966. <contact>NetIQ Corporation</contact>
  967. </source>
  968. <input>
  969. <query class-name="user" dest-dn="CN=Anglesey\, Armando,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  970. <search-class class-name="user"/>
  971. <read-attr/>
  972. </query>
  973. </input>
  974. </nds>
  975. 10:11:04 2B431700 Drvrs: CADS ST: Remote Interface Driver: Document sent.
  976. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Received.
  977. 10:11:04 2BA58700 Drvrs: CADS :
  978. <nds dtdversion="1.1" ndsversion="8.7">
  979. <source>
  980. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  981. <contact>NetIQ Corporation</contact>
  982. </source>
  983. <output>
  984. <status event-id="0" level="success"/>
  985. </output>
  986. </nds>
  987. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Received document for subscriber channel
  988. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Waiting for receive...
  989. 10:11:04 2B431700 Drvrs: CADS ST: SubscriptionShim.execute() returned:
  990. 10:11:04 2B431700 Drvrs: CADS ST:
  991. <nds dtdversion="1.1" ndsversion="8.7">
  992. <source>
  993. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  994. <contact>NetIQ Corporation</contact>
  995. </source>
  996. <output>
  997. <status event-id="0" level="success"/>
  998. </output>
  999. </nds>
  1000. 10:11:04 2B431700 Drvrs: CADS ST: Applying input transformation policies.
  1001. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  1002. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  1003. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  1004. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1005. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  1006. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  1007. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1008. 10:11:04 2B431700 Drvrs: CADS ST:
  1009. <nds dtdversion="1.1" ndsversion="8.7">
  1010. <source>
  1011. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1012. <contact>NetIQ Corporation</contact>
  1013. </source>
  1014. <output>
  1015. <status event-id="0" level="success"/>
  1016. </output>
  1017. </nds>
  1018. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-Publish.
  1019. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  1020. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1021. 10:11:04 2B431700 Drvrs: CADS ST:
  1022. <nds dtdversion="1.1" ndsversion="8.7">
  1023. <source>
  1024. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1025. <contact>NetIQ Corporation</contact>
  1026. </source>
  1027. <output>
  1028. <status event-id="0" level="success"/>
  1029. </output>
  1030. </nds>
  1031. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: Scope.
  1032. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  1033. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Vetos adds and moves'.
  1034. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  1035. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1036. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1037. 10:11:04 2B431700 Drvrs: CADS ST:
  1038. <nds dtdversion="1.1" ndsversion="8.7">
  1039. <source>
  1040. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1041. <contact>NetIQ Corporation</contact>
  1042. </source>
  1043. <output>
  1044. <status event-id="0" level="success"/>
  1045. </output>
  1046. </nds>
  1047. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-WriteAccounts.
  1048. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  1049. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1050. 10:11:04 2B431700 Drvrs: CADS ST:
  1051. <nds dtdversion="1.1" ndsversion="8.7">
  1052. <source>
  1053. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1054. <contact>NetIQ Corporation</contact>
  1055. </source>
  1056. <output>
  1057. <status event-id="0" level="success"/>
  1058. </output>
  1059. </nds>
  1060. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-SubscriberUserAdd.
  1061. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  1062. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1063. 10:11:04 2B431700 Drvrs: CADS ST:
  1064. <nds dtdversion="1.1" ndsversion="8.7">
  1065. <source>
  1066. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1067. <contact>NetIQ Corporation</contact>
  1068. </source>
  1069. <output>
  1070. <status event-id="0" level="success"/>
  1071. </output>
  1072. </nds>
  1073. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-FormatConversions.
  1074. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  1075. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1076. 10:11:04 2B431700 Drvrs: CADS ST:
  1077. <nds dtdversion="1.1" ndsversion="8.7">
  1078. <source>
  1079. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1080. <contact>NetIQ Corporation</contact>
  1081. </source>
  1082. <output>
  1083. <status event-id="0" level="success"/>
  1084. </output>
  1085. </nds>
  1086. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-itp-EmailOnFailedPwdSub.
  1087. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  1088. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1089. 10:11:04 2B431700 Drvrs: CADS ST:
  1090. <nds dtdversion="1.1" ndsversion="8.7">
  1091. <source>
  1092. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1093. <contact>NetIQ Corporation</contact>
  1094. </source>
  1095. <output>
  1096. <status event-id="0" level="success"/>
  1097. </output>
  1098. </nds>
  1099. 10:11:04 2B431700 Drvrs: CADS ST: Applying schema mapping policies to input.
  1100. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  1101. 10:11:04 2B431700 Drvrs: CADS ST: Resolving association references.
  1102. 10:11:04 2B431700 Drvrs: CADS ST: Query from policy result
  1103. 10:11:04 2B431700 Drvrs: CADS ST:
  1104. <nds dtdversion="1.1" ndsversion="8.7">
  1105. <source>
  1106. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1107. <contact>NetIQ Corporation</contact>
  1108. </source>
  1109. <output>
  1110. <status event-id="0" level="success"/>
  1111. </output>
  1112. </nds>
  1113. 10:11:04 2B431700 Drvrs: CADS ST: No matches found.
  1114. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'match everything else'.
  1115. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1116. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'match everything else'.
  1117. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  1118. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  1119. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.subPlacementType' equal "flat") = TRUE.
  1120. 10:11:04 2B431700 Drvrs: CADS ST: Performing if actions.
  1121. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-find-matching-object(scope="entry",arg-dn(token-src-dn(convert="true",length="1",start="-1")+","+token-global-variable("drv.user.container"))).
  1122. 10:11:04 2B431700 Drvrs: CADS ST: arg-dn(token-src-dn(convert="true",length="1",start="-1")+","+token-global-variable("drv.user.container"))
  1123. 10:11:04 2B431700 Drvrs: CADS ST: token-src-dn(convert="true",length="1",start="-1")
  1124. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "CN=testuser".
  1125. 10:11:04 2B431700 Drvrs: CADS ST: token-text(",")
  1126. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.user.container")
  1127. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  1128. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "CN=testuser,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  1129. 10:11:04 2B431700 Drvrs: CADS ST: Query from policy
  1130. 10:11:04 2B431700 Drvrs: CADS ST:
  1131. <nds dtdversion="4.0" ndsversion="8.x">
  1132. <source>
  1133. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1134. <contact>NetIQ Corporation</contact>
  1135. </source>
  1136. <input>
  1137. <query class-name="User" dest-dn="CN=testuser,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" scope="entry">
  1138. <search-class class-name="User"/>
  1139. <read-attr/>
  1140. </query>
  1141. </input>
  1142. </nds>
  1143. 10:11:04 2B431700 Drvrs: CADS ST: Fixing up association references.
  1144. 10:11:04 2B431700 Drvrs: CADS ST: Applying schema mapping policies to output.
  1145. 10/16/2017
  1146. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  1147. 10:11:04 2B431700 Drvrs: CADS ST: Mapping class-name 'User' to 'user'.
  1148. 10:11:04 2B431700 Drvrs: CADS ST: Mapping class-name 'User' to 'user'.
  1149. 10:11:04 2B431700 Drvrs: CADS ST: Applying output transformation policies.
  1150. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-FormatConversions.
  1151. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  1152. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Street Address: Convert LF to CR-LF'.
  1153. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1154. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Street Address: Convert LF to CR-LF'.
  1155. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("streetAddress",token-replace-all("[^\r]\n","\r\n",token-local-variable("current-value"))).
  1156. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'logonHours: Convert to Active Directory form'.
  1157. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1158. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'logonHours: Convert to Active Directory form'.
  1159. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
  1160. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'accountExpires: Convert to Active Directory form'.
  1161. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'accountExpires' changing) = FALSE.
  1162. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1163. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'lockoutTime: Convert to Active Directory form'.
  1164. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'lockoutTime' available) = FALSE.
  1165. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1166. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add: User - convert multi-valued Telephone to single value'.
  1167. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "add") = FALSE.
  1168. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1169. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'update Active Directory logon name'.
  1170. 10:11:04 2B431700 Drvrs: CADS ST: (if-xpath true "self::status[@level = 'success']/operation-data/windows-2000-logon-name") = FALSE.
  1171. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1172. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1173. 10:11:04 2B431700 Drvrs: CADS ST:
  1174. <nds dtdversion="4.0" ndsversion="8.x">
  1175. <source>
  1176. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1177. <contact>NetIQ Corporation</contact>
  1178. </source>
  1179. <input>
  1180. <query class-name="user" dest-dn="CN=testuser,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  1181. <search-class class-name="user"/>
  1182. <read-attr/>
  1183. </query>
  1184. </input>
  1185. </nds>
  1186. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-ExchangeEntitlementQuery.
  1187. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  1188. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add dest-dn to the Exchange Entitlement Query'.
  1189. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "query") = TRUE.
  1190. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "msExchPrivateMDB") = FALSE.
  1191. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1192. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1193. 10:11:04 2B431700 Drvrs: CADS ST:
  1194. <nds dtdversion="4.0" ndsversion="8.x">
  1195. <source>
  1196. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1197. <contact>NetIQ Corporation</contact>
  1198. </source>
  1199. <input>
  1200. <query class-name="user" dest-dn="CN=testuser,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  1201. <search-class class-name="user"/>
  1202. <read-attr/>
  1203. </query>
  1204. </input>
  1205. </nds>
  1206. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-otp-EmailOnFailedPwdPub.
  1207. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  1208. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Send e-mail for a failed publish password operation'.
  1209. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'notify-user-on-password-dist-failure' equal "true") = TRUE.
  1210. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "status") = FALSE.
  1211. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1212. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1213. 10:11:04 2B431700 Drvrs: CADS ST:
  1214. <nds dtdversion="4.0" ndsversion="8.x">
  1215. <source>
  1216. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1217. <contact>NetIQ Corporation</contact>
  1218. </source>
  1219. <input>
  1220. <query class-name="user" dest-dn="CN=testuser,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  1221. <search-class class-name="user"/>
  1222. <read-attr/>
  1223. </query>
  1224. </input>
  1225. </nds>
  1226. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-otp-Subscribe.
  1227. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  1228. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Do not process Account Tracking policies if modify with no source-dn '.
  1229. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = FALSE.
  1230. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1231. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - Initialize Realm Mapping'.
  1232. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' equal "true") = TRUE.
  1233. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  1234. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1235. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - disregard if disabled or wrong object class'.
  1236. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1237. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'AccountTracking - disregard if disabled or wrong object class'.
  1238. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  1239. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  1240. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' not-equal "true") = FALSE.
  1241. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  1242. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-for-each(arg-node-set(token-global-variable("drv.acctTrk.objectClass"))).
  1243. 10:11:04 2B431700 Drvrs: CADS ST: arg-node-set(token-global-variable("drv.acctTrk.objectClass"))
  1244. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.acctTrk.objectClass")
  1245. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: {"user"}.
  1246. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: {"user"}.
  1247. 10:11:04 2B431700 Drvrs: CADS ST: Performing actions for local-variable(current-node) = "user".
  1248. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  1249. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  1250. 10:11:04 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'user'.
  1251. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "$current-node$") = TRUE.
  1252. 10:11:04 2B431700 Drvrs: CADS ST: Performing if actions.
  1253. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("pass",scope="policy","true").
  1254. 10:11:04 2B431700 Drvrs: CADS ST: arg-string("true")
  1255. 10:11:04 2B431700 Drvrs: CADS ST: token-text("true")
  1256. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "true".
  1257. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  1258. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  1259. 10:11:04 2B431700 Drvrs: CADS ST: (if-local-variable 'pass' not-available) = FALSE.
  1260. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  1261. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - add operation-data for regular operations'.
  1262. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  1263. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1264. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - add operation-data for mapped operations'.
  1265. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  1266. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1267. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - strip AccountTrackingAccountStatus attribute'.
  1268. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'AccountTrackingAccountStatus' available) = FALSE.
  1269. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1270. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1271. 10:11:04 2B431700 Drvrs: CADS ST:
  1272. <nds dtdversion="4.0" ndsversion="8.x">
  1273. <source>
  1274. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1275. <contact>NetIQ Corporation</contact>
  1276. </source>
  1277. <input>
  1278. <query class-name="user" dest-dn="CN=testuser,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  1279. <search-class class-name="user"/>
  1280. <read-attr/>
  1281. </query>
  1282. </input>
  1283. </nds>
  1284. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  1285. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  1286. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  1287. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1288. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  1289. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  1290. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1291. 10:11:04 2B431700 Drvrs: CADS ST:
  1292. <nds dtdversion="4.0" ndsversion="8.x">
  1293. <source>
  1294. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1295. <contact>NetIQ Corporation</contact>
  1296. </source>
  1297. <input>
  1298. <query class-name="user" dest-dn="CN=testuser,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  1299. <search-class class-name="user"/>
  1300. <read-attr/>
  1301. </query>
  1302. </input>
  1303. </nds>
  1304. 10:11:04 2B431700 Drvrs: CADS ST: Submitting document to subscriber shim:
  1305. 10:11:04 2B431700 Drvrs: CADS ST:
  1306. <nds dtdversion="4.0" ndsversion="8.x">
  1307. <source>
  1308. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1309. <contact>NetIQ Corporation</contact>
  1310. </source>
  1311. <input>
  1312. <query class-name="user" dest-dn="CN=testuser,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  1313. <search-class class-name="user"/>
  1314. <read-attr/>
  1315. </query>
  1316. </input>
  1317. </nds>
  1318. 10:11:04 2B431700 Drvrs: CADS ST: Remote Interface Driver: Sending...
  1319. 10:11:04 2B431700 Drvrs: CADS ST:
  1320. <nds dtdversion="4.0" ndsversion="8.x">
  1321. <source>
  1322. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1323. <contact>NetIQ Corporation</contact>
  1324. </source>
  1325. <input>
  1326. <query class-name="user" dest-dn="CN=testuser,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  1327. <search-class class-name="user"/>
  1328. <read-attr/>
  1329. </query>
  1330. </input>
  1331. </nds>
  1332. 10:11:04 2B431700 Drvrs: CADS ST: Remote Interface Driver: Document sent.
  1333. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Received.
  1334. 10:11:04 2BA58700 Drvrs: CADS :
  1335. <nds dtdversion="1.1" ndsversion="8.7">
  1336. <source>
  1337. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1338. <contact>NetIQ Corporation</contact>
  1339. </source>
  1340. <output>
  1341. <status event-id="0" level="success"/>
  1342. </output>
  1343. </nds>
  1344. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Received document for subscriber channel
  1345. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Waiting for receive...
  1346. 10:11:04 2B431700 Drvrs: CADS ST: SubscriptionShim.execute() returned:
  1347. 10:11:04 2B431700 Drvrs: CADS ST:
  1348. <nds dtdversion="1.1" ndsversion="8.7">
  1349. <source>
  1350. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1351. <contact>NetIQ Corporation</contact>
  1352. </source>
  1353. <output>
  1354. <status event-id="0" level="success"/>
  1355. </output>
  1356. </nds>
  1357. 10:11:04 2B431700 Drvrs: CADS ST: Applying input transformation policies.
  1358. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  1359. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  1360. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  1361. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1362. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  1363. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  1364. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1365. 10:11:04 2B431700 Drvrs: CADS ST:
  1366. <nds dtdversion="1.1" ndsversion="8.7">
  1367. <source>
  1368. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1369. <contact>NetIQ Corporation</contact>
  1370. </source>
  1371. <output>
  1372. <status event-id="0" level="success"/>
  1373. </output>
  1374. </nds>
  1375. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-Publish.
  1376. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  1377. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1378. 10:11:04 2B431700 Drvrs: CADS ST:
  1379. <nds dtdversion="1.1" ndsversion="8.7">
  1380. <source>
  1381. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1382. <contact>NetIQ Corporation</contact>
  1383. </source>
  1384. <output>
  1385. <status event-id="0" level="success"/>
  1386. </output>
  1387. </nds>
  1388. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: Scope.
  1389. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  1390. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Vetos adds and moves'.
  1391. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  1392. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1393. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1394. 10:11:04 2B431700 Drvrs: CADS ST:
  1395. <nds dtdversion="1.1" ndsversion="8.7">
  1396. <source>
  1397. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1398. <contact>NetIQ Corporation</contact>
  1399. </source>
  1400. <output>
  1401. <status event-id="0" level="success"/>
  1402. </output>
  1403. </nds>
  1404. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-WriteAccounts.
  1405. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  1406. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1407. 10:11:04 2B431700 Drvrs: CADS ST:
  1408. <nds dtdversion="1.1" ndsversion="8.7">
  1409. <source>
  1410. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1411. <contact>NetIQ Corporation</contact>
  1412. </source>
  1413. <output>
  1414. <status event-id="0" level="success"/>
  1415. </output>
  1416. </nds>
  1417. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-SubscriberUserAdd.
  1418. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  1419. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1420. 10:11:04 2B431700 Drvrs: CADS ST:
  1421. <nds dtdversion="1.1" ndsversion="8.7">
  1422. <source>
  1423. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1424. <contact>NetIQ Corporation</contact>
  1425. </source>
  1426. <output>
  1427. <status event-id="0" level="success"/>
  1428. </output>
  1429. </nds>
  1430. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-FormatConversions.
  1431. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  1432. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1433. 10:11:04 2B431700 Drvrs: CADS ST:
  1434. <nds dtdversion="1.1" ndsversion="8.7">
  1435. <source>
  1436. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1437. <contact>NetIQ Corporation</contact>
  1438. </source>
  1439. <output>
  1440. <status event-id="0" level="success"/>
  1441. </output>
  1442. </nds>
  1443. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-itp-EmailOnFailedPwdSub.
  1444. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  1445. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1446. 10:11:04 2B431700 Drvrs: CADS ST:
  1447. <nds dtdversion="1.1" ndsversion="8.7">
  1448. <source>
  1449. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1450. <contact>NetIQ Corporation</contact>
  1451. </source>
  1452. <output>
  1453. <status event-id="0" level="success"/>
  1454. </output>
  1455. </nds>
  1456. 10:11:04 2B431700 Drvrs: CADS ST: Applying schema mapping policies to input.
  1457. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  1458. 10:11:04 2B431700 Drvrs: CADS ST: Resolving association references.
  1459. 10:11:04 2B431700 Drvrs: CADS ST: Query from policy result
  1460. 10:11:04 2B431700 Drvrs: CADS ST:
  1461. <nds dtdversion="1.1" ndsversion="8.7">
  1462. <source>
  1463. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  1464. <contact>NetIQ Corporation</contact>
  1465. </source>
  1466. <output>
  1467. <status event-id="0" level="success"/>
  1468. </output>
  1469. </nds>
  1470. 10:11:04 2B431700 Drvrs: CADS ST: No matches found.
  1471. 10:11:04 2B431700 Drvrs: CADS ST:Policy returned:
  1472. 10:11:04 2B431700 Drvrs: CADS ST:
  1473. <nds dtdversion="4.0" ndsversion="8.x">
  1474. <source>
  1475. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1476. <contact>NetIQ Corporation</contact>
  1477. </source>
  1478. <input>
  1479. <add cached-time="20171016161104.118Z" class-name="User" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  1480. <add-attr attr-name="Full Name">
  1481. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  1482. </add-attr>
  1483. <add-attr attr-name="Given Name">
  1484. <value timestamp="1496939376#7" type="string">Armando</value>
  1485. </add-attr>
  1486. <add-attr attr-name="Internet EMail Address">
  1487. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  1488. </add-attr>
  1489. <add-attr attr-name="ORGAccessCADS">
  1490. <value timestamp="1508170264#2" type="state">true</value>
  1491. </add-attr>
  1492. <add-attr attr-name="ORGCADSgroup">
  1493. <value timestamp="1508170264#1" type="string">FACSN</value>
  1494. </add-attr>
  1495. <add-attr attr-name="nspmDistributionPassword" is-sensitive="true"><!-- content suppressed -->
  1496. </add-attr>
  1497. <add-attr attr-name="Surname">
  1498. <value timestamp="1496939376#6" type="string">Anglesey</value>
  1499. </add-attr>
  1500. <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees"/>
  1501. </add>
  1502. </input>
  1503. </nds>
  1504. 10:11:04 2B431700 Drvrs: CADS ST:No match found.
  1505. 10:11:04 2B431700 Drvrs: CADS ST:Applying object creation policies.
  1506. 10:11:04 2B431700 Drvrs: CADS ST:Applying policy: NOVLADDCFG-sub-cp-Users.
  1507. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  1508. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Break if not a User'.
  1509. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name not-equal "User") = FALSE.
  1510. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1511. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Veto if nspmDistributionPassword is not available'.
  1512. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1513. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Veto if nspmDistributionPassword is not available'.
  1514. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-veto-if-op-attr-not-available("nspmDistributionPassword").
  1515. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Veto if Full Name is not available and Full Name Mapping is turned on'.
  1516. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'FullNameMap' equal "true") = TRUE.
  1517. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1518. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Veto if Full Name is not available and Full Name Mapping is turned on'.
  1519. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-veto-if-op-attr-not-available("Full Name").
  1520. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Escape object name'.
  1521. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'UpnMap' equal "edir-name-auth") = TRUE.
  1522. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1523. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Escape object name'.
  1524. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("object-name",token-replace-all("[^a-zA-Z0-9\x21\x23-\x29\x2d\x2e\x40\x5e-\x60\x7b\x7d\x7e\xc0-\xf6\xf8-\xff\u0410-\u044f]","",token-src-name())).
  1525. 10:11:04 2B431700 Drvrs: CADS ST: arg-string(token-replace-all("[^a-zA-Z0-9\x21\x23-\x29\x2d\x2e\x40\x5e-\x60\x7b\x7d\x7e\xc0-\xf6\xf8-\xff\u0410-\u044f]","",token-src-name()))
  1526. 10:11:04 2B431700 Drvrs: CADS ST: token-replace-all("[^a-zA-Z0-9\x21\x23-\x29\x2d\x2e\x40\x5e-\x60\x7b\x7d\x7e\xc0-\xf6\xf8-\xff\u0410-\u044f]","",token-src-name())
  1527. 10:11:04 2B431700 Drvrs: CADS ST: token-replace-all("[^a-zA-Z0-9\x21\x23-\x29\x2d\x2e\x40\x5e-\x60\x7b\x7d\x7e\xc0-\xf6\xf8-\xff\u0410-\u044f]","",token-src-name())
  1528. 10:11:04 2B431700 Drvrs: CADS ST: token-src-name()
  1529. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  1530. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "testuser".
  1531. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  1532. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "testuser".
  1533. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Map CN to Active Directory user logon name'.
  1534. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'UpnMap' equal "edir-name-auth") = TRUE.
  1535. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1536. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Map CN to Active Directory user logon name'.
  1537. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-set-dest-attr-value("DirXML-ADAliasName",token-local-variable("object-name")+"@"+token-global-variable("drv.domain.dns.name")).
  1538. 10:11:04 2B431700 Drvrs: CADS ST: arg-string(token-local-variable("object-name")+"@"+token-global-variable("drv.domain.dns.name"))
  1539. 10:11:04 2B431700 Drvrs: CADS ST: token-local-variable("object-name")
  1540. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  1541. 10:11:04 2B431700 Drvrs: CADS ST: token-text("@")
  1542. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.domain.dns.name")
  1543. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "its.cads.ORG.edu".
  1544. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "testuser@its.cads.ORG.edu".
  1545. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-add-src-attr-value("Object Class",class-name="User","DirXML-ApplicationAttrs").
  1546. 10:11:04 2B431700 Drvrs: CADS ST: arg-string("DirXML-ApplicationAttrs")
  1547. 10:11:04 2B431700 Drvrs: CADS ST: token-text("DirXML-ApplicationAttrs")
  1548. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "DirXML-ApplicationAttrs".
  1549. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-set-src-attr-value("DirXML-ADAliasName",token-local-variable("object-name")+"@"+token-global-variable("drv.domain.dns.name")).
  1550. 10:11:04 2B431700 Drvrs: CADS ST: arg-string(token-local-variable("object-name")+"@"+token-global-variable("drv.domain.dns.name"))
  1551. 10:11:04 2B431700 Drvrs: CADS ST: token-local-variable("object-name")
  1552. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  1553. 10:11:04 2B431700 Drvrs: CADS ST: token-text("@")
  1554. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.domain.dns.name")
  1555. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "its.cads.ORG.edu".
  1556. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "testuser@its.cads.ORG.edu".
  1557. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Map CN to Active Directory user logon name (pre-Windows 2000)'.
  1558. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'LogonNameMap' equal "true") = TRUE.
  1559. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1560. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Map CN to Active Directory user logon name (pre-Windows 2000)'.
  1561. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-set-dest-attr-value("CN",token-substring(length="20",token-local-variable("object-name"))).
  1562. 10:11:04 2B431700 Drvrs: CADS ST: arg-string(token-substring(length="20",token-local-variable("object-name")))
  1563. 10:11:04 2B431700 Drvrs: CADS ST: token-substring(length="20",token-local-variable("object-name"))
  1564. 10:11:04 2B431700 Drvrs: CADS ST: token-substring(length="20",token-local-variable("object-name"))
  1565. 10:11:04 2B431700 Drvrs: CADS ST: token-local-variable("object-name")
  1566. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  1567. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "testuser".
  1568. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  1569. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "testuser".
  1570. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Identity Vault accounts are enabled if Login Disabled does not exist'.
  1571. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'Login Disabled' not-available) = TRUE.
  1572. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1573. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Identity Vault accounts are enabled if Login Disabled does not exist'.
  1574. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-set-dest-attr-value("Login Disabled","false").
  1575. 10:11:04 2B431700 Drvrs: CADS ST: arg-string("false")
  1576. 10:11:04 2B431700 Drvrs: CADS ST: token-text("false")
  1577. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "false".
  1578. 10:11:04 2B431700 Drvrs: CADS ST: Direct command from policy
  1579. 10:11:04 2B431700 Drvrs: CADS ST:
  1580. <nds dtdversion="4.0" ndsversion="8.x">
  1581. <source>
  1582. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1583. <contact>NetIQ Corporation</contact>
  1584. </source>
  1585. <input>
  1586. <modify class-name="User" dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  1587. <modify-attr attr-name="Object Class">
  1588. <add-value>
  1589. <value>DirXML-ApplicationAttrs</value>
  1590. </add-value>
  1591. </modify-attr>
  1592. <modify-attr attr-name="DirXML-ADAliasName">
  1593. <remove-all-values/>
  1594. <add-value>
  1595. <value>testuser@its.cads.ORG.edu</value>
  1596. </add-value>
  1597. </modify-attr>
  1598. </modify>
  1599. </input>
  1600. </nds>
  1601. 10:11:04 2B431700 Drvrs: CADS ST: Pumping XDS to eDirectory.
  1602. 10:11:04 2B431700 Drvrs: CADS ST: Performing operation modify for \ORG-IDV\ORG\data\users\employees\testuser.
  1603. 10:11:04 2B431700 Drvrs: CADS ST: --JCLNT-- \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS : Duplicating : context = 1955071218, tempContext = 1955071285
  1604. 10:11:04 2B431700 Drvrs: CADS ST: Modifying entry \ORG-IDV\ORG\data\users\employees\testuser.
  1605. 10:11:04 2B431700 Drvrs: CADS ST: --JCLNT-- \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS : Calling free on tempContext = 1955071285
  1606. 10:11:04 2B431700 Drvrs: CADS ST: Processing returned document.
  1607. 10:11:04 2B431700 Drvrs: CADS ST: Processing operation <status> for .
  1608. 10:11:04 2B431700 Drvrs: CADS ST:
  1609. DirXML Log Event -------------------
  1610. Driver: \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS
  1611. Channel: Subscriber
  1612. Object: \ORG-IDV\ORG\data\users\employees\testuser
  1613. Status: Success
  1614. 10:11:04 2B431700 Drvrs: CADS ST: Direct command from policy result
  1615. 10:11:04 2B431700 Drvrs: CADS ST:
  1616. <nds dtdversion="4.0" ndsversion="8.x">
  1617. <source>
  1618. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1619. <contact>NetIQ Corporation</contact>
  1620. </source>
  1621. <output>
  1622. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"><application>DirXML</application>
  1623. <module>ORG-CADS</module>
  1624. <object-dn>\ORG-IDV\ORG\data\users\employees\testuser</object-dn>
  1625. <component>Subscriber</component>
  1626. </status>
  1627. </output>
  1628. </nds>
  1629. 10:11:04 2B431700 Drvrs: CADS ST:Policy returned:
  1630. 10:11:04 2B431700 Drvrs: CADS ST:
  1631. <nds dtdversion="4.0" ndsversion="8.x">
  1632. <source>
  1633. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1634. <contact>NetIQ Corporation</contact>
  1635. </source>
  1636. <input>
  1637. <add cached-time="20171016161104.118Z" class-name="User" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  1638. <add-attr attr-name="Full Name">
  1639. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  1640. </add-attr>
  1641. <add-attr attr-name="Given Name">
  1642. <value timestamp="1496939376#7" type="string">Armando</value>
  1643. </add-attr>
  1644. <add-attr attr-name="Internet EMail Address">
  1645. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  1646. </add-attr>
  1647. <add-attr attr-name="ORGAccessCADS">
  1648. <value timestamp="1508170264#2" type="state">true</value>
  1649. </add-attr>
  1650. <add-attr attr-name="ORGCADSgroup">
  1651. <value timestamp="1508170264#1" type="string">FACSN</value>
  1652. </add-attr>
  1653. <add-attr attr-name="nspmDistributionPassword" is-sensitive="true"><!-- content suppressed -->
  1654. </add-attr>
  1655. <add-attr attr-name="Surname">
  1656. <value timestamp="1496939376#6" type="string">Anglesey</value>
  1657. </add-attr>
  1658. <add-attr attr-name="DirXML-ADAliasName">
  1659. <value>testuser@its.cads.ORG.edu</value>
  1660. </add-attr>
  1661. <add-attr attr-name="CN">
  1662. <value>testuser</value>
  1663. </add-attr>
  1664. <add-attr attr-name="Login Disabled">
  1665. <value type="string">false</value>
  1666. </add-attr>
  1667. 10:11:04 2B431700 Drvrs: <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees"/>
  1668. </add>
  1669. </input>
  1670. </nds>
  1671. 10:11:04 2B431700 Drvrs: CADS ST:Applying policy: NOVLADDCFG-sub-cp-Groups.
  1672. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  1673. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Send DirXML-ADAliasName to AD when a Group is being created'.
  1674. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "Group") = FALSE.
  1675. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1676. 10:11:04 2B431700 Drvrs: CADS ST:Policy returned:
  1677. 10:11:04 2B431700 Drvrs: CADS ST:
  1678. <nds dtdversion="4.0" ndsversion="8.x">
  1679. <source>
  1680. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1681. <contact>NetIQ Corporation</contact>
  1682. </source>
  1683. <input>
  1684. <add cached-time="20171016161104.118Z" class-name="User" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  1685. <add-attr attr-name="Full Name">
  1686. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  1687. </add-attr>
  1688. <add-attr attr-name="Given Name">
  1689. <value timestamp="1496939376#7" type="string">Armando</value>
  1690. </add-attr>
  1691. <add-attr attr-name="Internet EMail Address">
  1692. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  1693. </add-attr>
  1694. <add-attr attr-name="ORGAccessCADS">
  1695. <value timestamp="1508170264#2" type="state">true</value>
  1696. </add-attr>
  1697. <add-attr attr-name="ORGCADSgroup">
  1698. <value timestamp="1508170264#1" type="string">FACSN</value>
  1699. </add-attr>
  1700. <add-attr attr-name="nspmDistributionPassword" is-sensitive="true"><!-- content suppressed -->
  1701. </add-attr>
  1702. <add-attr attr-name="Surname">
  1703. <value timestamp="1496939376#6" type="string">Anglesey</value>
  1704. </add-attr>
  1705. <add-attr attr-name="DirXML-ADAliasName">
  1706. <value>testuser@its.cads.ORG.edu</value>
  1707. </add-attr>
  1708. <add-attr attr-name="CN">
  1709. <value>testuser</value>
  1710. </add-attr>
  1711. <add-attr attr-name="Login Disabled">
  1712. <value type="string">false</value>
  1713. </add-attr>
  1714. 10:11:04 2B431700 Drvrs: <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees"/>
  1715. </add>
  1716. </input>
  1717. </nds>
  1718. 10/16/2017
  1719. 10:11:04 2B431700 Drvrs: CADS ST:Applying object placement policies.
  1720. 10:11:04 2B431700 Drvrs: CADS ST:Applying policy: NOVLADDCFG-sub-pp.
  1721. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  1722. 10:11:04 2B431700 Drvrs: CADS ST:Policy returned:
  1723. 10:11:04 2B431700 Drvrs: CADS ST:
  1724. <nds dtdversion="4.0" ndsversion="8.x">
  1725. <source>
  1726. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1727. <contact>NetIQ Corporation</contact>
  1728. </source>
  1729. <input>
  1730. <add cached-time="20171016161104.118Z" class-name="User" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  1731. <add-attr attr-name="Full Name">
  1732. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  1733. </add-attr>
  1734. <add-attr attr-name="Given Name">
  1735. <value timestamp="1496939376#7" type="string">Armando</value>
  1736. </add-attr>
  1737. <add-attr attr-name="Internet EMail Address">
  1738. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  1739. </add-attr>
  1740. <add-attr attr-name="ORGAccessCADS">
  1741. <value timestamp="1508170264#2" type="state">true</value>
  1742. </add-attr>
  1743. <add-attr attr-name="ORGCADSgroup">
  1744. <value timestamp="1508170264#1" type="string">FACSN</value>
  1745. </add-attr>
  1746. <add-attr attr-name="nspmDistributionPassword" is-sensitive="true"><!-- content suppressed -->
  1747. </add-attr>
  1748. <add-attr attr-name="Surname">
  1749. <value timestamp="1496939376#6" type="string">Anglesey</value>
  1750. </add-attr>
  1751. <add-attr attr-name="DirXML-ADAliasName">
  1752. <value>testuser@its.cads.ORG.edu</value>
  1753. </add-attr>
  1754. <add-attr attr-name="CN">
  1755. <value>testuser</value>
  1756. </add-attr>
  1757. <add-attr attr-name="Login Disabled">
  1758. <value type="string">false</value>
  1759. </add-attr>
  1760. 10:11:04 2B431700 Drvrs: <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees"/>
  1761. </add>
  1762. </input>
  1763. </nds>
  1764. 10:11:04 2B431700 Drvrs: CADS ST:Applying policy: ORG-set-destination-sub-pp.
  1765. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  1766. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Check destination'.
  1767. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1768. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Check destination'.
  1769. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("LVdestinationcheck",scope="policy",token-dest-attr("OU",class-name="Organizational Unit",arg-dn("ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container")))).
  1770. 10:11:04 2B431700 Drvrs: CADS ST: arg-string(token-dest-attr("OU",class-name="Organizational Unit",arg-dn("ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container"))))
  1771. 10:11:04 2B431700 Drvrs: CADS ST: token-dest-attr("OU",class-name="Organizational Unit",arg-dn("ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container")))
  1772. 10:11:04 2B431700 Drvrs: CADS ST: arg-dn("ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container"))
  1773. 10:11:04 2B431700 Drvrs: CADS ST: token-text("ou=")
  1774. 10:11:04 2B431700 Drvrs: CADS ST: token-src-attr("ORGCADSgroup")
  1775. 10:11:04 2B431700 Drvrs: CADS ST: Query from policy
  1776. 10:11:04 2B431700 Drvrs: CADS ST:
  1777. <nds dtdversion="4.0" ndsversion="8.x">
  1778. <source>
  1779. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1780. <contact>NetIQ Corporation</contact>
  1781. </source>
  1782. <input>
  1783. <query class-name="User" dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" scope="entry">
  1784. <read-attr attr-name="cn"/>
  1785. <read-attr attr-name="ORGCADSgroup"/>
  1786. </query>
  1787. </input>
  1788. </nds>
  1789. 10:11:04 2B431700 Drvrs: CADS ST: Pumping XDS to eDirectory.
  1790. 10:11:04 2B431700 Drvrs: CADS ST: Performing operation query for \ORG-IDV\ORG\data\users\employees\testuser.
  1791. 10:11:04 2B431700 Drvrs: CADS ST: --JCLNT-- \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS : Duplicating : context = 1955071268, tempContext = 1955071285
  1792. 10:11:04 2B431700 Drvrs: CADS ST: --JCLNT-- \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS : Calling free on tempContext = 1955071285
  1793. 10:11:04 2B431700 Drvrs: CADS ST: Query from policy result
  1794. 10:11:04 2B431700 Drvrs: CADS ST:
  1795. <nds dtdversion="4.0" ndsversion="8.x">
  1796. <source>
  1797. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1798. <contact>NetIQ Corporation</contact>
  1799. </source>
  1800. <output>
  1801. <instance class-name="User" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222">
  1802. <attr attr-name="CN">
  1803. <value naming="true" timestamp="1496939376#46" type="string">testuser</value>
  1804. </attr>
  1805. <attr attr-name="ORGCADSgroup">
  1806. <value timestamp="1508170264#1" type="string">FACSN</value>
  1807. </attr>
  1808. </instance>
  1809. <status level="success"></status>
  1810. </output>
  1811. </nds>
  1812. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "FACSN".
  1813. 10:11:04 2B431700 Drvrs: CADS ST: token-text(" users,ou=")
  1814. 10:11:04 2B431700 Drvrs: CADS ST: token-local-variable("LV_Division")
  1815. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "Academic Affairs Administration".
  1816. 10:11:04 2B431700 Drvrs: CADS ST: token-text(",")
  1817. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.user.container")
  1818. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  1819. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  1820. 10:11:04 2B431700 Drvrs: CADS ST: Query from policy
  1821. 10:11:04 2B431700 Drvrs: CADS ST:
  1822. <nds dtdversion="4.0" ndsversion="8.x">
  1823. <source>
  1824. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1825. <contact>NetIQ Corporation</contact>
  1826. </source>
  1827. <input>
  1828. <query class-name="Organizational Unit" dest-dn="ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" scope="entry">
  1829. <read-attr attr-name="OU"/>
  1830. </query>
  1831. </input>
  1832. </nds>
  1833. 10:11:04 2B431700 Drvrs: CADS ST: Fixing up association references.
  1834. 10:11:04 2B431700 Drvrs: CADS ST: Applying schema mapping policies to output.
  1835. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  1836. 10:11:04 2B431700 Drvrs: CADS ST: Mapping attr-name 'OU' to 'ou'.
  1837. 10:11:04 2B431700 Drvrs: CADS ST: Mapping class-name 'Organizational Unit' to 'organizationalUnit'.
  1838. 10:11:04 2B431700 Drvrs: CADS ST: Applying output transformation policies.
  1839. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-FormatConversions.
  1840. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  1841. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Street Address: Convert LF to CR-LF'.
  1842. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1843. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Street Address: Convert LF to CR-LF'.
  1844. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("streetAddress",token-replace-all("[^\r]\n","\r\n",token-local-variable("current-value"))).
  1845. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'logonHours: Convert to Active Directory form'.
  1846. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1847. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'logonHours: Convert to Active Directory form'.
  1848. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
  1849. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'accountExpires: Convert to Active Directory form'.
  1850. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'accountExpires' changing) = FALSE.
  1851. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1852. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'lockoutTime: Convert to Active Directory form'.
  1853. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'lockoutTime' available) = FALSE.
  1854. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1855. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add: User - convert multi-valued Telephone to single value'.
  1856. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "add") = FALSE.
  1857. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1858. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'update Active Directory logon name'.
  1859. 10:11:04 2B431700 Drvrs: CADS ST: (if-xpath true "self::status[@level = 'success']/operation-data/windows-2000-logon-name") = FALSE.
  1860. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1861. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1862. 10:11:04 2B431700 Drvrs: CADS ST:
  1863. <nds dtdversion="4.0" ndsversion="8.x">
  1864. <source>
  1865. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1866. <contact>NetIQ Corporation</contact>
  1867. </source>
  1868. <input>
  1869. <query class-name="organizationalUnit" dest-dn="ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  1870. <read-attr attr-name="ou"/>
  1871. </query>
  1872. </input>
  1873. </nds>
  1874. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-ExchangeEntitlementQuery.
  1875. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  1876. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add dest-dn to the Exchange Entitlement Query'.
  1877. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "query") = TRUE.
  1878. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "msExchPrivateMDB") = FALSE.
  1879. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1880. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1881. 10:11:04 2B431700 Drvrs: CADS ST:
  1882. <nds dtdversion="4.0" ndsversion="8.x">
  1883. <source>
  1884. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1885. <contact>NetIQ Corporation</contact>
  1886. </source>
  1887. <input>
  1888. <query class-name="organizationalUnit" dest-dn="ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  1889. <read-attr attr-name="ou"/>
  1890. </query>
  1891. </input>
  1892. </nds>
  1893. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-otp-EmailOnFailedPwdPub.
  1894. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  1895. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Send e-mail for a failed publish password operation'.
  1896. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'notify-user-on-password-dist-failure' equal "true") = TRUE.
  1897. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "status") = FALSE.
  1898. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1899. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1900. 10:11:04 2B431700 Drvrs: CADS ST:
  1901. <nds dtdversion="4.0" ndsversion="8.x">
  1902. <source>
  1903. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1904. <contact>NetIQ Corporation</contact>
  1905. </source>
  1906. <input>
  1907. <query class-name="organizationalUnit" dest-dn="ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  1908. <read-attr attr-name="ou"/>
  1909. </query>
  1910. </input>
  1911. </nds>
  1912. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-otp-Subscribe.
  1913. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  1914. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Do not process Account Tracking policies if modify with no source-dn '.
  1915. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = FALSE.
  1916. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1917. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - Initialize Realm Mapping'.
  1918. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' equal "true") = TRUE.
  1919. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  1920. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  1921. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - disregard if disabled or wrong object class'.
  1922. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1923. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'AccountTracking - disregard if disabled or wrong object class'.
  1924. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  1925. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  1926. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' not-equal "true") = FALSE.
  1927. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  1928. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-for-each(arg-node-set(token-global-variable("drv.acctTrk.objectClass"))).
  1929. 10:11:04 2B431700 Drvrs: CADS ST: arg-node-set(token-global-variable("drv.acctTrk.objectClass"))
  1930. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.acctTrk.objectClass")
  1931. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: {"user"}.
  1932. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: {"user"}.
  1933. 10:11:04 2B431700 Drvrs: CADS ST: Performing actions for local-variable(current-node) = "user".
  1934. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  1935. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  1936. 10:11:04 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'user'.
  1937. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "$current-node$") = FALSE.
  1938. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  1939. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  1940. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  1941. 10:11:04 2B431700 Drvrs: CADS ST: (if-local-variable 'pass' not-available) = TRUE.
  1942. 10:11:04 2B431700 Drvrs: CADS ST: Performing if actions.
  1943. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-break().
  1944. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1945. 10:11:04 2B431700 Drvrs: CADS ST:
  1946. <nds dtdversion="4.0" ndsversion="8.x">
  1947. <source>
  1948. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1949. <contact>NetIQ Corporation</contact>
  1950. </source>
  1951. <input>
  1952. <query class-name="organizationalUnit" dest-dn="ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  1953. <read-attr attr-name="ou"/>
  1954. </query>
  1955. </input>
  1956. </nds>
  1957. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  1958. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  1959. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  1960. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  1961. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  1962. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  1963. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  1964. 10:11:04 2B431700 Drvrs: CADS ST:
  1965. <nds dtdversion="4.0" ndsversion="8.x">
  1966. <source>
  1967. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1968. <contact>NetIQ Corporation</contact>
  1969. </source>
  1970. <input>
  1971. <query class-name="organizationalUnit" dest-dn="ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  1972. <read-attr attr-name="ou"/>
  1973. </query>
  1974. </input>
  1975. </nds>
  1976. 10:11:04 2B431700 Drvrs: CADS ST: Submitting document to subscriber shim:
  1977. 10:11:04 2B431700 Drvrs: CADS ST:
  1978. <nds dtdversion="4.0" ndsversion="8.x">
  1979. <source>
  1980. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1981. <contact>NetIQ Corporation</contact>
  1982. </source>
  1983. <input>
  1984. <query class-name="organizationalUnit" dest-dn="ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  1985. <read-attr attr-name="ou"/>
  1986. </query>
  1987. </input>
  1988. </nds>
  1989. 10:11:04 2B431700 Drvrs: CADS ST: Remote Interface Driver: Sending...
  1990. 10:11:04 2B431700 Drvrs: CADS ST:
  1991. <nds dtdversion="4.0" ndsversion="8.x">
  1992. <source>
  1993. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  1994. <contact>NetIQ Corporation</contact>
  1995. </source>
  1996. <input>
  1997. <query class-name="organizationalUnit" dest-dn="ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  1998. <read-attr attr-name="ou"/>
  1999. </query>
  2000. </input>
  2001. </nds>
  2002. 10:11:04 2B431700 Drvrs: CADS ST: Remote Interface Driver: Document sent.
  2003. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Received.
  2004. 10:11:04 2BA58700 Drvrs: CADS :
  2005. <nds dtdversion="1.1" ndsversion="8.7">
  2006. <source>
  2007. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2008. <contact>NetIQ Corporation</contact>
  2009. </source>
  2010. <output>
  2011. <status event-id="0" level="success"/>
  2012. </output>
  2013. </nds>
  2014. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Received document for subscriber channel
  2015. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Waiting for receive...
  2016. 10:11:04 2B431700 Drvrs: CADS ST: SubscriptionShim.execute() returned:
  2017. 10:11:04 2B431700 Drvrs: CADS ST:
  2018. <nds dtdversion="1.1" ndsversion="8.7">
  2019. <source>
  2020. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2021. <contact>NetIQ Corporation</contact>
  2022. </source>
  2023. <output>
  2024. <status event-id="0" level="success"/>
  2025. </output>
  2026. </nds>
  2027. 10:11:04 2B431700 Drvrs: CADS ST: Applying input transformation policies.
  2028. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  2029. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2030. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  2031. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  2032. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  2033. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  2034. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2035. 10:11:04 2B431700 Drvrs: CADS ST:
  2036. <nds dtdversion="1.1" ndsversion="8.7">
  2037. <source>
  2038. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2039. <contact>NetIQ Corporation</contact>
  2040. </source>
  2041. <output>
  2042. <status event-id="0" level="success"/>
  2043. </output>
  2044. </nds>
  2045. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-Publish.
  2046. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2047. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2048. 10:11:04 2B431700 Drvrs: CADS ST:
  2049. <nds dtdversion="1.1" ndsversion="8.7">
  2050. <source>
  2051. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2052. <contact>NetIQ Corporation</contact>
  2053. </source>
  2054. <output>
  2055. <status event-id="0" level="success"/>
  2056. </output>
  2057. </nds>
  2058. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: Scope.
  2059. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2060. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Vetos adds and moves'.
  2061. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  2062. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2063. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2064. 10:11:04 2B431700 Drvrs: CADS ST:
  2065. <nds dtdversion="1.1" ndsversion="8.7">
  2066. <source>
  2067. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2068. <contact>NetIQ Corporation</contact>
  2069. </source>
  2070. <output>
  2071. <status event-id="0" level="success"/>
  2072. </output>
  2073. </nds>
  2074. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-WriteAccounts.
  2075. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2076. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2077. 10:11:04 2B431700 Drvrs: CADS ST:
  2078. <nds dtdversion="1.1" ndsversion="8.7">
  2079. <source>
  2080. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2081. <contact>NetIQ Corporation</contact>
  2082. </source>
  2083. <output>
  2084. <status event-id="0" level="success"/>
  2085. </output>
  2086. </nds>
  2087. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-SubscriberUserAdd.
  2088. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2089. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2090. 10:11:04 2B431700 Drvrs: CADS ST:
  2091. <nds dtdversion="1.1" ndsversion="8.7">
  2092. <source>
  2093. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2094. <contact>NetIQ Corporation</contact>
  2095. </source>
  2096. <output>
  2097. <status event-id="0" level="success"/>
  2098. </output>
  2099. </nds>
  2100. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-FormatConversions.
  2101. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2102. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2103. 10:11:04 2B431700 Drvrs: CADS ST:
  2104. <nds dtdversion="1.1" ndsversion="8.7">
  2105. <source>
  2106. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2107. <contact>NetIQ Corporation</contact>
  2108. </source>
  2109. <output>
  2110. <status event-id="0" level="success"/>
  2111. </output>
  2112. </nds>
  2113. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-itp-EmailOnFailedPwdSub.
  2114. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2115. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2116. 10:11:04 2B431700 Drvrs: CADS ST:
  2117. <nds dtdversion="1.1" ndsversion="8.7">
  2118. <source>
  2119. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2120. <contact>NetIQ Corporation</contact>
  2121. </source>
  2122. <output>
  2123. <status event-id="0" level="success"/>
  2124. </output>
  2125. </nds>
  2126. 10:11:04 2B431700 Drvrs: CADS ST: Applying schema mapping policies to input.
  2127. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  2128. 10:11:04 2B431700 Drvrs: CADS ST: Resolving association references.
  2129. 10:11:04 2B431700 Drvrs: CADS ST: Query from policy result
  2130. 10:11:04 2B431700 Drvrs: CADS ST:
  2131. <nds dtdversion="1.1" ndsversion="8.7">
  2132. <source>
  2133. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2134. <contact>NetIQ Corporation</contact>
  2135. </source>
  2136. <output>
  2137. <status event-id="0" level="success"/>
  2138. </output>
  2139. </nds>
  2140. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "".
  2141. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "".
  2142. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Create OU and security group'.
  2143. 10:11:04 2B431700 Drvrs: CADS ST: (if-local-variable 'LVdestinationcheck' equal "") = TRUE.
  2144. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  2145. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Create OU and security group'.
  2146. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-add-dest-object(class-name="Organizational Unit",direct="true",arg-dn("ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container"))).
  2147. 10:11:04 2B431700 Drvrs: CADS ST: arg-dn("ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container"))
  2148. 10:11:04 2B431700 Drvrs: CADS ST: token-text("ou=")
  2149. 10:11:04 2B431700 Drvrs: CADS ST: token-local-variable("LV_Division")
  2150. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "Academic Affairs Administration".
  2151. 10:11:04 2B431700 Drvrs: CADS ST: token-text(",")
  2152. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.user.container")
  2153. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  2154. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  2155. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-add-dest-object(class-name="Organizational Unit",direct="true",arg-dn("ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container"))).
  2156. 10:11:04 2B431700 Drvrs: CADS ST: arg-dn("ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container"))
  2157. 10:11:04 2B431700 Drvrs: CADS ST: token-text("ou=")
  2158. 10:11:04 2B431700 Drvrs: CADS ST: token-src-attr("ORGCADSgroup")
  2159. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "FACSN".
  2160. 10:11:04 2B431700 Drvrs: CADS ST: token-text(" users,ou=")
  2161. 10:11:04 2B431700 Drvrs: CADS ST: token-local-variable("LV_Division")
  2162. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "Academic Affairs Administration".
  2163. 10:11:04 2B431700 Drvrs: CADS ST: token-text(",")
  2164. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.user.container")
  2165. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  2166. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  2167. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-add-dest-object(class-name="group",direct="true",arg-dn("cn="+token-src-attr("ORGCADSgroup")+" Users,ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container"))).
  2168. 10:11:04 2B431700 Drvrs: CADS ST: arg-dn("cn="+token-src-attr("ORGCADSgroup")+" Users,ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container"))
  2169. 10:11:04 2B431700 Drvrs: CADS ST: token-text("cn=")
  2170. 10:11:04 2B431700 Drvrs: CADS ST: token-src-attr("ORGCADSgroup")
  2171. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "FACSN".
  2172. 10:11:04 2B431700 Drvrs: CADS ST: token-text(" Users,ou=")
  2173. 10:11:04 2B431700 Drvrs: CADS ST: token-src-attr("ORGCADSgroup")
  2174. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "FACSN".
  2175. 10:11:04 2B431700 Drvrs: CADS ST: token-text(" users,ou=")
  2176. 10:11:04 2B431700 Drvrs: CADS ST: token-local-variable("LV_Division")
  2177. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "Academic Affairs Administration".
  2178. 10:11:04 2B431700 Drvrs: CADS ST: token-text(",")
  2179. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.user.container")
  2180. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  2181. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  2182. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Placement'.
  2183. 10:11:04 2B431700 Drvrs: CADS ST: (if-src-attr 'ORGCADSgroup' available) = TRUE.
  2184. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  2185. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Placement'.
  2186. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-set-op-dest-dn(arg-dn("cn="+token-src-name()+",ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container"))).
  2187. 10:11:04 2B431700 Drvrs: CADS ST: arg-dn("cn="+token-src-name()+",ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container"))
  2188. 10:11:04 2B431700 Drvrs: CADS ST: token-text("cn=")
  2189. 10:11:04 2B431700 Drvrs: CADS ST: token-src-name()
  2190. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  2191. 10:11:04 2B431700 Drvrs: CADS ST: token-text(",ou=")
  2192. 10:11:04 2B431700 Drvrs: CADS ST: token-src-attr("ORGCADSgroup")
  2193. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "FACSN".
  2194. 10:11:04 2B431700 Drvrs: CADS ST: token-text(" users,ou=")
  2195. 10:11:04 2B431700 Drvrs: CADS ST: token-local-variable("LV_Division")
  2196. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "Academic Affairs Administration".
  2197. 10:11:04 2B431700 Drvrs: CADS ST: token-text(",")
  2198. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.user.container")
  2199. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  2200. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  2201. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-trace-message("1."+token-op-attr("cn")+"2."+token-src-attr("cn")+"3."+token-attr("cn")+"4."+token-dest-attr("cn")+"5."+token-dest-name()+"6."+token-src-name()).
  2202. 10:11:04 2B431700 Drvrs: CADS ST: arg-string("1."+token-op-attr("cn")+"2."+token-src-attr("cn")+"3."+token-attr("cn")+"4."+token-dest-attr("cn")+"5."+token-dest-name()+"6."+token-src-name())
  2203. 10:11:04 2B431700 Drvrs: CADS ST: token-text("1.")
  2204. 10:11:04 2B431700 Drvrs: CADS ST: token-op-attr("cn")
  2205. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  2206. 10:11:04 2B431700 Drvrs: CADS ST: token-text("2.")
  2207. 10:11:04 2B431700 Drvrs: CADS ST: token-src-attr("cn")
  2208. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  2209. 10:11:04 2B431700 Drvrs: CADS ST: token-text("3.")
  2210. 10:11:04 2B431700 Drvrs: CADS ST: token-attr("cn")
  2211. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  2212. 10:11:04 2B431700 Drvrs: CADS ST: token-text("4.")
  2213. 10:11:04 2B431700 Drvrs: CADS ST: token-dest-attr("cn")
  2214. 10:11:04 2B431700 Drvrs: CADS ST: Query from policy
  2215. 10/16/2017
  2216. 10:11:04 2B431700 Drvrs: CADS ST:
  2217. <nds dtdversion="4.0" ndsversion="8.x">
  2218. <source>
  2219. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2220. <contact>NetIQ Corporation</contact>
  2221. </source>
  2222. <input>
  2223. <query class-name="User" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" scope="entry">
  2224. <read-attr attr-name="cn"/>
  2225. </query>
  2226. </input>
  2227. </nds>
  2228. 10:11:04 2B431700 Drvrs: CADS ST: Fixing up association references.
  2229. 10:11:04 2B431700 Drvrs: CADS ST: Applying schema mapping policies to output.
  2230. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  2231. 10:11:04 2B431700 Drvrs: CADS ST: Mapping attr-name 'cn' to 'sAMAccountName'.
  2232. 10:11:04 2B431700 Drvrs: CADS ST: Mapping class-name 'User' to 'user'.
  2233. 10:11:04 2B431700 Drvrs: CADS ST: Applying output transformation policies.
  2234. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-FormatConversions.
  2235. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  2236. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Street Address: Convert LF to CR-LF'.
  2237. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  2238. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Street Address: Convert LF to CR-LF'.
  2239. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("streetAddress",token-replace-all("[^\r]\n","\r\n",token-local-variable("current-value"))).
  2240. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'logonHours: Convert to Active Directory form'.
  2241. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  2242. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'logonHours: Convert to Active Directory form'.
  2243. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
  2244. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'accountExpires: Convert to Active Directory form'.
  2245. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'accountExpires' changing) = FALSE.
  2246. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2247. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'lockoutTime: Convert to Active Directory form'.
  2248. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'lockoutTime' available) = FALSE.
  2249. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2250. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add: User - convert multi-valued Telephone to single value'.
  2251. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "add") = FALSE.
  2252. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2253. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'update Active Directory logon name'.
  2254. 10:11:04 2B431700 Drvrs: CADS ST: (if-xpath true "self::status[@level = 'success']/operation-data/windows-2000-logon-name") = FALSE.
  2255. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2256. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2257. 10:11:04 2B431700 Drvrs: CADS ST:
  2258. <nds dtdversion="4.0" ndsversion="8.x">
  2259. <source>
  2260. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2261. <contact>NetIQ Corporation</contact>
  2262. </source>
  2263. <input>
  2264. <query class-name="user" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  2265. <read-attr attr-name="sAMAccountName"/>
  2266. </query>
  2267. </input>
  2268. </nds>
  2269. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-ExchangeEntitlementQuery.
  2270. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  2271. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add dest-dn to the Exchange Entitlement Query'.
  2272. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "query") = TRUE.
  2273. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "msExchPrivateMDB") = FALSE.
  2274. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2275. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2276. 10:11:04 2B431700 Drvrs: CADS ST:
  2277. <nds dtdversion="4.0" ndsversion="8.x">
  2278. <source>
  2279. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2280. <contact>NetIQ Corporation</contact>
  2281. </source>
  2282. <input>
  2283. <query class-name="user" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  2284. <read-attr attr-name="sAMAccountName"/>
  2285. </query>
  2286. </input>
  2287. </nds>
  2288. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-otp-EmailOnFailedPwdPub.
  2289. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  2290. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Send e-mail for a failed publish password operation'.
  2291. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'notify-user-on-password-dist-failure' equal "true") = TRUE.
  2292. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "status") = FALSE.
  2293. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2294. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2295. 10:11:04 2B431700 Drvrs: CADS ST:
  2296. <nds dtdversion="4.0" ndsversion="8.x">
  2297. <source>
  2298. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2299. <contact>NetIQ Corporation</contact>
  2300. </source>
  2301. <input>
  2302. <query class-name="user" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  2303. <read-attr attr-name="sAMAccountName"/>
  2304. </query>
  2305. </input>
  2306. </nds>
  2307. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-otp-Subscribe.
  2308. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  2309. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Do not process Account Tracking policies if modify with no source-dn '.
  2310. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = FALSE.
  2311. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2312. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - Initialize Realm Mapping'.
  2313. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' equal "true") = TRUE.
  2314. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  2315. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2316. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - disregard if disabled or wrong object class'.
  2317. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  2318. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'AccountTracking - disregard if disabled or wrong object class'.
  2319. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  2320. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  2321. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' not-equal "true") = FALSE.
  2322. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  2323. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-for-each(arg-node-set(token-global-variable("drv.acctTrk.objectClass"))).
  2324. 10:11:04 2B431700 Drvrs: CADS ST: arg-node-set(token-global-variable("drv.acctTrk.objectClass"))
  2325. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.acctTrk.objectClass")
  2326. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: {"user"}.
  2327. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: {"user"}.
  2328. 10:11:04 2B431700 Drvrs: CADS ST: Performing actions for local-variable(current-node) = "user".
  2329. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  2330. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  2331. 10:11:04 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'user'.
  2332. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "$current-node$") = TRUE.
  2333. 10:11:04 2B431700 Drvrs: CADS ST: Performing if actions.
  2334. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("pass",scope="policy","true").
  2335. 10:11:04 2B431700 Drvrs: CADS ST: arg-string("true")
  2336. 10:11:04 2B431700 Drvrs: CADS ST: token-text("true")
  2337. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "true".
  2338. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  2339. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  2340. 10:11:04 2B431700 Drvrs: CADS ST: (if-local-variable 'pass' not-available) = FALSE.
  2341. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  2342. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - add operation-data for regular operations'.
  2343. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  2344. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2345. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - add operation-data for mapped operations'.
  2346. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  2347. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2348. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - strip AccountTrackingAccountStatus attribute'.
  2349. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'AccountTrackingAccountStatus' available) = FALSE.
  2350. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2351. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2352. 10:11:04 2B431700 Drvrs: CADS ST:
  2353. <nds dtdversion="4.0" ndsversion="8.x">
  2354. <source>
  2355. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2356. <contact>NetIQ Corporation</contact>
  2357. </source>
  2358. <input>
  2359. <query class-name="user" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  2360. <read-attr attr-name="sAMAccountName"/>
  2361. </query>
  2362. </input>
  2363. </nds>
  2364. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  2365. 10:11:04 2B431700 Drvrs: CADS ST: Applying to query #1.
  2366. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  2367. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  2368. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  2369. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  2370. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2371. 10:11:04 2B431700 Drvrs: CADS ST:
  2372. <nds dtdversion="4.0" ndsversion="8.x">
  2373. <source>
  2374. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2375. <contact>NetIQ Corporation</contact>
  2376. </source>
  2377. <input>
  2378. <query class-name="user" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  2379. <read-attr attr-name="sAMAccountName"/>
  2380. </query>
  2381. </input>
  2382. </nds>
  2383. 10:11:04 2B431700 Drvrs: CADS ST: Submitting document to subscriber shim:
  2384. 10:11:04 2B431700 Drvrs: CADS ST:
  2385. <nds dtdversion="4.0" ndsversion="8.x">
  2386. <source>
  2387. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2388. <contact>NetIQ Corporation</contact>
  2389. </source>
  2390. <input>
  2391. <query class-name="user" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  2392. <read-attr attr-name="sAMAccountName"/>
  2393. </query>
  2394. </input>
  2395. </nds>
  2396. 10:11:04 2B431700 Drvrs: CADS ST: Remote Interface Driver: Sending...
  2397. 10:11:04 2B431700 Drvrs: CADS ST:
  2398. <nds dtdversion="4.0" ndsversion="8.x">
  2399. <source>
  2400. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2401. <contact>NetIQ Corporation</contact>
  2402. </source>
  2403. <input>
  2404. <query class-name="user" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  2405. <read-attr attr-name="sAMAccountName"/>
  2406. </query>
  2407. </input>
  2408. </nds>
  2409. 10:11:04 2B431700 Drvrs: CADS ST: Remote Interface Driver: Document sent.
  2410. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Received.
  2411. 10:11:04 2BA58700 Drvrs: CADS :
  2412. <nds dtdversion="1.1" ndsversion="8.7">
  2413. <source>
  2414. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2415. <contact>NetIQ Corporation</contact>
  2416. </source>
  2417. <output>
  2418. <status event-id="0" level="success"/>
  2419. </output>
  2420. </nds>
  2421. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Received document for subscriber channel
  2422. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Waiting for receive...
  2423. 10:11:04 2B431700 Drvrs: CADS ST: SubscriptionShim.execute() returned:
  2424. 10:11:04 2B431700 Drvrs: CADS ST:
  2425. <nds dtdversion="1.1" ndsversion="8.7">
  2426. <source>
  2427. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2428. <contact>NetIQ Corporation</contact>
  2429. </source>
  2430. <output>
  2431. <status event-id="0" level="success"/>
  2432. </output>
  2433. </nds>
  2434. 10:11:04 2B431700 Drvrs: CADS ST: Applying input transformation policies.
  2435. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  2436. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2437. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  2438. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  2439. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  2440. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  2441. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2442. 10:11:04 2B431700 Drvrs: CADS ST:
  2443. <nds dtdversion="1.1" ndsversion="8.7">
  2444. <source>
  2445. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2446. <contact>NetIQ Corporation</contact>
  2447. </source>
  2448. <output>
  2449. <status event-id="0" level="success"/>
  2450. </output>
  2451. </nds>
  2452. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-Publish.
  2453. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2454. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2455. 10:11:04 2B431700 Drvrs: CADS ST:
  2456. <nds dtdversion="1.1" ndsversion="8.7">
  2457. <source>
  2458. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2459. <contact>NetIQ Corporation</contact>
  2460. </source>
  2461. <output>
  2462. <status event-id="0" level="success"/>
  2463. </output>
  2464. </nds>
  2465. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: Scope.
  2466. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2467. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Vetos adds and moves'.
  2468. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  2469. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2470. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2471. 10:11:04 2B431700 Drvrs: CADS ST:
  2472. <nds dtdversion="1.1" ndsversion="8.7">
  2473. <source>
  2474. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2475. <contact>NetIQ Corporation</contact>
  2476. </source>
  2477. <output>
  2478. <status event-id="0" level="success"/>
  2479. </output>
  2480. </nds>
  2481. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-WriteAccounts.
  2482. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2483. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2484. 10:11:04 2B431700 Drvrs: CADS ST:
  2485. <nds dtdversion="1.1" ndsversion="8.7">
  2486. <source>
  2487. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2488. <contact>NetIQ Corporation</contact>
  2489. </source>
  2490. <output>
  2491. <status event-id="0" level="success"/>
  2492. </output>
  2493. </nds>
  2494. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-SubscriberUserAdd.
  2495. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2496. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2497. 10:11:04 2B431700 Drvrs: CADS ST:
  2498. <nds dtdversion="1.1" ndsversion="8.7">
  2499. <source>
  2500. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2501. <contact>NetIQ Corporation</contact>
  2502. </source>
  2503. <output>
  2504. <status event-id="0" level="success"/>
  2505. </output>
  2506. </nds>
  2507. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-FormatConversions.
  2508. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2509. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2510. 10:11:04 2B431700 Drvrs: CADS ST:
  2511. <nds dtdversion="1.1" ndsversion="8.7">
  2512. <source>
  2513. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2514. <contact>NetIQ Corporation</contact>
  2515. </source>
  2516. <output>
  2517. <status event-id="0" level="success"/>
  2518. </output>
  2519. </nds>
  2520. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-itp-EmailOnFailedPwdSub.
  2521. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2522. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2523. 10:11:04 2B431700 Drvrs: CADS ST:
  2524. <nds dtdversion="1.1" ndsversion="8.7">
  2525. <source>
  2526. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2527. <contact>NetIQ Corporation</contact>
  2528. </source>
  2529. <output>
  2530. <status event-id="0" level="success"/>
  2531. </output>
  2532. </nds>
  2533. 10:11:04 2B431700 Drvrs: CADS ST: Applying schema mapping policies to input.
  2534. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  2535. 10:11:04 2B431700 Drvrs: CADS ST: Resolving association references.
  2536. 10:11:04 2B431700 Drvrs: CADS ST: Query from policy result
  2537. 10:11:04 2B431700 Drvrs: CADS ST:
  2538. <nds dtdversion="1.1" ndsversion="8.7">
  2539. <source>
  2540. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2541. <contact>NetIQ Corporation</contact>
  2542. </source>
  2543. <output>
  2544. <status event-id="0" level="success"/>
  2545. </output>
  2546. </nds>
  2547. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "".
  2548. 10:11:04 2B431700 Drvrs: CADS ST: token-text("5.")
  2549. 10:11:04 2B431700 Drvrs: CADS ST: token-dest-name()
  2550. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  2551. 10:11:04 2B431700 Drvrs: CADS ST: token-text("6.")
  2552. 10:11:04 2B431700 Drvrs: CADS ST: token-src-name()
  2553. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  2554. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "1.testuser2.testuser3.testuser4.5.testuser6.testuser".
  2555. 10:11:04 2B431700 Drvrs: CADS ST:1.testuser2.testuser3.testuser4.5.testuser6.testuser
  2556. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-add-dest-attr-value("member",when="after",arg-dn("cn="+token-src-attr("ORGCADSgroup")+" Users,ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container")),"cn="+token-src-name()+",ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container")).
  2557. 10:11:04 2B431700 Drvrs: CADS ST: arg-dn("cn="+token-src-attr("ORGCADSgroup")+" Users,ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container"))
  2558. 10:11:04 2B431700 Drvrs: CADS ST: token-text("cn=")
  2559. 10:11:04 2B431700 Drvrs: CADS ST: token-src-attr("ORGCADSgroup")
  2560. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "FACSN".
  2561. 10:11:04 2B431700 Drvrs: CADS ST: token-text(" Users,ou=")
  2562. 10:11:04 2B431700 Drvrs: CADS ST: token-src-attr("ORGCADSgroup")
  2563. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "FACSN".
  2564. 10:11:04 2B431700 Drvrs: CADS ST: token-text(" users,ou=")
  2565. 10:11:04 2B431700 Drvrs: CADS ST: token-local-variable("LV_Division")
  2566. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "Academic Affairs Administration".
  2567. 10:11:04 2B431700 Drvrs: CADS ST: token-text(",")
  2568. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.user.container")
  2569. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  2570. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  2571. 10:11:04 2B431700 Drvrs: CADS ST: arg-string("cn="+token-src-name()+",ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container"))
  2572. 10:11:04 2B431700 Drvrs: CADS ST: token-text("cn=")
  2573. 10:11:04 2B431700 Drvrs: CADS ST: token-src-name()
  2574. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  2575. 10:11:04 2B431700 Drvrs: CADS ST: token-text(",ou=")
  2576. 10:11:04 2B431700 Drvrs: CADS ST: token-src-attr("ORGCADSgroup")
  2577. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "FACSN".
  2578. 10:11:04 2B431700 Drvrs: CADS ST: token-text(" users,ou=")
  2579. 10:11:04 2B431700 Drvrs: CADS ST: token-local-variable("LV_Division")
  2580. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "Academic Affairs Administration".
  2581. 10:11:04 2B431700 Drvrs: CADS ST: token-text(",")
  2582. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.user.container")
  2583. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: "OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  2584. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: "cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  2585. 10:11:04 2B431700 Drvrs: CADS ST: Direct command from policy
  2586. 10:11:04 2B431700 Drvrs: CADS ST:
  2587. <nds dtdversion="4.0" ndsversion="8.x">
  2588. <source>
  2589. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2590. <contact>NetIQ Corporation</contact>
  2591. </source>
  2592. <input>
  2593. <add class-name="Organizational Unit" dest-dn="ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  2594. </input>
  2595. </nds>
  2596. 10:11:04 2B431700 Drvrs: CADS ST: Fixing up association references.
  2597. 10:11:04 2B431700 Drvrs: CADS ST: Applying schema mapping policies to output.
  2598. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  2599. 10:11:04 2B431700 Drvrs: CADS ST: Mapping class-name 'Organizational Unit' to 'organizationalUnit'.
  2600. 10:11:04 2B431700 Drvrs: CADS ST: Applying output transformation policies.
  2601. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-FormatConversions.
  2602. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  2603. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Street Address: Convert LF to CR-LF'.
  2604. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  2605. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Street Address: Convert LF to CR-LF'.
  2606. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("streetAddress",token-replace-all("[^\r]\n","\r\n",token-local-variable("current-value"))).
  2607. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'logonHours: Convert to Active Directory form'.
  2608. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  2609. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'logonHours: Convert to Active Directory form'.
  2610. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
  2611. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'accountExpires: Convert to Active Directory form'.
  2612. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'accountExpires' changing) = FALSE.
  2613. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2614. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'lockoutTime: Convert to Active Directory form'.
  2615. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'lockoutTime' available) = FALSE.
  2616. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2617. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add: User - convert multi-valued Telephone to single value'.
  2618. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "add") = TRUE.
  2619. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "User") = FALSE.
  2620. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2621. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'update Active Directory logon name'.
  2622. 10:11:04 2B431700 Drvrs: CADS ST: (if-xpath true "self::status[@level = 'success']/operation-data/windows-2000-logon-name") = FALSE.
  2623. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2624. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2625. 10:11:04 2B431700 Drvrs: CADS ST:
  2626. <nds dtdversion="4.0" ndsversion="8.x">
  2627. <source>
  2628. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2629. <contact>NetIQ Corporation</contact>
  2630. </source>
  2631. <input>
  2632. <add class-name="organizationalUnit" dest-dn="ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  2633. </input>
  2634. </nds>
  2635. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-ExchangeEntitlementQuery.
  2636. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  2637. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add dest-dn to the Exchange Entitlement Query'.
  2638. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "query") = FALSE.
  2639. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2640. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2641. 10:11:04 2B431700 Drvrs: CADS ST:
  2642. <nds dtdversion="4.0" ndsversion="8.x">
  2643. <source>
  2644. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2645. <contact>NetIQ Corporation</contact>
  2646. </source>
  2647. <input>
  2648. <add class-name="organizationalUnit" dest-dn="ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  2649. </input>
  2650. </nds>
  2651. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-otp-EmailOnFailedPwdPub.
  2652. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  2653. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Send e-mail for a failed publish password operation'.
  2654. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'notify-user-on-password-dist-failure' equal "true") = TRUE.
  2655. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "status") = FALSE.
  2656. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2657. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2658. 10:11:04 2B431700 Drvrs: CADS ST:
  2659. <nds dtdversion="4.0" ndsversion="8.x">
  2660. <source>
  2661. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2662. <contact>NetIQ Corporation</contact>
  2663. </source>
  2664. <input>
  2665. <add class-name="organizationalUnit" dest-dn="ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  2666. </input>
  2667. </nds>
  2668. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-otp-Subscribe.
  2669. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  2670. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Do not process Account Tracking policies if modify with no source-dn '.
  2671. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = FALSE.
  2672. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2673. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - Initialize Realm Mapping'.
  2674. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' equal "true") = TRUE.
  2675. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  2676. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2677. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - disregard if disabled or wrong object class'.
  2678. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  2679. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'AccountTracking - disregard if disabled or wrong object class'.
  2680. 10/16/2017
  2681. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  2682. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  2683. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' not-equal "true") = FALSE.
  2684. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  2685. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-for-each(arg-node-set(token-global-variable("drv.acctTrk.objectClass"))).
  2686. 10:11:04 2B431700 Drvrs: CADS ST: arg-node-set(token-global-variable("drv.acctTrk.objectClass"))
  2687. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.acctTrk.objectClass")
  2688. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: {"user"}.
  2689. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: {"user"}.
  2690. 10:11:04 2B431700 Drvrs: CADS ST: Performing actions for local-variable(current-node) = "user".
  2691. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  2692. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  2693. 10:11:04 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'user'.
  2694. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "$current-node$") = FALSE.
  2695. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  2696. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  2697. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  2698. 10:11:04 2B431700 Drvrs: CADS ST: (if-local-variable 'pass' not-available) = TRUE.
  2699. 10:11:04 2B431700 Drvrs: CADS ST: Performing if actions.
  2700. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-break().
  2701. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2702. 10:11:04 2B431700 Drvrs: CADS ST:
  2703. <nds dtdversion="4.0" ndsversion="8.x">
  2704. <source>
  2705. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2706. <contact>NetIQ Corporation</contact>
  2707. </source>
  2708. <input>
  2709. <add class-name="organizationalUnit" dest-dn="ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  2710. </input>
  2711. </nds>
  2712. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  2713. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  2714. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  2715. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  2716. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  2717. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  2718. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2719. 10:11:04 2B431700 Drvrs: CADS ST:
  2720. <nds dtdversion="4.0" ndsversion="8.x">
  2721. <source>
  2722. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2723. <contact>NetIQ Corporation</contact>
  2724. </source>
  2725. <input>
  2726. <add class-name="organizationalUnit" dest-dn="ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  2727. </input>
  2728. </nds>
  2729. 10:11:04 2B431700 Drvrs: CADS ST: Submitting document to subscriber shim:
  2730. 10:11:04 2B431700 Drvrs: CADS ST:
  2731. <nds dtdversion="4.0" ndsversion="8.x">
  2732. <source>
  2733. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2734. <contact>NetIQ Corporation</contact>
  2735. </source>
  2736. <input>
  2737. <add class-name="organizationalUnit" dest-dn="ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  2738. </input>
  2739. </nds>
  2740. 10:11:04 2B431700 Drvrs: CADS ST: Remote Interface Driver: Sending...
  2741. 10:11:04 2B431700 Drvrs: CADS ST:
  2742. <nds dtdversion="4.0" ndsversion="8.x">
  2743. <source>
  2744. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2745. <contact>NetIQ Corporation</contact>
  2746. </source>
  2747. <input>
  2748. <add class-name="organizationalUnit" dest-dn="ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  2749. </input>
  2750. </nds>
  2751. 10:11:04 2B431700 Drvrs: CADS ST: Remote Interface Driver: Document sent.
  2752. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Received.
  2753. 10:11:04 2BA58700 Drvrs: CADS :
  2754. <nds dtdversion="1.1" ndsversion="8.7">
  2755. <source>
  2756. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2757. <contact>NetIQ Corporation</contact>
  2758. </source>
  2759. <output>
  2760. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="error" type="driver-general">
  2761. <ldap-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">
  2762. <client-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">Already Exists</client-err>
  2763. <server-err>00002071: UpdErr: DSID-0305038D, problem 6005 (ENTRY_EXISTS), data 0
  2764. </server-err>
  2765. <server-err-ex win32-rc="8305"/>
  2766. </ldap-err>
  2767. </status>
  2768. </output>
  2769. </nds>
  2770. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Received document for subscriber channel
  2771. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Waiting for receive...
  2772. 10:11:04 2B431700 Drvrs: CADS ST: SubscriptionShim.execute() returned:
  2773. 10:11:04 2B431700 Drvrs: CADS ST:
  2774. <nds dtdversion="1.1" ndsversion="8.7">
  2775. <source>
  2776. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2777. <contact>NetIQ Corporation</contact>
  2778. </source>
  2779. <output>
  2780. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="error" type="driver-general">
  2781. <ldap-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">
  2782. <client-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">Already Exists</client-err>
  2783. <server-err>00002071: UpdErr: DSID-0305038D, problem 6005 (ENTRY_EXISTS), data 0
  2784. </server-err>
  2785. <server-err-ex win32-rc="8305"/>
  2786. </ldap-err>
  2787. </status>
  2788. </output>
  2789. </nds>
  2790. 10:11:04 2B431700 Drvrs: CADS ST: Applying input transformation policies.
  2791. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  2792. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2793. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  2794. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  2795. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  2796. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  2797. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2798. 10:11:04 2B431700 Drvrs: CADS ST:
  2799. <nds dtdversion="1.1" ndsversion="8.7">
  2800. <source>
  2801. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2802. <contact>NetIQ Corporation</contact>
  2803. </source>
  2804. <output>
  2805. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="error" type="driver-general">
  2806. <ldap-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">
  2807. <client-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">Already Exists</client-err>
  2808. <server-err>00002071: UpdErr: DSID-0305038D, problem 6005 (ENTRY_EXISTS), data 0
  2809. </server-err>
  2810. <server-err-ex win32-rc="8305"/>
  2811. </ldap-err>
  2812. </status>
  2813. </output>
  2814. </nds>
  2815. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-Publish.
  2816. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2817. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2818. 10:11:04 2B431700 Drvrs: CADS ST:
  2819. <nds dtdversion="1.1" ndsversion="8.7">
  2820. <source>
  2821. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2822. <contact>NetIQ Corporation</contact>
  2823. </source>
  2824. <output>
  2825. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="error" type="driver-general">
  2826. <ldap-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">
  2827. <client-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">Already Exists</client-err>
  2828. <server-err>00002071: UpdErr: DSID-0305038D, problem 6005 (ENTRY_EXISTS), data 0
  2829. </server-err>
  2830. <server-err-ex win32-rc="8305"/>
  2831. </ldap-err>
  2832. </status>
  2833. </output>
  2834. </nds>
  2835. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: Scope.
  2836. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2837. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Vetos adds and moves'.
  2838. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  2839. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  2840. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2841. 10:11:04 2B431700 Drvrs: CADS ST:
  2842. <nds dtdversion="1.1" ndsversion="8.7">
  2843. <source>
  2844. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2845. <contact>NetIQ Corporation</contact>
  2846. </source>
  2847. <output>
  2848. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="error" type="driver-general">
  2849. <ldap-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">
  2850. <client-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">Already Exists</client-err>
  2851. <server-err>00002071: UpdErr: DSID-0305038D, problem 6005 (ENTRY_EXISTS), data 0
  2852. </server-err>
  2853. <server-err-ex win32-rc="8305"/>
  2854. </ldap-err>
  2855. </status>
  2856. </output>
  2857. </nds>
  2858. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-WriteAccounts.
  2859. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2860. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2861. 10:11:04 2B431700 Drvrs: CADS ST:
  2862. <nds dtdversion="1.1" ndsversion="8.7">
  2863. <source>
  2864. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2865. <contact>NetIQ Corporation</contact>
  2866. </source>
  2867. <output>
  2868. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="error" type="driver-general">
  2869. <ldap-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">
  2870. <client-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">Already Exists</client-err>
  2871. <server-err>00002071: UpdErr: DSID-0305038D, problem 6005 (ENTRY_EXISTS), data 0
  2872. </server-err>
  2873. <server-err-ex win32-rc="8305"/>
  2874. </ldap-err>
  2875. </status>
  2876. </output>
  2877. </nds>
  2878. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-SubscriberUserAdd.
  2879. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2880. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2881. 10:11:04 2B431700 Drvrs: CADS ST:
  2882. <nds dtdversion="1.1" ndsversion="8.7">
  2883. <source>
  2884. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2885. <contact>NetIQ Corporation</contact>
  2886. </source>
  2887. <output>
  2888. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="error" type="driver-general">
  2889. <ldap-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">
  2890. <client-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">Already Exists</client-err>
  2891. <server-err>00002071: UpdErr: DSID-0305038D, problem 6005 (ENTRY_EXISTS), data 0
  2892. </server-err>
  2893. <server-err-ex win32-rc="8305"/>
  2894. </ldap-err>
  2895. </status>
  2896. </output>
  2897. </nds>
  2898. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-FormatConversions.
  2899. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2900. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2901. 10:11:04 2B431700 Drvrs: CADS ST:
  2902. <nds dtdversion="1.1" ndsversion="8.7">
  2903. <source>
  2904. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2905. <contact>NetIQ Corporation</contact>
  2906. </source>
  2907. <output>
  2908. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="error" type="driver-general">
  2909. <ldap-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">
  2910. <client-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">Already Exists</client-err>
  2911. <server-err>00002071: UpdErr: DSID-0305038D, problem 6005 (ENTRY_EXISTS), data 0
  2912. </server-err>
  2913. <server-err-ex win32-rc="8305"/>
  2914. </ldap-err>
  2915. </status>
  2916. </output>
  2917. </nds>
  2918. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-itp-EmailOnFailedPwdSub.
  2919. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  2920. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  2921. 10:11:04 2B431700 Drvrs: CADS ST:
  2922. <nds dtdversion="1.1" ndsversion="8.7">
  2923. <source>
  2924. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2925. <contact>NetIQ Corporation</contact>
  2926. </source>
  2927. <output>
  2928. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="error" type="driver-general">
  2929. <ldap-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">
  2930. <client-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">Already Exists</client-err>
  2931. <server-err>00002071: UpdErr: DSID-0305038D, problem 6005 (ENTRY_EXISTS), data 0
  2932. </server-err>
  2933. <server-err-ex win32-rc="8305"/>
  2934. </ldap-err>
  2935. </status>
  2936. </output>
  2937. </nds>
  2938. 10:11:04 2B431700 Drvrs: CADS ST: Applying schema mapping policies to input.
  2939. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  2940. 10:11:04 2B431700 Drvrs: CADS ST: Resolving association references.
  2941. 10:11:04 2B431700 Drvrs: CADS ST: Processing returned document.
  2942. 10:11:04 2B431700 Drvrs: CADS ST: Processing operation <status> for .
  2943. 10:11:04 2B431700 Drvrs: CADS ST:
  2944. DirXML Log Event -------------------
  2945. Driver: \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS
  2946. Channel: Subscriber
  2947. Object: \ORG-IDV\ORG\data\users\employees\testuser
  2948. Status: Error
  2949. Message: <ldap-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">
  2950. <client-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">Already Exists</client-err>
  2951. <server-err>00002071: UpdErr: DSID-0305038D, problem 6005 (ENTRY_EXISTS), data 0
  2952. </server-err>
  2953. <server-err-ex win32-rc="8305"/>
  2954. </ldap-err>
  2955. 10:11:04 2B431700 Drvrs: CADS ST: Direct command from policy result
  2956. 10:11:04 2B431700 Drvrs: CADS ST:
  2957. <nds dtdversion="1.1" ndsversion="8.7">
  2958. <source>
  2959. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  2960. <contact>NetIQ Corporation</contact>
  2961. </source>
  2962. <output>
  2963. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="error" type="driver-general">
  2964. <ldap-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">
  2965. <client-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">Already Exists</client-err>
  2966. <server-err>00002071: UpdErr: DSID-0305038D, problem 6005 (ENTRY_EXISTS), data 0
  2967. </server-err>
  2968. <server-err-ex win32-rc="8305"/>
  2969. </ldap-err>
  2970. <application>DirXML</application>
  2971. <module>ORG-CADS</module>
  2972. <object-dn>\ORG-IDV\ORG\data\users\employees\testuser</object-dn>
  2973. <component>Subscriber</component>
  2974. </status>
  2975. </output>
  2976. </nds>
  2977. 10:11:04 2B431700 Drvrs: CADS ST: Direct command from policy
  2978. 10:11:04 2B431700 Drvrs: CADS ST:
  2979. <nds dtdversion="4.0" ndsversion="8.x">
  2980. <source>
  2981. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  2982. <contact>NetIQ Corporation</contact>
  2983. </source>
  2984. <input>
  2985. <add class-name="Organizational Unit" dest-dn="ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  2986. </input>
  2987. </nds>
  2988. 10:11:04 2B431700 Drvrs: CADS ST: Fixing up association references.
  2989. 10:11:04 2B431700 Drvrs: CADS ST: Applying schema mapping policies to output.
  2990. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  2991. 10:11:04 2B431700 Drvrs: CADS ST: Mapping class-name 'Organizational Unit' to 'organizationalUnit'.
  2992. 10:11:04 2B431700 Drvrs: CADS ST: Applying output transformation policies.
  2993. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-FormatConversions.
  2994. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  2995. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Street Address: Convert LF to CR-LF'.
  2996. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  2997. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Street Address: Convert LF to CR-LF'.
  2998. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("streetAddress",token-replace-all("[^\r]\n","\r\n",token-local-variable("current-value"))).
  2999. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'logonHours: Convert to Active Directory form'.
  3000. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  3001. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'logonHours: Convert to Active Directory form'.
  3002. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
  3003. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'accountExpires: Convert to Active Directory form'.
  3004. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'accountExpires' changing) = FALSE.
  3005. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3006. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'lockoutTime: Convert to Active Directory form'.
  3007. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'lockoutTime' available) = FALSE.
  3008. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3009. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add: User - convert multi-valued Telephone to single value'.
  3010. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "add") = TRUE.
  3011. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "User") = FALSE.
  3012. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3013. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'update Active Directory logon name'.
  3014. 10:11:04 2B431700 Drvrs: CADS ST: (if-xpath true "self::status[@level = 'success']/operation-data/windows-2000-logon-name") = FALSE.
  3015. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3016. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3017. 10:11:04 2B431700 Drvrs: CADS ST:
  3018. <nds dtdversion="4.0" ndsversion="8.x">
  3019. <source>
  3020. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3021. <contact>NetIQ Corporation</contact>
  3022. </source>
  3023. <input>
  3024. <add class-name="organizationalUnit" dest-dn="ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  3025. </input>
  3026. </nds>
  3027. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-ExchangeEntitlementQuery.
  3028. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  3029. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add dest-dn to the Exchange Entitlement Query'.
  3030. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "query") = FALSE.
  3031. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3032. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3033. 10:11:04 2B431700 Drvrs: CADS ST:
  3034. <nds dtdversion="4.0" ndsversion="8.x">
  3035. <source>
  3036. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3037. <contact>NetIQ Corporation</contact>
  3038. </source>
  3039. <input>
  3040. <add class-name="organizationalUnit" dest-dn="ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  3041. </input>
  3042. </nds>
  3043. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-otp-EmailOnFailedPwdPub.
  3044. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  3045. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Send e-mail for a failed publish password operation'.
  3046. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'notify-user-on-password-dist-failure' equal "true") = TRUE.
  3047. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "status") = FALSE.
  3048. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3049. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3050. 10:11:04 2B431700 Drvrs: CADS ST:
  3051. <nds dtdversion="4.0" ndsversion="8.x">
  3052. <source>
  3053. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3054. <contact>NetIQ Corporation</contact>
  3055. </source>
  3056. <input>
  3057. <add class-name="organizationalUnit" dest-dn="ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  3058. </input>
  3059. </nds>
  3060. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-otp-Subscribe.
  3061. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  3062. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Do not process Account Tracking policies if modify with no source-dn '.
  3063. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = FALSE.
  3064. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3065. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - Initialize Realm Mapping'.
  3066. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' equal "true") = TRUE.
  3067. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  3068. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3069. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - disregard if disabled or wrong object class'.
  3070. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  3071. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'AccountTracking - disregard if disabled or wrong object class'.
  3072. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  3073. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  3074. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' not-equal "true") = FALSE.
  3075. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  3076. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-for-each(arg-node-set(token-global-variable("drv.acctTrk.objectClass"))).
  3077. 10:11:04 2B431700 Drvrs: CADS ST: arg-node-set(token-global-variable("drv.acctTrk.objectClass"))
  3078. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.acctTrk.objectClass")
  3079. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: {"user"}.
  3080. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: {"user"}.
  3081. 10:11:04 2B431700 Drvrs: CADS ST: Performing actions for local-variable(current-node) = "user".
  3082. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  3083. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  3084. 10:11:04 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'user'.
  3085. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "$current-node$") = FALSE.
  3086. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  3087. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  3088. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  3089. 10:11:04 2B431700 Drvrs: CADS ST: (if-local-variable 'pass' not-available) = TRUE.
  3090. 10:11:04 2B431700 Drvrs: CADS ST: Performing if actions.
  3091. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-break().
  3092. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3093. 10:11:04 2B431700 Drvrs: CADS ST:
  3094. <nds dtdversion="4.0" ndsversion="8.x">
  3095. <source>
  3096. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3097. <contact>NetIQ Corporation</contact>
  3098. </source>
  3099. <input>
  3100. <add class-name="organizationalUnit" dest-dn="ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  3101. </input>
  3102. </nds>
  3103. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  3104. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  3105. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  3106. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  3107. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  3108. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  3109. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3110. 10:11:04 2B431700 Drvrs: CADS ST:
  3111. <nds dtdversion="4.0" ndsversion="8.x">
  3112. <source>
  3113. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3114. <contact>NetIQ Corporation</contact>
  3115. </source>
  3116. <input>
  3117. <add class-name="organizationalUnit" dest-dn="ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  3118. </input>
  3119. </nds>
  3120. 10:11:04 2B431700 Drvrs: CADS ST: Submitting document to subscriber shim:
  3121. 10:11:04 2B431700 Drvrs: CADS ST:
  3122. <nds dtdversion="4.0" ndsversion="8.x">
  3123. <source>
  3124. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3125. <contact>NetIQ Corporation</contact>
  3126. </source>
  3127. <input>
  3128. <add class-name="organizationalUnit" dest-dn="ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  3129. </input>
  3130. </nds>
  3131. 10:11:04 2B431700 Drvrs: CADS ST: Remote Interface Driver: Sending...
  3132. 10:11:04 2B431700 Drvrs: CADS ST:
  3133. <nds dtdversion="4.0" ndsversion="8.x">
  3134. <source>
  3135. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3136. <contact>NetIQ Corporation</contact>
  3137. </source>
  3138. <input>
  3139. <add class-name="organizationalUnit" dest-dn="ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  3140. </input>
  3141. </nds>
  3142. 10:11:04 2B431700 Drvrs: CADS ST: Remote Interface Driver: Document sent.
  3143. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Received.
  3144. 10:11:04 2BA58700 Drvrs: CADS :
  3145. <nds dtdversion="1.1" ndsversion="8.7">
  3146. <source>
  3147. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3148. <contact>NetIQ Corporation</contact>
  3149. </source>
  3150. <output>
  3151. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3152. </output>
  3153. </nds>
  3154. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Received document for subscriber channel
  3155. 10:11:04 2BA58700 Drvrs: CADS :Remote Interface Driver: Waiting for receive...
  3156. 10:11:04 2B431700 Drvrs: CADS ST: SubscriptionShim.execute() returned:
  3157. 10:11:04 2B431700 Drvrs: CADS ST:
  3158. <nds dtdversion="1.1" ndsversion="8.7">
  3159. <source>
  3160. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3161. <contact>NetIQ Corporation</contact>
  3162. </source>
  3163. <output>
  3164. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3165. </output>
  3166. </nds>
  3167. 10:11:04 2B431700 Drvrs: CADS ST: Applying input transformation policies.
  3168. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  3169. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  3170. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  3171. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  3172. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  3173. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  3174. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3175. 10:11:04 2B431700 Drvrs: CADS ST:
  3176. <nds dtdversion="1.1" ndsversion="8.7">
  3177. <source>
  3178. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3179. <contact>NetIQ Corporation</contact>
  3180. </source>
  3181. <output>
  3182. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3183. </output>
  3184. </nds>
  3185. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-Publish.
  3186. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  3187. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3188. 10:11:04 2B431700 Drvrs: CADS ST:
  3189. <nds dtdversion="1.1" ndsversion="8.7">
  3190. <source>
  3191. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3192. <contact>NetIQ Corporation</contact>
  3193. </source>
  3194. <output>
  3195. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3196. </output>
  3197. </nds>
  3198. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: Scope.
  3199. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  3200. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Vetos adds and moves'.
  3201. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  3202. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3203. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3204. 10:11:04 2B431700 Drvrs: CADS ST:
  3205. <nds dtdversion="1.1" ndsversion="8.7">
  3206. <source>
  3207. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3208. <contact>NetIQ Corporation</contact>
  3209. </source>
  3210. <output>
  3211. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3212. </output>
  3213. </nds>
  3214. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-WriteAccounts.
  3215. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  3216. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3217. 10:11:04 2B431700 Drvrs: CADS ST:
  3218. <nds dtdversion="1.1" ndsversion="8.7">
  3219. <source>
  3220. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3221. <contact>NetIQ Corporation</contact>
  3222. </source>
  3223. <output>
  3224. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3225. </output>
  3226. </nds>
  3227. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-SubscriberUserAdd.
  3228. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  3229. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3230. 10:11:04 2B431700 Drvrs: CADS ST:
  3231. <nds dtdversion="1.1" ndsversion="8.7">
  3232. <source>
  3233. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3234. <contact>NetIQ Corporation</contact>
  3235. </source>
  3236. <output>
  3237. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3238. </output>
  3239. </nds>
  3240. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-FormatConversions.
  3241. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  3242. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3243. 10:11:04 2B431700 Drvrs: CADS ST:
  3244. <nds dtdversion="1.1" ndsversion="8.7">
  3245. <source>
  3246. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3247. <contact>NetIQ Corporation</contact>
  3248. </source>
  3249. <output>
  3250. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3251. </output>
  3252. </nds>
  3253. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-itp-EmailOnFailedPwdSub.
  3254. 10:11:04 2B431700 Drvrs: CADS ST: Applying to status #1.
  3255. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3256. 10:11:04 2B431700 Drvrs: CADS ST:
  3257. <nds dtdversion="1.1" ndsversion="8.7">
  3258. <source>
  3259. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3260. <contact>NetIQ Corporation</contact>
  3261. </source>
  3262. <output>
  3263. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3264. </output>
  3265. </nds>
  3266. 10:11:04 2B431700 Drvrs: CADS ST: Applying schema mapping policies to input.
  3267. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  3268. 10:11:04 2B431700 Drvrs: CADS ST: Resolving association references.
  3269. 10:11:04 2B431700 Drvrs: CADS ST: Processing returned document.
  3270. 10:11:04 2B431700 Drvrs: CADS ST: Processing operation <status> for .
  3271. 10:11:04 2B431700 Drvrs: CADS ST:
  3272. DirXML Log Event -------------------
  3273. Driver: \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS
  3274. Channel: Subscriber
  3275. Object: \ORG-IDV\ORG\data\users\employees\testuser
  3276. Status: Success
  3277. 10:11:04 2B431700 Drvrs: CADS ST: Direct command from policy result
  3278. 10:11:04 2B431700 Drvrs: CADS ST:
  3279. <nds dtdversion="1.1" ndsversion="8.7">
  3280. <source>
  3281. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3282. <contact>NetIQ Corporation</contact>
  3283. </source>
  3284. <output>
  3285. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  3286. <application>DirXML</application>
  3287. <module>ORG-CADS</module>
  3288. <object-dn>\ORG-IDV\ORG\data\users\employees\testuser</object-dn>
  3289. <component>Subscriber</component>
  3290. </status>
  3291. </output>
  3292. </nds>
  3293. 10:11:04 2B431700 Drvrs: CADS ST: Direct command from policy
  3294. 10:11:04 2B431700 Drvrs: CADS ST:
  3295. <nds dtdversion="4.0" ndsversion="8.x">
  3296. <source>
  3297. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3298. <contact>NetIQ Corporation</contact>
  3299. </source>
  3300. <input>
  3301. <add class-name="group" dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  3302. </input>
  3303. </nds>
  3304. 10:11:04 2B431700 Drvrs: CADS ST: Fixing up association references.
  3305. 10:11:04 2B431700 Drvrs: CADS ST: Applying schema mapping policies to output.
  3306. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  3307. 10:11:04 2B431700 Drvrs: CADS ST: Mapping class-name 'group' to 'group'.
  3308. 10:11:04 2B431700 Drvrs: CADS ST: Applying output transformation policies.
  3309. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-FormatConversions.
  3310. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  3311. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Street Address: Convert LF to CR-LF'.
  3312. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  3313. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'Street Address: Convert LF to CR-LF'.
  3314. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("streetAddress",token-replace-all("[^\r]\n","\r\n",token-local-variable("current-value"))).
  3315. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'logonHours: Convert to Active Directory form'.
  3316. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  3317. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'logonHours: Convert to Active Directory form'.
  3318. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
  3319. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'accountExpires: Convert to Active Directory form'.
  3320. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'accountExpires' changing) = FALSE.
  3321. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3322. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'lockoutTime: Convert to Active Directory form'.
  3323. 10/16/2017
  3324. 10:11:04 2B431700 Drvrs: CADS ST: (if-op-attr 'lockoutTime' available) = FALSE.
  3325. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3326. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add: User - convert multi-valued Telephone to single value'.
  3327. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "add") = TRUE.
  3328. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "User") = FALSE.
  3329. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3330. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'update Active Directory logon name'.
  3331. 10:11:04 2B431700 Drvrs: CADS ST: (if-xpath true "self::status[@level = 'success']/operation-data/windows-2000-logon-name") = FALSE.
  3332. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3333. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3334. 10:11:04 2B431700 Drvrs: CADS ST:
  3335. <nds dtdversion="4.0" ndsversion="8.x">
  3336. <source>
  3337. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3338. <contact>NetIQ Corporation</contact>
  3339. </source>
  3340. <input>
  3341. <add class-name="group" dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  3342. </input>
  3343. </nds>
  3344. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-ExchangeEntitlementQuery.
  3345. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  3346. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add dest-dn to the Exchange Entitlement Query'.
  3347. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "query") = FALSE.
  3348. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3349. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3350. 10:11:04 2B431700 Drvrs: CADS ST:
  3351. <nds dtdversion="4.0" ndsversion="8.x">
  3352. <source>
  3353. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3354. <contact>NetIQ Corporation</contact>
  3355. </source>
  3356. <input>
  3357. <add class-name="group" dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  3358. </input>
  3359. </nds>
  3360. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-otp-EmailOnFailedPwdPub.
  3361. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  3362. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Send e-mail for a failed publish password operation'.
  3363. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'notify-user-on-password-dist-failure' equal "true") = TRUE.
  3364. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "status") = FALSE.
  3365. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3366. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3367. 10:11:04 2B431700 Drvrs: CADS ST:
  3368. <nds dtdversion="4.0" ndsversion="8.x">
  3369. <source>
  3370. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3371. <contact>NetIQ Corporation</contact>
  3372. </source>
  3373. <input>
  3374. <add class-name="group" dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  3375. </input>
  3376. </nds>
  3377. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-otp-Subscribe.
  3378. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  3379. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Do not process Account Tracking policies if modify with no source-dn '.
  3380. 10:11:04 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = FALSE.
  3381. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3382. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - Initialize Realm Mapping'.
  3383. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' equal "true") = TRUE.
  3384. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  3385. 10:11:04 2B431700 Drvrs: CADS ST: Rule rejected.
  3386. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - disregard if disabled or wrong object class'.
  3387. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  3388. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'AccountTracking - disregard if disabled or wrong object class'.
  3389. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  3390. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  3391. 10:11:04 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' not-equal "true") = FALSE.
  3392. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  3393. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-for-each(arg-node-set(token-global-variable("drv.acctTrk.objectClass"))).
  3394. 10:11:04 2B431700 Drvrs: CADS ST: arg-node-set(token-global-variable("drv.acctTrk.objectClass"))
  3395. 10:11:04 2B431700 Drvrs: CADS ST: token-global-variable("drv.acctTrk.objectClass")
  3396. 10:11:04 2B431700 Drvrs: CADS ST: Token Value: {"user"}.
  3397. 10:11:04 2B431700 Drvrs: CADS ST: Arg Value: {"user"}.
  3398. 10:11:04 2B431700 Drvrs: CADS ST: Performing actions for local-variable(current-node) = "user".
  3399. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  3400. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  3401. 10:11:04 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'user'.
  3402. 10:11:04 2B431700 Drvrs: CADS ST: (if-class-name equal "$current-node$") = FALSE.
  3403. 10:11:04 2B431700 Drvrs: CADS ST: Performing else actions.
  3404. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-if().
  3405. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating conditions.
  3406. 10:11:04 2B431700 Drvrs: CADS ST: (if-local-variable 'pass' not-available) = TRUE.
  3407. 10:11:04 2B431700 Drvrs: CADS ST: Performing if actions.
  3408. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-break().
  3409. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3410. 10:11:04 2B431700 Drvrs: CADS ST:
  3411. <nds dtdversion="4.0" ndsversion="8.x">
  3412. <source>
  3413. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3414. <contact>NetIQ Corporation</contact>
  3415. </source>
  3416. <input>
  3417. <add class-name="group" dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  3418. </input>
  3419. </nds>
  3420. 10:11:04 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  3421. 10:11:04 2B431700 Drvrs: CADS ST: Applying to add #1.
  3422. 10:11:04 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  3423. 10:11:04 2B431700 Drvrs: CADS ST: Rule selected.
  3424. 10:11:04 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  3425. 10:11:04 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  3426. 10:11:04 2B431700 Drvrs: CADS ST: Policy returned:
  3427. 10:11:04 2B431700 Drvrs: CADS ST:
  3428. <nds dtdversion="4.0" ndsversion="8.x">
  3429. <source>
  3430. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3431. <contact>NetIQ Corporation</contact>
  3432. </source>
  3433. <input>
  3434. <add class-name="group" dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  3435. </input>
  3436. </nds>
  3437. 10:11:04 2B431700 Drvrs: CADS ST: Submitting document to subscriber shim:
  3438. 10:11:04 2B431700 Drvrs: CADS ST:
  3439. <nds dtdversion="4.0" ndsversion="8.x">
  3440. <source>
  3441. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3442. <contact>NetIQ Corporation</contact>
  3443. </source>
  3444. <input>
  3445. <add class-name="group" dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  3446. </input>
  3447. </nds>
  3448. 10:11:04 2B431700 Drvrs: CADS ST: Remote Interface Driver: Sending...
  3449. 10:11:04 2B431700 Drvrs: CADS ST:
  3450. <nds dtdversion="4.0" ndsversion="8.x">
  3451. <source>
  3452. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3453. <contact>NetIQ Corporation</contact>
  3454. </source>
  3455. <input>
  3456. <add class-name="group" dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233"/>
  3457. </input>
  3458. </nds>
  3459. 10:11:04 2B431700 Drvrs: CADS ST: Remote Interface Driver: Document sent.
  3460. 10:11:04 2D2FD700 Drvrs: Group Management PT:
  3461. DirXML Log Event -------------------
  3462. Driver: \ORG-IDV\ORG\services\ORG-VaultDriverSet\Group Management
  3463. Channel: Publisher
  3464. Status: Success
  3465. 10:11:05 2BA58700 Drvrs: CADS :Remote Interface Driver: Received.
  3466. 10:11:05 2BA58700 Drvrs: CADS :
  3467. <nds dtdversion="1.1" ndsversion="8.7">
  3468. <source>
  3469. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3470. <contact>NetIQ Corporation</contact>
  3471. </source>
  3472. <output>
  3473. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3474. </output>
  3475. </nds>
  3476. 10:11:05 2BA58700 Drvrs: CADS :Remote Interface Driver: Received document for subscriber channel
  3477. 10:11:05 2BA58700 Drvrs: CADS :Remote Interface Driver: Waiting for receive...
  3478. 10:11:05 2B431700 Drvrs: CADS ST: SubscriptionShim.execute() returned:
  3479. 10:11:05 2B431700 Drvrs: CADS ST:
  3480. <nds dtdversion="1.1" ndsversion="8.7">
  3481. <source>
  3482. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3483. <contact>NetIQ Corporation</contact>
  3484. </source>
  3485. <output>
  3486. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3487. </output>
  3488. </nds>
  3489. 10:11:05 2B431700 Drvrs: CADS ST: Applying input transformation policies.
  3490. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  3491. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #1.
  3492. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  3493. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  3494. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  3495. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  3496. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  3497. 10:11:05 2B431700 Drvrs: CADS ST:
  3498. <nds dtdversion="1.1" ndsversion="8.7">
  3499. <source>
  3500. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3501. <contact>NetIQ Corporation</contact>
  3502. </source>
  3503. <output>
  3504. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3505. </output>
  3506. </nds>
  3507. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-Publish.
  3508. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #1.
  3509. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  3510. 10:11:05 2B431700 Drvrs: CADS ST:
  3511. <nds dtdversion="1.1" ndsversion="8.7">
  3512. <source>
  3513. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3514. <contact>NetIQ Corporation</contact>
  3515. </source>
  3516. <output>
  3517. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3518. </output>
  3519. </nds>
  3520. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: Scope.
  3521. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #1.
  3522. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Vetos adds and moves'.
  3523. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  3524. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3525. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  3526. 10:11:05 2B431700 Drvrs: CADS ST:
  3527. <nds dtdversion="1.1" ndsversion="8.7">
  3528. <source>
  3529. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3530. <contact>NetIQ Corporation</contact>
  3531. </source>
  3532. <output>
  3533. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3534. </output>
  3535. </nds>
  3536. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-WriteAccounts.
  3537. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #1.
  3538. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  3539. 10:11:05 2B431700 Drvrs: CADS ST:
  3540. <nds dtdversion="1.1" ndsversion="8.7">
  3541. <source>
  3542. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3543. <contact>NetIQ Corporation</contact>
  3544. </source>
  3545. <output>
  3546. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3547. </output>
  3548. </nds>
  3549. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-SubscriberUserAdd.
  3550. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #1.
  3551. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  3552. 10:11:05 2B431700 Drvrs: CADS ST:
  3553. <nds dtdversion="1.1" ndsversion="8.7">
  3554. <source>
  3555. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3556. <contact>NetIQ Corporation</contact>
  3557. </source>
  3558. <output>
  3559. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3560. </output>
  3561. </nds>
  3562. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-FormatConversions.
  3563. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #1.
  3564. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  3565. 10:11:05 2B431700 Drvrs: CADS ST:
  3566. <nds dtdversion="1.1" ndsversion="8.7">
  3567. <source>
  3568. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3569. <contact>NetIQ Corporation</contact>
  3570. </source>
  3571. <output>
  3572. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3573. </output>
  3574. </nds>
  3575. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-itp-EmailOnFailedPwdSub.
  3576. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #1.
  3577. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  3578. 10:11:05 2B431700 Drvrs: CADS ST:
  3579. <nds dtdversion="1.1" ndsversion="8.7">
  3580. <source>
  3581. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3582. <contact>NetIQ Corporation</contact>
  3583. </source>
  3584. <output>
  3585. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  3586. </output>
  3587. </nds>
  3588. 10:11:05 2B431700 Drvrs: CADS ST: Applying schema mapping policies to input.
  3589. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  3590. 10:11:05 2B431700 Drvrs: CADS ST: Resolving association references.
  3591. 10:11:05 2B431700 Drvrs: CADS ST: Processing returned document.
  3592. 10:11:05 2B431700 Drvrs: CADS ST: Processing operation <status> for .
  3593. 10:11:05 2B431700 Drvrs: CADS ST:
  3594. DirXML Log Event -------------------
  3595. Driver: \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS
  3596. Channel: Subscriber
  3597. Object: \ORG-IDV\ORG\data\users\employees\testuser
  3598. Status: Success
  3599. 10:11:05 2B431700 Drvrs: CADS ST: Direct command from policy result
  3600. 10:11:05 2B431700 Drvrs: CADS ST:
  3601. <nds dtdversion="1.1" ndsversion="8.7">
  3602. <source>
  3603. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  3604. <contact>NetIQ Corporation</contact>
  3605. </source>
  3606. <output>
  3607. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  3608. <application>DirXML</application>
  3609. <module>ORG-CADS</module>
  3610. <object-dn>\ORG-IDV\ORG\data\users\employees\testuser</object-dn>
  3611. <component>Subscriber</component>
  3612. </status>
  3613. </output>
  3614. </nds>
  3615. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  3616. 10:11:05 2B431700 Drvrs: CADS ST:
  3617. <nds dtdversion="4.0" ndsversion="8.x">
  3618. <source>
  3619. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3620. <contact>NetIQ Corporation</contact>
  3621. </source>
  3622. <input>
  3623. <add cached-time="20171016161104.118Z" class-name="User" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  3624. <add-attr attr-name="Full Name">
  3625. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  3626. </add-attr>
  3627. <add-attr attr-name="Given Name">
  3628. <value timestamp="1496939376#7" type="string">Armando</value>
  3629. </add-attr>
  3630. <add-attr attr-name="Internet EMail Address">
  3631. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  3632. </add-attr>
  3633. <add-attr attr-name="ORGAccessCADS">
  3634. <value timestamp="1508170264#2" type="state">true</value>
  3635. </add-attr>
  3636. <add-attr attr-name="ORGCADSgroup">
  3637. <value timestamp="1508170264#1" type="string">FACSN</value>
  3638. </add-attr>
  3639. <add-attr attr-name="nspmDistributionPassword" is-sensitive="true"><!-- content suppressed -->
  3640. </add-attr>
  3641. <add-attr attr-name="Surname">
  3642. <value timestamp="1496939376#6" type="string">Anglesey</value>
  3643. </add-attr>
  3644. <add-attr attr-name="DirXML-ADAliasName">
  3645. <value>testuser@its.cads.ORG.edu</value>
  3646. </add-attr>
  3647. <add-attr attr-name="CN">
  3648. <value>testuser</value>
  3649. </add-attr>
  3650. 10:11:05 2B431700 Drvrs: <add-attr attr-name="Login Disabled">
  3651. <value type="string">false</value>
  3652. </add-attr>
  3653. <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees"/>
  3654. </add>
  3655. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  3656. <modify-attr attr-name="member">
  3657. <add-value>
  3658. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  3659. </add-value>
  3660. </modify-attr>
  3661. </modify>
  3662. </input>
  3663. </nds>
  3664. 10:11:05 2B431700 Drvrs: CADS ST:Submitting add to subscriber shim.
  3665. 10:11:05 2B431700 Drvrs: CADS ST:Applying command transformation policies.
  3666. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLADDCFG-sub-ctp-GroupMemberResolution.
  3667. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add #1.
  3668. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add new user to associated groups'.
  3669. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "add") = TRUE.
  3670. 10:11:05 2B431700 Drvrs: CADS ST: (if-class-name equal "User") = TRUE.
  3671. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  3672. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'Add new user to associated groups'.
  3673. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-for-each(arg-node-set(token-src-attr("Group Membership"))).
  3674. 10:11:05 2B431700 Drvrs: CADS ST: arg-node-set(token-src-attr("Group Membership"))
  3675. 10:11:05 2B431700 Drvrs: CADS ST: token-src-attr("Group Membership")
  3676. 10:11:05 2B431700 Drvrs: CADS ST: Query from policy
  3677. 10:11:05 2B431700 Drvrs: CADS ST:
  3678. <nds dtdversion="4.0" ndsversion="8.x">
  3679. <source>
  3680. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3681. <contact>NetIQ Corporation</contact>
  3682. </source>
  3683. <input>
  3684. <query class-name="User" dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" scope="entry">
  3685. <read-attr attr-name="Group Membership"/>
  3686. </query>
  3687. </input>
  3688. </nds>
  3689. 10:11:05 2B431700 Drvrs: CADS ST: Pumping XDS to eDirectory.
  3690. 10:11:05 2B431700 Drvrs: CADS ST: Performing operation query for \ORG-IDV\ORG\data\users\employees\testuser.
  3691. 10:11:05 2B431700 Drvrs: CADS ST: --JCLNT-- \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS : Duplicating : context = 1955071268, tempContext = 1955071285
  3692. 10:11:05 2B431700 Drvrs: CADS ST: --JCLNT-- \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS : Calling free on tempContext = 1955071285
  3693. 10:11:05 2B431700 Drvrs: CADS ST: Query from policy result
  3694. 10:11:05 2B431700 Drvrs: CADS ST:
  3695. <nds dtdversion="4.0" ndsversion="8.x">
  3696. <source>
  3697. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3698. <contact>NetIQ Corporation</contact>
  3699. </source>
  3700. <output>
  3701. <instance class-name="User" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222"/>
  3702. <status level="success"></status>
  3703. </output>
  3704. </nds>
  3705. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: {}.
  3706. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: {}.
  3707. 10:11:05 2B431700 Drvrs: CADS ST: Applying to modify #2.
  3708. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add new user to associated groups'.
  3709. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "add") = FALSE.
  3710. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3711. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  3712. 10:11:05 2B431700 Drvrs: CADS ST:
  3713. <nds dtdversion="4.0" ndsversion="8.x">
  3714. <source>
  3715. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3716. <contact>NetIQ Corporation</contact>
  3717. </source>
  3718. <input>
  3719. <add cached-time="20171016161104.118Z" class-name="User" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  3720. <add-attr attr-name="Full Name">
  3721. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  3722. </add-attr>
  3723. <add-attr attr-name="Given Name">
  3724. <value timestamp="1496939376#7" type="string">Armando</value>
  3725. </add-attr>
  3726. <add-attr attr-name="Internet EMail Address">
  3727. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  3728. </add-attr>
  3729. <add-attr attr-name="ORGAccessCADS">
  3730. <value timestamp="1508170264#2" type="state">true</value>
  3731. </add-attr>
  3732. <add-attr attr-name="ORGCADSgroup">
  3733. <value timestamp="1508170264#1" type="string">FACSN</value>
  3734. </add-attr>
  3735. <add-attr attr-name="nspmDistributionPassword" is-sensitive="true"><!-- content suppressed -->
  3736. </add-attr>
  3737. <add-attr attr-name="Surname">
  3738. <value timestamp="1496939376#6" type="string">Anglesey</value>
  3739. </add-attr>
  3740. <add-attr attr-name="DirXML-ADAliasName">
  3741. <value>testuser@its.cads.ORG.edu</value>
  3742. </add-attr>
  3743. <add-attr attr-name="CN">
  3744. <value>testuser</value>
  3745. </add-attr>
  3746. 10:11:05 2B431700 Drvrs: <add-attr attr-name="Login Disabled">
  3747. <value type="string">false</value>
  3748. </add-attr>
  3749. <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees"/>
  3750. </add>
  3751. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  3752. <modify-attr attr-name="member">
  3753. <add-value>
  3754. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  3755. </add-value>
  3756. </modify-attr>
  3757. </modify>
  3758. </input>
  3759. </nds>
  3760. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLADDCFG-sub-ctp-HandleMovesAndRenames.
  3761. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add #1.
  3762. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'associate mirror root'.
  3763. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "move") = FALSE.
  3764. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3765. 10:11:05 2B431700 Drvrs: CADS ST: Applying to modify #2.
  3766. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'associate mirror root'.
  3767. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "move") = FALSE.
  3768. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3769. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  3770. 10:11:05 2B431700 Drvrs: CADS ST:
  3771. <nds dtdversion="4.0" ndsversion="8.x">
  3772. <source>
  3773. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3774. <contact>NetIQ Corporation</contact>
  3775. </source>
  3776. <input>
  3777. <add cached-time="20171016161104.118Z" class-name="User" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  3778. <add-attr attr-name="Full Name">
  3779. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  3780. </add-attr>
  3781. <add-attr attr-name="Given Name">
  3782. <value timestamp="1496939376#7" type="string">Armando</value>
  3783. </add-attr>
  3784. <add-attr attr-name="Internet EMail Address">
  3785. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  3786. </add-attr>
  3787. <add-attr attr-name="ORGAccessCADS">
  3788. <value timestamp="1508170264#2" type="state">true</value>
  3789. </add-attr>
  3790. <add-attr attr-name="ORGCADSgroup">
  3791. <value timestamp="1508170264#1" type="string">FACSN</value>
  3792. </add-attr>
  3793. <add-attr attr-name="nspmDistributionPassword" is-sensitive="true"><!-- content suppressed -->
  3794. </add-attr>
  3795. <add-attr attr-name="Surname">
  3796. <value timestamp="1496939376#6" type="string">Anglesey</value>
  3797. </add-attr>
  3798. <add-attr attr-name="DirXML-ADAliasName">
  3799. <value>testuser@its.cads.ORG.edu</value>
  3800. </add-attr>
  3801. <add-attr attr-name="CN">
  3802. <value>testuser</value>
  3803. </add-attr>
  3804. 10:11:05 2B431700 Drvrs: <add-attr attr-name="Login Disabled">
  3805. <value type="string">false</value>
  3806. </add-attr>
  3807. <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees"/>
  3808. </add>
  3809. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  3810. <modify-attr attr-name="member">
  3811. <add-value>
  3812. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  3813. </add-value>
  3814. </modify-attr>
  3815. </modify>
  3816. </input>
  3817. </nds>
  3818. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLADDCFG-sub-ctp-UserNameMap.
  3819. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add #1.
  3820. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'consider user objects when name mapping is enabled'.
  3821. 10:11:05 2B431700 Drvrs: CADS ST: (if-class-name not-equal "User") = FALSE.
  3822. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'FullNameMap' equal "false") = FALSE.
  3823. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3824. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'generate full name on merge'.
  3825. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'FullNameMap' equal "true") = TRUE.
  3826. 10:11:05 2B431700 Drvrs: CADS ST: (if-xpath true ".[@from-merge='true']") = FALSE.
  3827. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3828. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'map full name to destination object name'.
  3829. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'FullNameMap' equal "true") = TRUE.
  3830. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = FALSE.
  3831. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3832. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'escape source object name'.
  3833. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "rename") = FALSE.
  3834. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3835. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'map rename to NT logon name'.
  3836. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'LogonNameMap' equal "true") = TRUE.
  3837. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "rename") = FALSE.
  3838. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3839. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'map rename to Active Directory logon name'.
  3840. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'UpnMap' equal "edir-name-auth") = TRUE.
  3841. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "rename") = FALSE.
  3842. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3843. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'map e-mail address to Active Directory logon name'.
  3844. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'UpnMap' equal "edir-mail-auth") = FALSE.
  3845. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3846. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'unmap e-mail address from Active Directory logon name'.
  3847. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'UpnMap' equal "edir-mail-auth") = FALSE.
  3848. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3849. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'map e-mail address to Active Directory logon name on merge'.
  3850. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'UpnMap' equal "edir-mail-auth") = FALSE.
  3851. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3852. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'unmap e-mail address from Active Directory logon name on merge'.
  3853. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'UpnMap' equal "edir-mail-auth") = FALSE.
  3854. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3855. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'discard unwanted renames'.
  3856. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'FullNameMap' equal "true") = TRUE.
  3857. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "rename") = FALSE.
  3858. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3859. 10:11:05 2B431700 Drvrs: CADS ST: Applying to modify #2.
  3860. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'consider user objects when name mapping is enabled'.
  3861. 10:11:05 2B431700 Drvrs: CADS ST: (if-class-name not-equal "User") = TRUE.
  3862. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  3863. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'consider user objects when name mapping is enabled'.
  3864. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-break().
  3865. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  3866. 10:11:05 2B431700 Drvrs: CADS ST:
  3867. <nds dtdversion="4.0" ndsversion="8.x">
  3868. <source>
  3869. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3870. <contact>NetIQ Corporation</contact>
  3871. </source>
  3872. <input>
  3873. <add cached-time="20171016161104.118Z" class-name="User" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  3874. <add-attr attr-name="Full Name">
  3875. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  3876. </add-attr>
  3877. <add-attr attr-name="Given Name">
  3878. <value timestamp="1496939376#7" type="string">Armando</value>
  3879. </add-attr>
  3880. <add-attr attr-name="Internet EMail Address">
  3881. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  3882. </add-attr>
  3883. <add-attr attr-name="ORGAccessCADS">
  3884. <value timestamp="1508170264#2" type="state">true</value>
  3885. </add-attr>
  3886. <add-attr attr-name="ORGCADSgroup">
  3887. <value timestamp="1508170264#1" type="string">FACSN</value>
  3888. </add-attr>
  3889. <add-attr attr-name="nspmDistributionPassword" is-sensitive="true"><!-- content suppressed -->
  3890. </add-attr>
  3891. <add-attr attr-name="Surname">
  3892. <value timestamp="1496939376#6" type="string">Anglesey</value>
  3893. </add-attr>
  3894. <add-attr attr-name="DirXML-ADAliasName">
  3895. <value>testuser@its.cads.ORG.edu</value>
  3896. </add-attr>
  3897. <add-attr attr-name="CN">
  3898. <value>testuser</value>
  3899. </add-attr>
  3900. 10:11:05 2B431700 Drvrs: <add-attr attr-name="Login Disabled">
  3901. <value type="string">false</value>
  3902. </add-attr>
  3903. <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees"/>
  3904. </add>
  3905. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  3906. <modify-attr attr-name="member">
  3907. <add-value>
  3908. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  3909. </add-value>
  3910. </modify-attr>
  3911. </modify>
  3912. </input>
  3913. </nds>
  3914. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLADATRK-ctp-Subscribe.
  3915. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add #1.
  3916. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Do not process Account Tracking policies if modify with no source-dn & from-merge'.
  3917. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation not-equal "modify") = TRUE.
  3918. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  3919. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'Do not process Account Tracking policies if modify with no source-dn & from-merge'.
  3920. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-break().
  3921. 10:11:05 2B431700 Drvrs: CADS ST: Applying to modify #2.
  3922. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Do not process Account Tracking policies if modify with no source-dn & from-merge'.
  3923. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation not-equal "modify") = FALSE.
  3924. 10:11:05 2B431700 Drvrs: CADS ST: (if-src-dn not-available) = TRUE.
  3925. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  3926. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'Do not process Account Tracking policies if modify with no source-dn & from-merge'.
  3927. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-break().
  3928. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  3929. 10:11:05 2B431700 Drvrs: CADS ST:
  3930. <nds dtdversion="4.0" ndsversion="8.x">
  3931. <source>
  3932. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  3933. <contact>NetIQ Corporation</contact>
  3934. </source>
  3935. <input>
  3936. <add cached-time="20171016161104.118Z" class-name="User" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  3937. <add-attr attr-name="Full Name">
  3938. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  3939. </add-attr>
  3940. <add-attr attr-name="Given Name">
  3941. <value timestamp="1496939376#7" type="string">Armando</value>
  3942. </add-attr>
  3943. <add-attr attr-name="Internet EMail Address">
  3944. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  3945. </add-attr>
  3946. <add-attr attr-name="ORGAccessCADS">
  3947. <value timestamp="1508170264#2" type="state">true</value>
  3948. </add-attr>
  3949. <add-attr attr-name="ORGCADSgroup">
  3950. <value timestamp="1508170264#1" type="string">FACSN</value>
  3951. </add-attr>
  3952. <add-attr attr-name="nspmDistributionPassword" is-sensitive="true"><!-- content suppressed -->
  3953. </add-attr>
  3954. <add-attr attr-name="Surname">
  3955. <value timestamp="1496939376#6" type="string">Anglesey</value>
  3956. </add-attr>
  3957. <add-attr attr-name="DirXML-ADAliasName">
  3958. <value>testuser@its.cads.ORG.edu</value>
  3959. </add-attr>
  3960. <add-attr attr-name="CN">
  3961. <value>testuser</value>
  3962. </add-attr>
  3963. 10:11:05 2B431700 Drvrs: <add-attr attr-name="Login Disabled">
  3964. <value type="string">false</value>
  3965. </add-attr>
  3966. <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees"/>
  3967. </add>
  3968. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  3969. <modify-attr attr-name="member">
  3970. <add-value>
  3971. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  3972. </add-value>
  3973. </modify-attr>
  3974. </modify>
  3975. </input>
  3976. </nds>
  3977. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLPWDSYNC-sub-ctp-TransformDistPwd.
  3978. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add #1.
  3979. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Convert adds of the nspmDistributionPassword attribute to password elements'.
  3980. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "add") = TRUE.
  3981. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr 'nspmDistributionPassword' available) = TRUE.
  3982. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  3983. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'Convert adds of the nspmDistributionPassword attribute to password elements'.
  3984. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-dest-password(token-xpath("add-attr[@attr-name='nspmDistributionPassword']//value")).
  3985. 10:11:05 2B431700 Drvrs: CADS ST: arg-string(token-xpath("add-attr[@attr-name='nspmDistributionPassword']//value"))
  3986. 10:11:05 2B431700 Drvrs: CADS ST: token-xpath("add-attr[@attr-name='nspmDistributionPassword']//value")
  3987. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "-- suppressed --".
  3988. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "-- suppressed --".
  3989. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-strip-op-attr("nspmDistributionPassword").
  3990. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Block modifies for failed password publish operations if reset password is false'.
  3991. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'reset-external-password-on-failure' equal "false") = FALSE.
  3992. 10/16/2017
  3993. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3994. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Convert modifies of a nspmDistributionPassword attribute to a modify password operation'.
  3995. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = FALSE.
  3996. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  3997. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Block empty modify operations'.
  3998. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = FALSE.
  3999. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4000. 10:11:05 2B431700 Drvrs: CADS ST: Applying to modify #2.
  4001. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Convert adds of the nspmDistributionPassword attribute to password elements'.
  4002. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "add") = FALSE.
  4003. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4004. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Block modifies for failed password publish operations if reset password is false'.
  4005. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'reset-external-password-on-failure' equal "false") = FALSE.
  4006. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4007. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Convert modifies of a nspmDistributionPassword attribute to a modify password operation'.
  4008. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = TRUE.
  4009. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr 'nspmDistributionPassword' available) = FALSE.
  4010. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4011. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Block empty modify operations'.
  4012. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = TRUE.
  4013. 10:11:05 2B431700 Drvrs: CADS ST: (if-xpath not-true "modify-attr") = FALSE.
  4014. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4015. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  4016. 10:11:05 2B431700 Drvrs: CADS ST:
  4017. <nds dtdversion="4.0" ndsversion="8.x">
  4018. <source>
  4019. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  4020. <contact>NetIQ Corporation</contact>
  4021. </source>
  4022. <input>
  4023. <add cached-time="20171016161104.118Z" class-name="User" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  4024. <add-attr attr-name="Full Name">
  4025. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  4026. </add-attr>
  4027. <add-attr attr-name="Given Name">
  4028. <value timestamp="1496939376#7" type="string">Armando</value>
  4029. </add-attr>
  4030. <add-attr attr-name="Internet EMail Address">
  4031. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  4032. </add-attr>
  4033. <add-attr attr-name="ORGAccessCADS">
  4034. <value timestamp="1508170264#2" type="state">true</value>
  4035. </add-attr>
  4036. <add-attr attr-name="ORGCADSgroup">
  4037. <value timestamp="1508170264#1" type="string">FACSN</value>
  4038. </add-attr>
  4039. <add-attr attr-name="Surname">
  4040. <value timestamp="1496939376#6" type="string">Anglesey</value>
  4041. </add-attr>
  4042. <add-attr attr-name="DirXML-ADAliasName">
  4043. <value>testuser@its.cads.ORG.edu</value>
  4044. </add-attr>
  4045. <add-attr attr-name="CN">
  4046. <value>testuser</value>
  4047. </add-attr>
  4048. <add-attr attr-name="Login Disabled">
  4049. <value type="string">false</value>
  4050. </add-attr>
  4051. 10:11:05 2B431700 Drvrs: <password><!-- content suppressed --></password>
  4052. <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees"/>
  4053. </add>
  4054. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  4055. <modify-attr attr-name="member">
  4056. <add-value>
  4057. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  4058. </add-value>
  4059. </modify-attr>
  4060. </modify>
  4061. </input>
  4062. </nds>
  4063. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLPWDSYNC-sub-ctp-DefaultPwd.
  4064. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add #1.
  4065. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'On User add, provide default password of Surname if no password exists'.
  4066. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "add") = TRUE.
  4067. 10:11:05 2B431700 Drvrs: CADS ST: (if-class-name equal "User") = TRUE.
  4068. 10:11:05 2B431700 Drvrs: CADS ST: (if-password not-available) = FALSE.
  4069. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4070. 10:11:05 2B431700 Drvrs: CADS ST: Applying to modify #2.
  4071. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'On User add, provide default password of Surname if no password exists'.
  4072. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "add") = FALSE.
  4073. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4074. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  4075. 10:11:05 2B431700 Drvrs: CADS ST:
  4076. <nds dtdversion="4.0" ndsversion="8.x">
  4077. <source>
  4078. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  4079. <contact>NetIQ Corporation</contact>
  4080. </source>
  4081. <input>
  4082. <add cached-time="20171016161104.118Z" class-name="User" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  4083. <add-attr attr-name="Full Name">
  4084. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  4085. </add-attr>
  4086. <add-attr attr-name="Given Name">
  4087. <value timestamp="1496939376#7" type="string">Armando</value>
  4088. </add-attr>
  4089. <add-attr attr-name="Internet EMail Address">
  4090. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  4091. </add-attr>
  4092. <add-attr attr-name="ORGAccessCADS">
  4093. <value timestamp="1508170264#2" type="state">true</value>
  4094. </add-attr>
  4095. <add-attr attr-name="ORGCADSgroup">
  4096. <value timestamp="1508170264#1" type="string">FACSN</value>
  4097. </add-attr>
  4098. <add-attr attr-name="Surname">
  4099. <value timestamp="1496939376#6" type="string">Anglesey</value>
  4100. </add-attr>
  4101. <add-attr attr-name="DirXML-ADAliasName">
  4102. <value>testuser@its.cads.ORG.edu</value>
  4103. </add-attr>
  4104. <add-attr attr-name="CN">
  4105. <value>testuser</value>
  4106. </add-attr>
  4107. <add-attr attr-name="Login Disabled">
  4108. <value type="string">false</value>
  4109. </add-attr>
  4110. 10:11:05 2B431700 Drvrs: <password><!-- content suppressed --></password>
  4111. <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees"/>
  4112. </add>
  4113. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  4114. <modify-attr attr-name="member">
  4115. <add-value>
  4116. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  4117. </add-value>
  4118. </modify-attr>
  4119. </modify>
  4120. </input>
  4121. </nds>
  4122. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLPWDSYNC-sub-ctp-CheckPwdGCV.
  4123. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add #1.
  4124. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Block subscribing to passwords when objects are added'.
  4125. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'enable-password-subscribe' equal "false") = FALSE.
  4126. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4127. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Block subscribing to password modifications'.
  4128. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'enable-password-subscribe' equal "false") = FALSE.
  4129. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4130. 10:11:05 2B431700 Drvrs: CADS ST: Applying to modify #2.
  4131. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Block subscribing to passwords when objects are added'.
  4132. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'enable-password-subscribe' equal "false") = FALSE.
  4133. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4134. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Block subscribing to password modifications'.
  4135. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'enable-password-subscribe' equal "false") = FALSE.
  4136. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4137. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  4138. 10:11:05 2B431700 Drvrs: CADS ST:
  4139. <nds dtdversion="4.0" ndsversion="8.x">
  4140. <source>
  4141. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  4142. <contact>NetIQ Corporation</contact>
  4143. </source>
  4144. <input>
  4145. <add cached-time="20171016161104.118Z" class-name="User" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  4146. <add-attr attr-name="Full Name">
  4147. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  4148. </add-attr>
  4149. <add-attr attr-name="Given Name">
  4150. <value timestamp="1496939376#7" type="string">Armando</value>
  4151. </add-attr>
  4152. <add-attr attr-name="Internet EMail Address">
  4153. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  4154. </add-attr>
  4155. <add-attr attr-name="ORGAccessCADS">
  4156. <value timestamp="1508170264#2" type="state">true</value>
  4157. </add-attr>
  4158. <add-attr attr-name="ORGCADSgroup">
  4159. <value timestamp="1508170264#1" type="string">FACSN</value>
  4160. </add-attr>
  4161. <add-attr attr-name="Surname">
  4162. <value timestamp="1496939376#6" type="string">Anglesey</value>
  4163. </add-attr>
  4164. <add-attr attr-name="DirXML-ADAliasName">
  4165. <value>testuser@its.cads.ORG.edu</value>
  4166. </add-attr>
  4167. <add-attr attr-name="CN">
  4168. <value>testuser</value>
  4169. </add-attr>
  4170. <add-attr attr-name="Login Disabled">
  4171. <value type="string">false</value>
  4172. </add-attr>
  4173. 10:11:05 2B431700 Drvrs: <password><!-- content suppressed --></password>
  4174. <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees"/>
  4175. </add>
  4176. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  4177. <modify-attr attr-name="member">
  4178. <add-value>
  4179. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  4180. </add-value>
  4181. </modify-attr>
  4182. </modify>
  4183. </input>
  4184. </nds>
  4185. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLPWDSYNC-sub-ctp-AddPwdPayload.
  4186. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add #1.
  4187. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add operation-data element to password subscribe operations'.
  4188. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "add") = TRUE.
  4189. 10:11:05 2B431700 Drvrs: CADS ST: (if-password available) = TRUE.
  4190. 10:11:05 2B431700 Drvrs: CADS ST: (if-xpath not-true "operation-data") = FALSE.
  4191. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "modify-password") = FALSE.
  4192. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4193. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add payload data to a reset password from a failed password publish operation'.
  4194. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "modify-password") = FALSE.
  4195. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4196. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add payload data to password subscribe operations'.
  4197. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "add") = TRUE.
  4198. 10:11:05 2B431700 Drvrs: CADS ST: (if-password available) = TRUE.
  4199. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  4200. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'Add payload data to password subscribe operations'.
  4201. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-append-xml-element("password-subscribe-status","operation-data").
  4202. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-append-xml-element("association","operation-data/password-subscribe-status").
  4203. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-append-xml-text("operation-data/password-subscribe-status/association",token-association()).
  4204. 10:11:05 2B431700 Drvrs: CADS ST: arg-string(token-association())
  4205. 10:11:05 2B431700 Drvrs: CADS ST: token-association()
  4206. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "".
  4207. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "".
  4208. 10:11:05 2B431700 Drvrs: CADS ST: Applying to modify #2.
  4209. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add operation-data element to password subscribe operations'.
  4210. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "add") = FALSE.
  4211. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "modify-password") = FALSE.
  4212. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4213. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add payload data to a reset password from a failed password publish operation'.
  4214. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "modify-password") = FALSE.
  4215. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4216. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add payload data to password subscribe operations'.
  4217. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "add") = FALSE.
  4218. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "modify-password") = FALSE.
  4219. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4220. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  4221. 10:11:05 2B431700 Drvrs: CADS ST:
  4222. <nds dtdversion="4.0" ndsversion="8.x">
  4223. <source>
  4224. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  4225. <contact>NetIQ Corporation</contact>
  4226. </source>
  4227. <input>
  4228. <add cached-time="20171016161104.118Z" class-name="User" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  4229. <add-attr attr-name="Full Name">
  4230. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  4231. </add-attr>
  4232. <add-attr attr-name="Given Name">
  4233. <value timestamp="1496939376#7" type="string">Armando</value>
  4234. </add-attr>
  4235. <add-attr attr-name="Internet EMail Address">
  4236. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  4237. </add-attr>
  4238. <add-attr attr-name="ORGAccessCADS">
  4239. <value timestamp="1508170264#2" type="state">true</value>
  4240. </add-attr>
  4241. <add-attr attr-name="ORGCADSgroup">
  4242. <value timestamp="1508170264#1" type="string">FACSN</value>
  4243. </add-attr>
  4244. <add-attr attr-name="Surname">
  4245. <value timestamp="1496939376#6" type="string">Anglesey</value>
  4246. </add-attr>
  4247. <add-attr attr-name="DirXML-ADAliasName">
  4248. <value>testuser@its.cads.ORG.edu</value>
  4249. </add-attr>
  4250. <add-attr attr-name="CN">
  4251. <value>testuser</value>
  4252. </add-attr>
  4253. <add-attr attr-name="Login Disabled">
  4254. <value type="string">false</value>
  4255. </add-attr>
  4256. 10:11:05 2B431700 Drvrs: <password><!-- content suppressed --></password>
  4257. <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  4258. <password-subscribe-status>
  4259. <association/>
  4260. </password-subscribe-status>
  4261. </operation-data>
  4262. </add>
  4263. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  4264. <modify-attr attr-name="member">
  4265. <add-value>
  4266. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  4267. </add-value>
  4268. </modify-attr>
  4269. </modify>
  4270. </input>
  4271. </nds>
  4272. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: ORG-set-destination-modify-sub-ctp.
  4273. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add #1.
  4274. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Break non-modify'.
  4275. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation not-equal "modify") = TRUE.
  4276. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  4277. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'Break non-modify'.
  4278. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-break().
  4279. 10:11:05 2B431700 Drvrs: CADS ST: Applying to modify #2.
  4280. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Break non-modify'.
  4281. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation not-equal "modify") = FALSE.
  4282. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4283. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Check destination'.
  4284. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  4285. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'Check destination'.
  4286. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("LVdestinationcheck",scope="policy",token-dest-attr("OU",class-name="Organizational Unit",arg-dn("ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container")))).
  4287. 10:11:05 2B431700 Drvrs: CADS ST: arg-string(token-dest-attr("OU",class-name="Organizational Unit",arg-dn("ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container"))))
  4288. 10:11:05 2B431700 Drvrs: CADS ST: token-dest-attr("OU",class-name="Organizational Unit",arg-dn("ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container")))
  4289. 10:11:05 2B431700 Drvrs: CADS ST: arg-dn("ou="+token-src-attr("ORGCADSgroup")+" users,ou="+token-local-variable("LV_Division")+","+token-global-variable("drv.user.container"))
  4290. 10:11:05 2B431700 Drvrs: CADS ST: token-text("ou=")
  4291. 10:11:05 2B431700 Drvrs: CADS ST: token-src-attr("ORGCADSgroup")
  4292. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "".
  4293. 10:11:05 2B431700 Drvrs: CADS ST: token-text(" users,ou=")
  4294. 10:11:05 2B431700 Drvrs: CADS ST: token-local-variable("LV_Division")
  4295. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "Academic Affairs Administration".
  4296. 10:11:05 2B431700 Drvrs: CADS ST: token-text(",")
  4297. 10:11:05 2B431700 Drvrs: CADS ST: token-global-variable("drv.user.container")
  4298. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  4299. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  4300. 10:11:05 2B431700 Drvrs: CADS ST: Query from policy
  4301. 10:11:05 2B431700 Drvrs: CADS ST:
  4302. <nds dtdversion="4.0" ndsversion="8.x">
  4303. <source>
  4304. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  4305. <contact>NetIQ Corporation</contact>
  4306. </source>
  4307. <input>
  4308. <query class-name="Organizational Unit" dest-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" scope="entry">
  4309. <read-attr attr-name="OU"/>
  4310. </query>
  4311. </input>
  4312. </nds>
  4313. 10:11:05 2B431700 Drvrs: CADS ST: Fixing up association references.
  4314. 10:11:05 2B431700 Drvrs: CADS ST: Applying schema mapping policies to output.
  4315. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  4316. 10:11:05 2B431700 Drvrs: CADS ST: Mapping attr-name 'OU' to 'ou'.
  4317. 10:11:05 2B431700 Drvrs: CADS ST: Mapping class-name 'Organizational Unit' to 'organizationalUnit'.
  4318. 10:11:05 2B431700 Drvrs: CADS ST: Applying output transformation policies.
  4319. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-FormatConversions.
  4320. 10:11:05 2B431700 Drvrs: CADS ST: Applying to query #1.
  4321. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Street Address: Convert LF to CR-LF'.
  4322. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  4323. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'Street Address: Convert LF to CR-LF'.
  4324. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("streetAddress",token-replace-all("[^\r]\n","\r\n",token-local-variable("current-value"))).
  4325. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'logonHours: Convert to Active Directory form'.
  4326. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  4327. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'logonHours: Convert to Active Directory form'.
  4328. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
  4329. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'accountExpires: Convert to Active Directory form'.
  4330. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr 'accountExpires' changing) = FALSE.
  4331. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4332. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'lockoutTime: Convert to Active Directory form'.
  4333. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr 'lockoutTime' available) = FALSE.
  4334. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4335. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add: User - convert multi-valued Telephone to single value'.
  4336. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "add") = FALSE.
  4337. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4338. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'update Active Directory logon name'.
  4339. 10:11:05 2B431700 Drvrs: CADS ST: (if-xpath true "self::status[@level = 'success']/operation-data/windows-2000-logon-name") = FALSE.
  4340. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4341. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  4342. 10:11:05 2B431700 Drvrs: CADS ST:
  4343. <nds dtdversion="4.0" ndsversion="8.x">
  4344. <source>
  4345. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  4346. <contact>NetIQ Corporation</contact>
  4347. </source>
  4348. <input>
  4349. <query class-name="organizationalUnit" dest-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  4350. <read-attr attr-name="ou"/>
  4351. </query>
  4352. </input>
  4353. </nds>
  4354. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-otp-ExchangeEntitlementQuery.
  4355. 10:11:05 2B431700 Drvrs: CADS ST: Applying to query #1.
  4356. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add dest-dn to the Exchange Entitlement Query'.
  4357. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "query") = TRUE.
  4358. 10:11:05 2B431700 Drvrs: CADS ST: (if-class-name equal "msExchPrivateMDB") = FALSE.
  4359. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4360. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  4361. 10:11:05 2B431700 Drvrs: CADS ST:
  4362. <nds dtdversion="4.0" ndsversion="8.x">
  4363. <source>
  4364. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  4365. <contact>NetIQ Corporation</contact>
  4366. </source>
  4367. <input>
  4368. <query class-name="organizationalUnit" dest-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  4369. <read-attr attr-name="ou"/>
  4370. </query>
  4371. </input>
  4372. </nds>
  4373. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-otp-EmailOnFailedPwdPub.
  4374. 10:11:05 2B431700 Drvrs: CADS ST: Applying to query #1.
  4375. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Send e-mail for a failed publish password operation'.
  4376. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'notify-user-on-password-dist-failure' equal "true") = TRUE.
  4377. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "status") = FALSE.
  4378. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4379. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  4380. 10:11:05 2B431700 Drvrs: CADS ST:
  4381. <nds dtdversion="4.0" ndsversion="8.x">
  4382. <source>
  4383. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  4384. <contact>NetIQ Corporation</contact>
  4385. </source>
  4386. <input>
  4387. <query class-name="organizationalUnit" dest-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  4388. <read-attr attr-name="ou"/>
  4389. </query>
  4390. </input>
  4391. </nds>
  4392. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-otp-Subscribe.
  4393. 10:11:05 2B431700 Drvrs: CADS ST: Applying to query #1.
  4394. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Do not process Account Tracking policies if modify with no source-dn '.
  4395. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = FALSE.
  4396. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4397. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - Initialize Realm Mapping'.
  4398. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' equal "true") = TRUE.
  4399. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  4400. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4401. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - disregard if disabled or wrong object class'.
  4402. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  4403. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'AccountTracking - disregard if disabled or wrong object class'.
  4404. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  4405. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  4406. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' not-equal "true") = FALSE.
  4407. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  4408. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-for-each(arg-node-set(token-global-variable("drv.acctTrk.objectClass"))).
  4409. 10:11:05 2B431700 Drvrs: CADS ST: arg-node-set(token-global-variable("drv.acctTrk.objectClass"))
  4410. 10:11:05 2B431700 Drvrs: CADS ST: token-global-variable("drv.acctTrk.objectClass")
  4411. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: {"user"}.
  4412. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: {"user"}.
  4413. 10:11:05 2B431700 Drvrs: CADS ST: Performing actions for local-variable(current-node) = "user".
  4414. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  4415. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  4416. 10:11:05 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'user'.
  4417. 10:11:05 2B431700 Drvrs: CADS ST: (if-class-name equal "$current-node$") = FALSE.
  4418. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  4419. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  4420. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  4421. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'pass' not-available) = TRUE.
  4422. 10:11:05 2B431700 Drvrs: CADS ST: Performing if actions.
  4423. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-break().
  4424. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  4425. 10:11:05 2B431700 Drvrs: CADS ST:
  4426. <nds dtdversion="4.0" ndsversion="8.x">
  4427. <source>
  4428. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  4429. <contact>NetIQ Corporation</contact>
  4430. </source>
  4431. <input>
  4432. <query class-name="organizationalUnit" dest-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  4433. <read-attr attr-name="ou"/>
  4434. </query>
  4435. </input>
  4436. </nds>
  4437. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  4438. 10:11:05 2B431700 Drvrs: CADS ST: Applying to query #1.
  4439. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  4440. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  4441. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  4442. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  4443. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  4444. 10:11:05 2B431700 Drvrs: CADS ST:
  4445. <nds dtdversion="4.0" ndsversion="8.x">
  4446. <source>
  4447. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  4448. <contact>NetIQ Corporation</contact>
  4449. </source>
  4450. <input>
  4451. <query class-name="organizationalUnit" dest-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  4452. <read-attr attr-name="ou"/>
  4453. </query>
  4454. </input>
  4455. </nds>
  4456. 10:11:05 2B431700 Drvrs: CADS ST: Submitting document to subscriber shim:
  4457. 10:11:05 2B431700 Drvrs: CADS ST:
  4458. <nds dtdversion="4.0" ndsversion="8.x">
  4459. <source>
  4460. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  4461. <contact>NetIQ Corporation</contact>
  4462. </source>
  4463. <input>
  4464. <query class-name="organizationalUnit" dest-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  4465. <read-attr attr-name="ou"/>
  4466. </query>
  4467. </input>
  4468. </nds>
  4469. 10:11:05 2B431700 Drvrs: CADS ST: Remote Interface Driver: Sending...
  4470. 10:11:05 2B431700 Drvrs: CADS ST:
  4471. <nds dtdversion="4.0" ndsversion="8.x">
  4472. <source>
  4473. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  4474. <contact>NetIQ Corporation</contact>
  4475. </source>
  4476. <input>
  4477. <query class-name="organizationalUnit" dest-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="0" scope="entry">
  4478. <read-attr attr-name="ou"/>
  4479. </query>
  4480. </input>
  4481. </nds>
  4482. 10:11:05 2B431700 Drvrs: CADS ST: Remote Interface Driver: Document sent.
  4483. 10:11:05 2BA58700 Drvrs: CADS :Remote Interface Driver: Received.
  4484. 10:11:05 2BA58700 Drvrs: CADS :
  4485. <nds dtdversion="1.1" ndsversion="8.7">
  4486. <source>
  4487. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  4488. <contact>NetIQ Corporation</contact>
  4489. </source>
  4490. <output>
  4491. <instance class-name="organizationalUnit" event-id="0" src-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu">
  4492. <association>6089d2da098111449937868aae062a60</association>
  4493. <attr attr-name="ou">
  4494. <value naming="true" type="string">users</value>
  4495. </attr>
  4496. </instance>
  4497. <status event-id="0" level="success"/>
  4498. </output>
  4499. </nds>
  4500. 10:11:05 2BA58700 Drvrs: CADS :Remote Interface Driver: Received document for subscriber channel
  4501. 10:11:05 2BA58700 Drvrs: CADS :Remote Interface Driver: Waiting for receive...
  4502. 10:11:05 2B431700 Drvrs: CADS ST: SubscriptionShim.execute() returned:
  4503. 10:11:05 2B431700 Drvrs: CADS ST:
  4504. <nds dtdversion="1.1" ndsversion="8.7">
  4505. <source>
  4506. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  4507. <contact>NetIQ Corporation</contact>
  4508. </source>
  4509. <output>
  4510. <instance class-name="organizationalUnit" event-id="0" src-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu">
  4511. <association>6089d2da098111449937868aae062a60</association>
  4512. <attr attr-name="ou">
  4513. <value naming="true" type="string">users</value>
  4514. </attr>
  4515. </instance>
  4516. <status event-id="0" level="success"/>
  4517. </output>
  4518. </nds>
  4519. 10:11:05 2B431700 Drvrs: CADS ST: Applying input transformation policies.
  4520. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: ORG-otp-itp-inverse-disable.
  4521. 10:11:05 2B431700 Drvrs: CADS ST: Applying to instance #1.
  4522. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  4523. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  4524. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  4525. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  4526. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #2.
  4527. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  4528. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  4529. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  4530. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  4531. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  4532. 10:11:05 2B431700 Drvrs: CADS ST:
  4533. <nds dtdversion="1.1" ndsversion="8.7">
  4534. <source>
  4535. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  4536. <contact>NetIQ Corporation</contact>
  4537. </source>
  4538. <output>
  4539. <instance class-name="organizationalUnit" event-id="0" src-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu">
  4540. <association>6089d2da098111449937868aae062a60</association>
  4541. <attr attr-name="ou">
  4542. <value naming="true" type="string">users</value>
  4543. </attr>
  4544. </instance>
  4545. <status event-id="0" level="success"/>
  4546. </output>
  4547. </nds>
  4548. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-Publish.
  4549. 10:11:05 2B431700 Drvrs: CADS ST: Applying to instance #1.
  4550. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #2.
  4551. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  4552. 10:11:05 2B431700 Drvrs: CADS ST:
  4553. <nds dtdversion="1.1" ndsversion="8.7">
  4554. <source>
  4555. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  4556. <contact>NetIQ Corporation</contact>
  4557. </source>
  4558. <output>
  4559. <instance class-name="organizationalUnit" event-id="0" src-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu">
  4560. <association>6089d2da098111449937868aae062a60</association>
  4561. <attr attr-name="ou">
  4562. <value naming="true" type="string">users</value>
  4563. </attr>
  4564. </instance>
  4565. <status event-id="0" level="success"/>
  4566. </output>
  4567. </nds>
  4568. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: Scope.
  4569. 10:11:05 2B431700 Drvrs: CADS ST: Applying to instance #1.
  4570. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Vetos adds and moves'.
  4571. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  4572. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4573. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #2.
  4574. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Vetos adds and moves'.
  4575. 10/16/2017
  4576. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  4577. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4578. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  4579. 10:11:05 2B431700 Drvrs: CADS ST:
  4580. <nds dtdversion="1.1" ndsversion="8.7">
  4581. <source>
  4582. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  4583. <contact>NetIQ Corporation</contact>
  4584. </source>
  4585. <output>
  4586. <instance class-name="organizationalUnit" event-id="0" src-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu">
  4587. <association>6089d2da098111449937868aae062a60</association>
  4588. <attr attr-name="ou">
  4589. <value naming="true" type="string">users</value>
  4590. </attr>
  4591. </instance>
  4592. <status event-id="0" level="success"/>
  4593. </output>
  4594. </nds>
  4595. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLADATRK-itp-WriteAccounts.
  4596. 10:11:05 2B431700 Drvrs: CADS ST: Applying to instance #1.
  4597. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #2.
  4598. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  4599. 10:11:05 2B431700 Drvrs: CADS ST:
  4600. <nds dtdversion="1.1" ndsversion="8.7">
  4601. <source>
  4602. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  4603. <contact>NetIQ Corporation</contact>
  4604. </source>
  4605. <output>
  4606. <instance class-name="organizationalUnit" event-id="0" src-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu">
  4607. <association>6089d2da098111449937868aae062a60</association>
  4608. <attr attr-name="ou">
  4609. <value naming="true" type="string">users</value>
  4610. </attr>
  4611. </instance>
  4612. <status event-id="0" level="success"/>
  4613. </output>
  4614. </nds>
  4615. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-SubscriberUserAdd.
  4616. 10:11:05 2B431700 Drvrs: CADS ST: Applying to instance #1.
  4617. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #2.
  4618. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  4619. 10:11:05 2B431700 Drvrs: CADS ST:
  4620. <nds dtdversion="1.1" ndsversion="8.7">
  4621. <source>
  4622. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  4623. <contact>NetIQ Corporation</contact>
  4624. </source>
  4625. <output>
  4626. <instance class-name="organizationalUnit" event-id="0" src-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu">
  4627. <association>6089d2da098111449937868aae062a60</association>
  4628. <attr attr-name="ou">
  4629. <value naming="true" type="string">users</value>
  4630. </attr>
  4631. </instance>
  4632. <status event-id="0" level="success"/>
  4633. </output>
  4634. </nds>
  4635. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-itp-FormatConversions.
  4636. 10:11:05 2B431700 Drvrs: CADS ST: Applying to instance #1.
  4637. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #2.
  4638. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  4639. 10:11:05 2B431700 Drvrs: CADS ST:
  4640. <nds dtdversion="1.1" ndsversion="8.7">
  4641. <source>
  4642. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  4643. <contact>NetIQ Corporation</contact>
  4644. </source>
  4645. <output>
  4646. <instance class-name="organizationalUnit" event-id="0" src-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu">
  4647. <association>6089d2da098111449937868aae062a60</association>
  4648. <attr attr-name="ou">
  4649. <value naming="true" type="string">users</value>
  4650. </attr>
  4651. </instance>
  4652. <status event-id="0" level="success"/>
  4653. </output>
  4654. </nds>
  4655. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLPWDSYNC-itp-EmailOnFailedPwdSub.
  4656. 10:11:05 2B431700 Drvrs: CADS ST: Applying to instance #1.
  4657. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #2.
  4658. 10:11:05 2B431700 Drvrs: CADS ST: Policy returned:
  4659. 10:11:05 2B431700 Drvrs: CADS ST:
  4660. <nds dtdversion="1.1" ndsversion="8.7">
  4661. <source>
  4662. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  4663. <contact>NetIQ Corporation</contact>
  4664. </source>
  4665. <output>
  4666. <instance class-name="organizationalUnit" event-id="0" src-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu">
  4667. <association>6089d2da098111449937868aae062a60</association>
  4668. <attr attr-name="ou">
  4669. <value naming="true" type="string">users</value>
  4670. </attr>
  4671. </instance>
  4672. <status event-id="0" level="success"/>
  4673. </output>
  4674. </nds>
  4675. 10:11:05 2B431700 Drvrs: CADS ST: Applying schema mapping policies to input.
  4676. 10:11:05 2B431700 Drvrs: CADS ST: Applying policy: NOVLADDCFG-smp.
  4677. 10:11:05 2B431700 Drvrs: CADS ST: Mapping class-name 'organizationalUnit' to 'Organizational Unit'.
  4678. 10:11:05 2B431700 Drvrs: CADS ST: Mapping attr-name 'ou' to 'OU'.
  4679. 10:11:05 2B431700 Drvrs: CADS ST: Resolving association references.
  4680. 10:11:05 2B431700 Drvrs: CADS ST: Query from policy result
  4681. 10:11:05 2B431700 Drvrs: CADS ST:
  4682. <nds dtdversion="1.1" ndsversion="8.7">
  4683. <source>
  4684. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  4685. <contact>NetIQ Corporation</contact>
  4686. </source>
  4687. <output>
  4688. <instance class-name="Organizational Unit" event-id="0" src-dn="ou= users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu">
  4689. <association>6089d2da098111449937868aae062a60</association>
  4690. <attr attr-name="OU">
  4691. <value naming="true" type="string">users</value>
  4692. </attr>
  4693. </instance>
  4694. <status event-id="0" level="success"/>
  4695. </output>
  4696. </nds>
  4697. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "users".
  4698. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "users".
  4699. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Create OU and security group'.
  4700. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'LVdestinationcheck' equal "") = FALSE.
  4701. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4702. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Placement'.
  4703. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = TRUE.
  4704. 10:11:05 2B431700 Drvrs: CADS ST: (if-class-name equal "User") = FALSE.
  4705. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4706. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  4707. 10:11:05 2B431700 Drvrs: CADS ST:
  4708. <nds dtdversion="4.0" ndsversion="8.x">
  4709. <source>
  4710. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  4711. <contact>NetIQ Corporation</contact>
  4712. </source>
  4713. <input>
  4714. <add cached-time="20171016161104.118Z" class-name="User" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  4715. <add-attr attr-name="Full Name">
  4716. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  4717. </add-attr>
  4718. <add-attr attr-name="Given Name">
  4719. <value timestamp="1496939376#7" type="string">Armando</value>
  4720. </add-attr>
  4721. <add-attr attr-name="Internet EMail Address">
  4722. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  4723. </add-attr>
  4724. <add-attr attr-name="ORGAccessCADS">
  4725. <value timestamp="1508170264#2" type="state">true</value>
  4726. </add-attr>
  4727. <add-attr attr-name="ORGCADSgroup">
  4728. <value timestamp="1508170264#1" type="string">FACSN</value>
  4729. </add-attr>
  4730. <add-attr attr-name="Surname">
  4731. <value timestamp="1496939376#6" type="string">Anglesey</value>
  4732. </add-attr>
  4733. <add-attr attr-name="DirXML-ADAliasName">
  4734. <value>testuser@its.cads.ORG.edu</value>
  4735. </add-attr>
  4736. <add-attr attr-name="CN">
  4737. <value>testuser</value>
  4738. </add-attr>
  4739. <add-attr attr-name="Login Disabled">
  4740. <value type="string">false</value>
  4741. </add-attr>
  4742. 10:11:05 2B431700 Drvrs: <password><!-- content suppressed --></password>
  4743. <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  4744. <password-subscribe-status>
  4745. <association/>
  4746. </password-subscribe-status>
  4747. </operation-data>
  4748. </add>
  4749. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  4750. <modify-attr attr-name="member">
  4751. <add-value>
  4752. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  4753. </add-value>
  4754. </modify-attr>
  4755. </modify>
  4756. </input>
  4757. </nds>
  4758. 10:11:05 2B431700 Drvrs: CADS ST:Filtering out notification-only attributes.
  4759. 10:11:05 2B431700 Drvrs: CADS ST: Filtered out <add-attr attr-name='ORGCADSgroup'>.
  4760. 10:11:05 2B431700 Drvrs: CADS ST: Filtered out <add-attr attr-name='Login Disabled'>.
  4761. 10:11:05 2B431700 Drvrs: CADS ST:Fixing up association references.
  4762. 10:11:05 2B431700 Drvrs: CADS ST:Applying schema mapping policies to output.
  4763. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLADDCFG-smp.
  4764. 10:11:05 2B431700 Drvrs: CADS ST: Mapping attr-name 'Full Name' to 'displayName'.
  4765. 10:11:05 2B431700 Drvrs: CADS ST: Mapping attr-name 'Given Name' to 'givenName'.
  4766. 10:11:05 2B431700 Drvrs: CADS ST: Mapping attr-name 'Internet EMail Address' to 'mail'.
  4767. 10:11:05 2B431700 Drvrs: CADS ST: Mapping attr-name 'ORGAccessCADS' to 'dirxml-uACAccountDisable'.
  4768. 10:11:05 2B431700 Drvrs: CADS ST: Mapping attr-name 'Surname' to 'sn'.
  4769. 10:11:05 2B431700 Drvrs: CADS ST: Mapping attr-name 'DirXML-ADAliasName' to 'userPrincipalName'.
  4770. 10:11:05 2B431700 Drvrs: CADS ST: Mapping attr-name 'CN' to 'sAMAccountName'.
  4771. 10:11:05 2B431700 Drvrs: CADS ST: Mapping attr-name 'member' to 'member'.
  4772. 10:11:05 2B431700 Drvrs: CADS ST: Mapping class-name 'User' to 'user'.
  4773. 10:11:05 2B431700 Drvrs: CADS ST:Applying output transformation policies.
  4774. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLADDCFG-otp-FormatConversions.
  4775. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add #1.
  4776. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Street Address: Convert LF to CR-LF'.
  4777. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  4778. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'Street Address: Convert LF to CR-LF'.
  4779. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("streetAddress",token-replace-all("[^\r]\n","\r\n",token-local-variable("current-value"))).
  4780. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'logonHours: Convert to Active Directory form'.
  4781. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  4782. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'logonHours: Convert to Active Directory form'.
  4783. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
  4784. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'accountExpires: Convert to Active Directory form'.
  4785. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr 'accountExpires' changing) = FALSE.
  4786. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4787. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'lockoutTime: Convert to Active Directory form'.
  4788. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr 'lockoutTime' available) = FALSE.
  4789. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4790. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add: User - convert multi-valued Telephone to single value'.
  4791. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "add") = TRUE.
  4792. 10:11:05 2B431700 Drvrs: CADS ST: (if-class-name equal "User") = TRUE.
  4793. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr 'telephoneNumber' available) = FALSE.
  4794. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4795. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'update Active Directory logon name'.
  4796. 10:11:05 2B431700 Drvrs: CADS ST: (if-xpath true "self::status[@level = 'success']/operation-data/windows-2000-logon-name") = FALSE.
  4797. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4798. 10:11:05 2B431700 Drvrs: CADS ST: Applying to modify #2.
  4799. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Street Address: Convert LF to CR-LF'.
  4800. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  4801. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'Street Address: Convert LF to CR-LF'.
  4802. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("streetAddress",token-replace-all("[^\r]\n","\r\n",token-local-variable("current-value"))).
  4803. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'logonHours: Convert to Active Directory form'.
  4804. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  4805. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'logonHours: Convert to Active Directory form'.
  4806. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
  4807. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'accountExpires: Convert to Active Directory form'.
  4808. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr 'accountExpires' changing) = FALSE.
  4809. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4810. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'lockoutTime: Convert to Active Directory form'.
  4811. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr 'lockoutTime' available) = FALSE.
  4812. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4813. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add: User - convert multi-valued Telephone to single value'.
  4814. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "add") = FALSE.
  4815. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4816. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'update Active Directory logon name'.
  4817. 10:11:05 2B431700 Drvrs: CADS ST: (if-xpath true "self::status[@level = 'success']/operation-data/windows-2000-logon-name") = FALSE.
  4818. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4819. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  4820. 10:11:05 2B431700 Drvrs: CADS ST:
  4821. <nds dtdversion="4.0" ndsversion="8.x">
  4822. <source>
  4823. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  4824. <contact>NetIQ Corporation</contact>
  4825. </source>
  4826. <input>
  4827. <add cached-time="20171016161104.118Z" class-name="user" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  4828. <add-attr attr-name="displayName">
  4829. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  4830. </add-attr>
  4831. <add-attr attr-name="givenName">
  4832. <value timestamp="1496939376#7" type="string">Armando</value>
  4833. </add-attr>
  4834. <add-attr attr-name="mail">
  4835. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  4836. </add-attr>
  4837. <add-attr attr-name="dirxml-uACAccountDisable">
  4838. <value timestamp="1508170264#2" type="state">true</value>
  4839. </add-attr>
  4840. <add-attr attr-name="sn">
  4841. <value timestamp="1496939376#6" type="string">Anglesey</value>
  4842. </add-attr>
  4843. <add-attr attr-name="userPrincipalName">
  4844. <value>testuser@its.cads.ORG.edu</value>
  4845. </add-attr>
  4846. <add-attr attr-name="sAMAccountName">
  4847. <value>testuser</value>
  4848. </add-attr>
  4849. <password><!-- content suppressed --></password>
  4850. <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  4851. <password-subscribe-status>
  4852. <association/>
  4853. </password-subscribe-status>
  4854. 10:11:05 2B431700 Drvrs: </operation-data>
  4855. </add>
  4856. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  4857. <modify-attr attr-name="member">
  4858. <add-value>
  4859. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  4860. </add-value>
  4861. </modify-attr>
  4862. </modify>
  4863. </input>
  4864. </nds>
  4865. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLADDCFG-otp-ExchangeEntitlementQuery.
  4866. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add #1.
  4867. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add dest-dn to the Exchange Entitlement Query'.
  4868. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "query") = FALSE.
  4869. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4870. 10:11:05 2B431700 Drvrs: CADS ST: Applying to modify #2.
  4871. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Add dest-dn to the Exchange Entitlement Query'.
  4872. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "query") = FALSE.
  4873. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4874. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  4875. 10:11:05 2B431700 Drvrs: CADS ST:
  4876. <nds dtdversion="4.0" ndsversion="8.x">
  4877. <source>
  4878. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  4879. <contact>NetIQ Corporation</contact>
  4880. </source>
  4881. <input>
  4882. <add cached-time="20171016161104.118Z" class-name="user" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  4883. <add-attr attr-name="displayName">
  4884. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  4885. </add-attr>
  4886. <add-attr attr-name="givenName">
  4887. <value timestamp="1496939376#7" type="string">Armando</value>
  4888. </add-attr>
  4889. <add-attr attr-name="mail">
  4890. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  4891. </add-attr>
  4892. <add-attr attr-name="dirxml-uACAccountDisable">
  4893. <value timestamp="1508170264#2" type="state">true</value>
  4894. </add-attr>
  4895. <add-attr attr-name="sn">
  4896. <value timestamp="1496939376#6" type="string">Anglesey</value>
  4897. </add-attr>
  4898. <add-attr attr-name="userPrincipalName">
  4899. <value>testuser@its.cads.ORG.edu</value>
  4900. </add-attr>
  4901. <add-attr attr-name="sAMAccountName">
  4902. <value>testuser</value>
  4903. </add-attr>
  4904. <password><!-- content suppressed --></password>
  4905. <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  4906. <password-subscribe-status>
  4907. <association/>
  4908. </password-subscribe-status>
  4909. 10:11:05 2B431700 Drvrs: </operation-data>
  4910. </add>
  4911. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  4912. <modify-attr attr-name="member">
  4913. <add-value>
  4914. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  4915. </add-value>
  4916. </modify-attr>
  4917. </modify>
  4918. </input>
  4919. </nds>
  4920. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLPWDSYNC-otp-EmailOnFailedPwdPub.
  4921. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add #1.
  4922. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Send e-mail for a failed publish password operation'.
  4923. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'notify-user-on-password-dist-failure' equal "true") = TRUE.
  4924. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "status") = FALSE.
  4925. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4926. 10:11:05 2B431700 Drvrs: CADS ST: Applying to modify #2.
  4927. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Send e-mail for a failed publish password operation'.
  4928. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'notify-user-on-password-dist-failure' equal "true") = TRUE.
  4929. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "status") = FALSE.
  4930. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4931. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  4932. 10:11:05 2B431700 Drvrs: CADS ST:
  4933. <nds dtdversion="4.0" ndsversion="8.x">
  4934. <source>
  4935. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  4936. <contact>NetIQ Corporation</contact>
  4937. </source>
  4938. <input>
  4939. <add cached-time="20171016161104.118Z" class-name="user" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  4940. <add-attr attr-name="displayName">
  4941. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  4942. </add-attr>
  4943. <add-attr attr-name="givenName">
  4944. <value timestamp="1496939376#7" type="string">Armando</value>
  4945. </add-attr>
  4946. <add-attr attr-name="mail">
  4947. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  4948. </add-attr>
  4949. <add-attr attr-name="dirxml-uACAccountDisable">
  4950. <value timestamp="1508170264#2" type="state">true</value>
  4951. </add-attr>
  4952. <add-attr attr-name="sn">
  4953. <value timestamp="1496939376#6" type="string">Anglesey</value>
  4954. </add-attr>
  4955. <add-attr attr-name="userPrincipalName">
  4956. <value>testuser@its.cads.ORG.edu</value>
  4957. </add-attr>
  4958. <add-attr attr-name="sAMAccountName">
  4959. <value>testuser</value>
  4960. </add-attr>
  4961. <password><!-- content suppressed --></password>
  4962. <operation-data attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  4963. <password-subscribe-status>
  4964. <association/>
  4965. </password-subscribe-status>
  4966. 10:11:05 2B431700 Drvrs: </operation-data>
  4967. </add>
  4968. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  4969. <modify-attr attr-name="member">
  4970. <add-value>
  4971. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  4972. </add-value>
  4973. </modify-attr>
  4974. </modify>
  4975. </input>
  4976. </nds>
  4977. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLADATRK-otp-Subscribe.
  4978. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add #1.
  4979. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Do not process Account Tracking policies if modify with no source-dn '.
  4980. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = FALSE.
  4981. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4982. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - Initialize Realm Mapping'.
  4983. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' equal "true") = TRUE.
  4984. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  4985. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  4986. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - disregard if disabled or wrong object class'.
  4987. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  4988. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'AccountTracking - disregard if disabled or wrong object class'.
  4989. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  4990. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  4991. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.enable' not-equal "true") = FALSE.
  4992. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  4993. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-for-each(arg-node-set(token-global-variable("drv.acctTrk.objectClass"))).
  4994. 10:11:05 2B431700 Drvrs: CADS ST: arg-node-set(token-global-variable("drv.acctTrk.objectClass"))
  4995. 10:11:05 2B431700 Drvrs: CADS ST: token-global-variable("drv.acctTrk.objectClass")
  4996. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: {"user"}.
  4997. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: {"user"}.
  4998. 10:11:05 2B431700 Drvrs: CADS ST: Performing actions for local-variable(current-node) = "user".
  4999. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5000. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5001. 10:11:05 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'user'.
  5002. 10:11:05 2B431700 Drvrs: CADS ST: (if-class-name equal "$current-node$") = TRUE.
  5003. 10:11:05 2B431700 Drvrs: CADS ST: Performing if actions.
  5004. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("pass",scope="policy","true").
  5005. 10:11:05 2B431700 Drvrs: CADS ST: arg-string("true")
  5006. 10:11:05 2B431700 Drvrs: CADS ST: token-text("true")
  5007. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "true".
  5008. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5009. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5010. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'pass' not-available) = FALSE.
  5011. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5012. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - add operation-data for regular operations'.
  5013. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = TRUE.
  5014. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  5015. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'AccountTracking - add operation-data for regular operations'.
  5016. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-op-property("AccountTracking-Operation",token-operation()).
  5017. 10:11:05 2B431700 Drvrs: CADS ST: arg-string(token-operation())
  5018. 10:11:05 2B431700 Drvrs: CADS ST: token-operation()
  5019. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "add".
  5020. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "add".
  5021. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5022. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5023. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  5024. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5025. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-for-each(arg-node-set(token-global-variable("drv.acctTrk.identifiers"))).
  5026. 10:11:05 2B431700 Drvrs: CADS ST: arg-node-set(token-global-variable("drv.acctTrk.identifiers"))
  5027. 10:11:05 2B431700 Drvrs: CADS ST: token-global-variable("drv.acctTrk.identifiers")
  5028. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: {"sAMAccountName","userPrincipalName","LDAPDN","association"}.
  5029. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: {"sAMAccountName","userPrincipalName","LDAPDN","association"}.
  5030. 10:11:05 2B431700 Drvrs: CADS ST: Performing actions for local-variable(current-node) = "sAMAccountName".
  5031. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5032. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5033. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'current-node' equal "LDAPDN") = FALSE.
  5034. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5035. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5036. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5037. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'current-node' equal "DESTNAME") = FALSE.
  5038. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5039. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5040. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5041. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'current-node' equal "association") = FALSE.
  5042. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5043. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5044. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5045. 10:11:05 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'sAMAccountName'.
  5046. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr '$current-node$' available) = TRUE.
  5047. 10:11:05 2B431700 Drvrs: CADS ST: Performing if actions.
  5048. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-trace-message("AccountTracking - Tracking account identifier $current-node$ for object "+token-src-name()).
  5049. 10:11:05 2B431700 Drvrs: CADS ST: arg-string("AccountTracking - Tracking account identifier $current-node$ for object "+token-src-name())
  5050. 10:11:05 2B431700 Drvrs: CADS ST: token-text("AccountTracking - Tracking account identifier $current-node$ for object ")
  5051. 10:11:05 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'sAMAccountName'.
  5052. 10:11:05 2B431700 Drvrs: CADS ST: token-src-name()
  5053. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  5054. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "AccountTracking - Tracking account identifier sAMAccountName for object testuser".
  5055. 10:11:05 2B431700 Drvrs: CADS ST:AccountTracking - Tracking account identifier sAMAccountName for object testuser
  5056. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-op-property("AccountTracking-$current-node$",token-op-attr("$current-node$")).
  5057. 10:11:05 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'sAMAccountName'.
  5058. 10:11:05 2B431700 Drvrs: CADS ST: arg-string(token-op-attr("$current-node$"))
  5059. 10:11:05 2B431700 Drvrs: CADS ST: token-op-attr("$current-node$")
  5060. 10:11:05 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'sAMAccountName'.
  5061. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  5062. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "testuser".
  5063. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("addObjectDN",scope="policy","true").
  5064. 10:11:05 2B431700 Drvrs: CADS ST: arg-string("true")
  5065. 10:11:05 2B431700 Drvrs: CADS ST: token-text("true")
  5066. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "true".
  5067. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5068. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5069. 10:11:05 2B431700 Drvrs: CADS ST: (if-xpath true "@from-merge='true'") = FALSE.
  5070. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5071. 10:11:05 2B431700 Drvrs: CADS ST: Performing actions for local-variable(current-node) = "userPrincipalName".
  5072. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5073. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5074. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'current-node' equal "LDAPDN") = FALSE.
  5075. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5076. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5077. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5078. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'current-node' equal "DESTNAME") = FALSE.
  5079. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5080. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5081. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5082. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'current-node' equal "association") = FALSE.
  5083. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5084. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5085. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5086. 10:11:05 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'userPrincipalName'.
  5087. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr '$current-node$' available) = TRUE.
  5088. 10:11:05 2B431700 Drvrs: CADS ST: Performing if actions.
  5089. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-trace-message("AccountTracking - Tracking account identifier $current-node$ for object "+token-src-name()).
  5090. 10:11:05 2B431700 Drvrs: CADS ST: arg-string("AccountTracking - Tracking account identifier $current-node$ for object "+token-src-name())
  5091. 10:11:05 2B431700 Drvrs: CADS ST: token-text("AccountTracking - Tracking account identifier $current-node$ for object ")
  5092. 10:11:05 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'userPrincipalName'.
  5093. 10:11:05 2B431700 Drvrs: CADS ST: token-src-name()
  5094. 10/16/2017
  5095. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  5096. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "AccountTracking - Tracking account identifier userPrincipalName for object testuser".
  5097. 10:11:05 2B431700 Drvrs: CADS ST:AccountTracking - Tracking account identifier userPrincipalName for object testuser
  5098. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-op-property("AccountTracking-$current-node$",token-op-attr("$current-node$")).
  5099. 10:11:05 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'userPrincipalName'.
  5100. 10:11:05 2B431700 Drvrs: CADS ST: arg-string(token-op-attr("$current-node$"))
  5101. 10:11:05 2B431700 Drvrs: CADS ST: token-op-attr("$current-node$")
  5102. 10:11:05 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'userPrincipalName'.
  5103. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "testuser@its.cads.ORG.edu".
  5104. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "testuser@its.cads.ORG.edu".
  5105. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("addObjectDN",scope="policy","true").
  5106. 10:11:05 2B431700 Drvrs: CADS ST: arg-string("true")
  5107. 10:11:05 2B431700 Drvrs: CADS ST: token-text("true")
  5108. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "true".
  5109. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5110. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5111. 10:11:05 2B431700 Drvrs: CADS ST: (if-xpath true "@from-merge='true'") = FALSE.
  5112. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5113. 10:11:05 2B431700 Drvrs: CADS ST: Performing actions for local-variable(current-node) = "LDAPDN".
  5114. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5115. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5116. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'current-node' equal "LDAPDN") = TRUE.
  5117. 10:11:05 2B431700 Drvrs: CADS ST: (if-dest-dn available) = TRUE.
  5118. 10:11:05 2B431700 Drvrs: CADS ST: Performing if actions.
  5119. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-trace-message("AccountTracking - Tracking account identifier $current-node$ for object "+token-src-name()).
  5120. 10:11:05 2B431700 Drvrs: CADS ST: arg-string("AccountTracking - Tracking account identifier $current-node$ for object "+token-src-name())
  5121. 10:11:05 2B431700 Drvrs: CADS ST: token-text("AccountTracking - Tracking account identifier $current-node$ for object ")
  5122. 10:11:05 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'LDAPDN'.
  5123. 10:11:05 2B431700 Drvrs: CADS ST: token-src-name()
  5124. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  5125. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "AccountTracking - Tracking account identifier LDAPDN for object testuser".
  5126. 10:11:05 2B431700 Drvrs: CADS ST:AccountTracking - Tracking account identifier LDAPDN for object testuser
  5127. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-op-property("AccountTracking-$current-node$",token-dest-dn()).
  5128. 10:11:05 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'LDAPDN'.
  5129. 10:11:05 2B431700 Drvrs: CADS ST: arg-string(token-dest-dn())
  5130. 10:11:05 2B431700 Drvrs: CADS ST: token-dest-dn()
  5131. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  5132. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu".
  5133. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("addObjectDN",scope="policy","true").
  5134. 10:11:05 2B431700 Drvrs: CADS ST: arg-string("true")
  5135. 10:11:05 2B431700 Drvrs: CADS ST: token-text("true")
  5136. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "true".
  5137. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5138. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5139. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'current-node' equal "DESTNAME") = FALSE.
  5140. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5141. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5142. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5143. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'current-node' equal "association") = FALSE.
  5144. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5145. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5146. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5147. 10:11:05 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'LDAPDN'.
  5148. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr '$current-node$' available) = FALSE.
  5149. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5150. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5151. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5152. 10:11:05 2B431700 Drvrs: CADS ST: (if-xpath true "@from-merge='true'") = FALSE.
  5153. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5154. 10:11:05 2B431700 Drvrs: CADS ST: Performing actions for local-variable(current-node) = "association".
  5155. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5156. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5157. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'current-node' equal "LDAPDN") = FALSE.
  5158. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5159. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5160. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5161. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'current-node' equal "DESTNAME") = FALSE.
  5162. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5163. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5164. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5165. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'current-node' equal "association") = TRUE.
  5166. 10:11:05 2B431700 Drvrs: CADS ST: (if-association available) = FALSE.
  5167. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5168. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5169. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5170. 10:11:05 2B431700 Drvrs: CADS ST: Expanded variable reference '$current-node$' to 'association'.
  5171. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr '$current-node$' available) = FALSE.
  5172. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5173. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5174. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5175. 10:11:05 2B431700 Drvrs: CADS ST: (if-xpath true "@from-merge='true'") = FALSE.
  5176. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5177. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("var-idvAccountStatus",scope="policy","-").
  5178. 10:11:05 2B431700 Drvrs: CADS ST: arg-string("-")
  5179. 10:11:05 2B431700 Drvrs: CADS ST: token-text("-")
  5180. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "-".
  5181. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("var-appAccountStatus",scope="policy","-").
  5182. 10:11:05 2B431700 Drvrs: CADS ST: arg-string("-")
  5183. 10:11:05 2B431700 Drvrs: CADS ST: token-text("-")
  5184. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "-".
  5185. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5186. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5187. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr 'dirxml-uACAccountDisable' available) = TRUE.
  5188. 10:11:05 2B431700 Drvrs: CADS ST: Performing if actions.
  5189. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("var-accountStatusChanged",scope="policy","true").
  5190. 10:11:05 2B431700 Drvrs: CADS ST: arg-string("true")
  5191. 10:11:05 2B431700 Drvrs: CADS ST: token-text("true")
  5192. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "true".
  5193. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("noRegularModify",scope="policy","true").
  5194. 10:11:05 2B431700 Drvrs: CADS ST: arg-string("true")
  5195. 10:11:05 2B431700 Drvrs: CADS ST: token-text("true")
  5196. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "true".
  5197. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5198. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5199. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr 'dirxml-uACAccountDisable' equal "false") = FALSE.
  5200. 10:11:05 2B431700 Drvrs: CADS ST: Performing else actions.
  5201. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5202. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5203. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr 'dirxml-uACAccountDisable' equal "true") = TRUE.
  5204. 10:11:05 2B431700 Drvrs: CADS ST: Performing if actions.
  5205. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-local-variable("var-idvAccountStatus",scope="policy","I").
  5206. 10:11:05 2B431700 Drvrs: CADS ST: arg-string("I")
  5207. 10:11:05 2B431700 Drvrs: CADS ST: token-text("I")
  5208. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "I".
  5209. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-trace-message("Account Tracking - Account status changed to "$var-idvAccountStatus$" for "+token-src-name()).
  5210. 10:11:05 2B431700 Drvrs: CADS ST: arg-string("Account Tracking - Account status changed to "$var-idvAccountStatus$" for "+token-src-name())
  5211. 10:11:05 2B431700 Drvrs: CADS ST: token-text("Account Tracking - Account status changed to "$var-idvAccountStatus$" for ")
  5212. 10:11:05 2B431700 Drvrs: CADS ST: Expanded variable reference '$var-idvAccountStatus$' to 'I'.
  5213. 10:11:05 2B431700 Drvrs: CADS ST: token-src-name()
  5214. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "testuser".
  5215. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "Account Tracking - Account status changed to "I" for testuser".
  5216. 10:11:05 2B431700 Drvrs: CADS ST:Account Tracking - Account status changed to "I" for testuser
  5217. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5218. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5219. 10:11:05 2B431700 Drvrs: CADS ST: (if-src-dn available) = TRUE.
  5220. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'noRegularModify' equal "true") = TRUE.
  5221. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'addObjectDN' equal "true") = TRUE.
  5222. 10:11:05 2B431700 Drvrs: CADS ST: Performing if actions.
  5223. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-op-property("AccountTracking-ObjectDN",token-src-dn()).
  5224. 10:11:05 2B431700 Drvrs: CADS ST: arg-string(token-src-dn())
  5225. 10:11:05 2B431700 Drvrs: CADS ST: token-src-dn()
  5226. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "\ORG-IDV\ORG\data\users\employees\testuser".
  5227. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "\ORG-IDV\ORG\data\users\employees\testuser".
  5228. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-if().
  5229. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating conditions.
  5230. 10:11:05 2B431700 Drvrs: CADS ST: (if-local-variable 'var-accountStatusChanged' equal "true") = TRUE.
  5231. 10:11:05 2B431700 Drvrs: CADS ST: Performing if actions.
  5232. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-op-property("AccountTracking-AccountStatusChanged","true").
  5233. 10:11:05 2B431700 Drvrs: CADS ST: arg-string("true")
  5234. 10:11:05 2B431700 Drvrs: CADS ST: token-text("true")
  5235. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "true".
  5236. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-op-property("AccountTracking-IdvAccountStatus",token-local-variable("var-idvAccountStatus")).
  5237. 10:11:05 2B431700 Drvrs: CADS ST: arg-string(token-local-variable("var-idvAccountStatus"))
  5238. 10:11:05 2B431700 Drvrs: CADS ST: token-local-variable("var-idvAccountStatus")
  5239. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "I".
  5240. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "I".
  5241. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-set-op-property("AccountTracking-AppAccountStatus",token-local-variable("var-appAccountStatus")).
  5242. 10:11:05 2B431700 Drvrs: CADS ST: arg-string(token-local-variable("var-appAccountStatus"))
  5243. 10:11:05 2B431700 Drvrs: CADS ST: token-local-variable("var-appAccountStatus")
  5244. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "-".
  5245. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "-".
  5246. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - add operation-data for mapped operations'.
  5247. 10:11:05 2B431700 Drvrs: CADS ST: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  5248. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  5249. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'AccountTracking - strip AccountTrackingAccountStatus attribute'.
  5250. 10:11:05 2B431700 Drvrs: CADS ST: (if-op-attr 'AccountTrackingAccountStatus' available) = FALSE.
  5251. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  5252. 10:11:05 2B431700 Drvrs: CADS ST: Applying to modify #2.
  5253. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Do not process Account Tracking policies if modify with no source-dn '.
  5254. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation equal "modify") = TRUE.
  5255. 10:11:05 2B431700 Drvrs: CADS ST: (if-src-dn not-available) = TRUE.
  5256. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  5257. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'Do not process Account Tracking policies if modify with no source-dn '.
  5258. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-break().
  5259. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  5260. 10:11:05 2B431700 Drvrs: CADS ST:
  5261. <nds dtdversion="4.0" ndsversion="8.x">
  5262. <source>
  5263. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  5264. <contact>NetIQ Corporation</contact>
  5265. </source>
  5266. <input>
  5267. <add cached-time="20171016161104.118Z" class-name="user" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  5268. <add-attr attr-name="displayName">
  5269. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  5270. </add-attr>
  5271. <add-attr attr-name="givenName">
  5272. <value timestamp="1496939376#7" type="string">Armando</value>
  5273. </add-attr>
  5274. <add-attr attr-name="mail">
  5275. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  5276. </add-attr>
  5277. <add-attr attr-name="dirxml-uACAccountDisable">
  5278. <value timestamp="1508170264#2" type="state">true</value>
  5279. </add-attr>
  5280. <add-attr attr-name="sn">
  5281. <value timestamp="1496939376#6" type="string">Anglesey</value>
  5282. </add-attr>
  5283. <add-attr attr-name="userPrincipalName">
  5284. <value>testuser@its.cads.ORG.edu</value>
  5285. </add-attr>
  5286. <add-attr attr-name="sAMAccountName">
  5287. <value>testuser</value>
  5288. </add-attr>
  5289. <password><!-- content suppressed --></password>
  5290. 10:11:05 2B431700 Drvrs: <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5291. <password-subscribe-status>
  5292. <association/>
  5293. </password-subscribe-status>
  5294. </operation-data>
  5295. </add>
  5296. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  5297. <modify-attr attr-name="member">
  5298. <add-value>
  5299. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  5300. </add-value>
  5301. </modify-attr>
  5302. </modify>
  5303. </input>
  5304. </nds>
  5305. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: ORG-otp-itp-inverse-disable.
  5306. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add #1.
  5307. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  5308. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  5309. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  5310. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  5311. 10:11:05 2B431700 Drvrs: CADS ST: arg-string(token-xpath("string(string($current-value) = "false")"))
  5312. 10:11:05 2B431700 Drvrs: CADS ST: token-xpath("string(string($current-value) = "false")")
  5313. 10:11:05 2B431700 Drvrs: CADS ST: Token Value: "false".
  5314. 10:11:05 2B431700 Drvrs: CADS ST: Arg Value: "false".
  5315. 10:11:05 2B431700 Drvrs: CADS ST: Applying to modify #2.
  5316. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  5317. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  5318. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  5319. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  5320. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  5321. 10:11:05 2B431700 Drvrs: CADS ST:
  5322. <nds dtdversion="4.0" ndsversion="8.x">
  5323. <source>
  5324. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  5325. <contact>NetIQ Corporation</contact>
  5326. </source>
  5327. <input>
  5328. <add cached-time="20171016161104.118Z" class-name="user" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  5329. <add-attr attr-name="displayName">
  5330. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  5331. </add-attr>
  5332. <add-attr attr-name="givenName">
  5333. <value timestamp="1496939376#7" type="string">Armando</value>
  5334. </add-attr>
  5335. <add-attr attr-name="mail">
  5336. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  5337. </add-attr>
  5338. <add-attr attr-name="dirxml-uACAccountDisable">
  5339. <value type="state">false</value>
  5340. </add-attr>
  5341. <add-attr attr-name="sn">
  5342. <value timestamp="1496939376#6" type="string">Anglesey</value>
  5343. </add-attr>
  5344. <add-attr attr-name="userPrincipalName">
  5345. <value>testuser@its.cads.ORG.edu</value>
  5346. </add-attr>
  5347. <add-attr attr-name="sAMAccountName">
  5348. <value>testuser</value>
  5349. </add-attr>
  5350. <password><!-- content suppressed --></password>
  5351. 10:11:05 2B431700 Drvrs: <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5352. <password-subscribe-status>
  5353. <association/>
  5354. </password-subscribe-status>
  5355. </operation-data>
  5356. </add>
  5357. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  5358. <modify-attr attr-name="member">
  5359. <add-value>
  5360. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  5361. </add-value>
  5362. </modify-attr>
  5363. </modify>
  5364. </input>
  5365. </nds>
  5366. 10:11:05 2B431700 Drvrs: CADS ST:Submitting document to subscriber shim:
  5367. 10:11:05 2B431700 Drvrs: CADS ST:
  5368. <nds dtdversion="4.0" ndsversion="8.x">
  5369. <source>
  5370. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  5371. <contact>NetIQ Corporation</contact>
  5372. </source>
  5373. <input>
  5374. <add cached-time="20171016161104.118Z" class-name="user" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  5375. <add-attr attr-name="displayName">
  5376. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  5377. </add-attr>
  5378. <add-attr attr-name="givenName">
  5379. <value timestamp="1496939376#7" type="string">Armando</value>
  5380. </add-attr>
  5381. <add-attr attr-name="mail">
  5382. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  5383. </add-attr>
  5384. <add-attr attr-name="dirxml-uACAccountDisable">
  5385. <value type="state">false</value>
  5386. </add-attr>
  5387. <add-attr attr-name="sn">
  5388. <value timestamp="1496939376#6" type="string">Anglesey</value>
  5389. </add-attr>
  5390. <add-attr attr-name="userPrincipalName">
  5391. <value>testuser@its.cads.ORG.edu</value>
  5392. </add-attr>
  5393. <add-attr attr-name="sAMAccountName">
  5394. <value>testuser</value>
  5395. </add-attr>
  5396. <password><!-- content suppressed --></password>
  5397. 10:11:05 2B431700 Drvrs: <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5398. <password-subscribe-status>
  5399. <association/>
  5400. </password-subscribe-status>
  5401. </operation-data>
  5402. </add>
  5403. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  5404. <modify-attr attr-name="member">
  5405. <add-value>
  5406. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  5407. </add-value>
  5408. </modify-attr>
  5409. </modify>
  5410. </input>
  5411. </nds>
  5412. 10:11:05 2B431700 Drvrs: CADS ST:Password synchronization command detected.
  5413. 10:11:05 2B431700 Drvrs: CADS ST:Stripping operation data from input document
  5414. 10:11:05 2B431700 Drvrs: CADS ST:Remote Interface Driver: Sending...
  5415. 10:11:05 2B431700 Drvrs: CADS ST:
  5416. <nds dtdversion="4.0" ndsversion="8.x">
  5417. <source>
  5418. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  5419. <contact>NetIQ Corporation</contact>
  5420. </source>
  5421. <input>
  5422. <add cached-time="20171016161104.118Z" class-name="user" dest-dn="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170264#2">
  5423. <add-attr attr-name="displayName">
  5424. <value timestamp="1496939376#14" type="string">Anglesey, Armando</value>
  5425. </add-attr>
  5426. <add-attr attr-name="givenName">
  5427. <value timestamp="1496939376#7" type="string">Armando</value>
  5428. </add-attr>
  5429. <add-attr attr-name="mail">
  5430. <value timestamp="1496939376#124" type="string">testuser@ORG.edu</value>
  5431. </add-attr>
  5432. <add-attr attr-name="dirxml-uACAccountDisable">
  5433. <value type="state">false</value>
  5434. </add-attr>
  5435. <add-attr attr-name="sn">
  5436. <value timestamp="1496939376#6" type="string">Anglesey</value>
  5437. </add-attr>
  5438. <add-attr attr-name="userPrincipalName">
  5439. <value>testuser@its.cads.ORG.edu</value>
  5440. </add-attr>
  5441. <add-attr attr-name="sAMAccountName">
  5442. <value>testuser</value>
  5443. </add-attr>
  5444. <password><!-- content suppressed --></password>
  5445. </add>
  5446. <modify dest-dn="cn=FACSN Users,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">
  5447. 10:11:05 2B431700 Drvrs: <modify-attr attr-name="member">
  5448. <add-value>
  5449. <value type="string">cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu</value>
  5450. </add-value>
  5451. </modify-attr>
  5452. </modify>
  5453. </input>
  5454. </nds>
  5455. 10:11:05 2B431700 Drvrs: CADS ST:Remote Interface Driver: Document sent.
  5456. 10:11:05 2BA58700 Drvrs: CADS :Remote Interface Driver: Received.
  5457. 10:11:05 2BA58700 Drvrs: CADS :
  5458. <nds dtdversion="1.1" ndsversion="8.7">
  5459. <source>
  5460. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  5461. <contact>NetIQ Corporation</contact>
  5462. </source>
  5463. <output>
  5464. <add-association dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">52b7c854d68c2a439be0bbb8fa597332</add-association>
  5465. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  5466. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success"/>
  5467. </output>
  5468. </nds>
  5469. 10:11:05 2BA58700 Drvrs: CADS :Remote Interface Driver: Received document for subscriber channel
  5470. 10:11:05 2BA58700 Drvrs: CADS :Remote Interface Driver: Waiting for receive...
  5471. 10:11:05 2B431700 Drvrs: CADS ST:Password synchronization command status detected.
  5472. 10:11:05 2B431700 Drvrs: CADS ST:Password synchronization command status detected.
  5473. 10:11:05 2B431700 Drvrs: CADS ST:Restoring operation data to output document
  5474. 10:11:05 2B431700 Drvrs: CADS ST:SubscriptionShim.execute() returned:
  5475. 10:11:05 2B431700 Drvrs: CADS ST:
  5476. <nds dtdversion="1.1" ndsversion="8.7">
  5477. <source>
  5478. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  5479. <contact>NetIQ Corporation</contact>
  5480. </source>
  5481. <output>
  5482. <add-association dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">52b7c854d68c2a439be0bbb8fa597332<operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5483. <password-subscribe-status>
  5484. <association/>
  5485. </password-subscribe-status>
  5486. </operation-data>
  5487. </add-association>
  5488. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  5489. 10:11:05 2B431700 Drvrs: <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5490. <password-subscribe-status>
  5491. <association/>
  5492. </password-subscribe-status>
  5493. </operation-data>
  5494. </status>
  5495. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  5496. <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5497. <password-subscribe-status>
  5498. <association/>
  5499. </password-subscribe-status>
  5500. </operation-data>
  5501. </status>
  5502. </output>
  5503. </nds>
  5504. 10:11:05 2B431700 Drvrs: CADS ST:Applying input transformation policies.
  5505. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: ORG-otp-itp-inverse-disable.
  5506. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add-association #1.
  5507. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  5508. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  5509. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  5510. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  5511. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #2.
  5512. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  5513. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  5514. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  5515. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  5516. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #3.
  5517. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  5518. 10:11:05 2B431700 Drvrs: CADS ST: Rule selected.
  5519. 10:11:05 2B431700 Drvrs: CADS ST: Applying rule 'toggle dirxml-uACAccountDisable'.
  5520. 10:11:05 2B431700 Drvrs: CADS ST: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  5521. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  5522. 10:11:05 2B431700 Drvrs: CADS ST:
  5523. <nds dtdversion="1.1" ndsversion="8.7">
  5524. <source>
  5525. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  5526. <contact>NetIQ Corporation</contact>
  5527. </source>
  5528. <output>
  5529. <add-association dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">52b7c854d68c2a439be0bbb8fa597332<operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5530. <password-subscribe-status>
  5531. <association/>
  5532. </password-subscribe-status>
  5533. </operation-data>
  5534. </add-association>
  5535. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  5536. 10:11:05 2B431700 Drvrs: <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5537. <password-subscribe-status>
  5538. <association/>
  5539. </password-subscribe-status>
  5540. </operation-data>
  5541. </status>
  5542. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  5543. <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5544. <password-subscribe-status>
  5545. <association/>
  5546. </password-subscribe-status>
  5547. </operation-data>
  5548. </status>
  5549. </output>
  5550. </nds>
  5551. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLADATRK-itp-Publish.
  5552. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add-association #1.
  5553. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #2.
  5554. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #3.
  5555. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  5556. 10:11:05 2B431700 Drvrs: CADS ST:
  5557. <nds dtdversion="1.1" ndsversion="8.7">
  5558. <source>
  5559. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  5560. <contact>NetIQ Corporation</contact>
  5561. </source>
  5562. <output>
  5563. <add-association dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">52b7c854d68c2a439be0bbb8fa597332<operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5564. <password-subscribe-status>
  5565. <association/>
  5566. </password-subscribe-status>
  5567. </operation-data>
  5568. </add-association>
  5569. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  5570. 10:11:05 2B431700 Drvrs: <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5571. <password-subscribe-status>
  5572. <association/>
  5573. </password-subscribe-status>
  5574. </operation-data>
  5575. </status>
  5576. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  5577. <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5578. <password-subscribe-status>
  5579. <association/>
  5580. </password-subscribe-status>
  5581. </operation-data>
  5582. </status>
  5583. </output>
  5584. </nds>
  5585. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: Scope.
  5586. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add-association #1.
  5587. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Vetos adds and moves'.
  5588. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  5589. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  5590. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #2.
  5591. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Vetos adds and moves'.
  5592. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  5593. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  5594. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #3.
  5595. 10:11:05 2B431700 Drvrs: CADS ST: Evaluating selection criteria for rule 'Vetos adds and moves'.
  5596. 10:11:05 2B431700 Drvrs: CADS ST: (if-operation match "add|modify|delete|rename|move") = FALSE.
  5597. 10:11:05 2B431700 Drvrs: CADS ST: Rule rejected.
  5598. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  5599. 10:11:05 2B431700 Drvrs: CADS ST:
  5600. <nds dtdversion="1.1" ndsversion="8.7">
  5601. <source>
  5602. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  5603. <contact>NetIQ Corporation</contact>
  5604. </source>
  5605. <output>
  5606. <add-association dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">52b7c854d68c2a439be0bbb8fa597332<operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5607. <password-subscribe-status>
  5608. <association/>
  5609. </password-subscribe-status>
  5610. </operation-data>
  5611. </add-association>
  5612. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  5613. 10:11:05 2B431700 Drvrs: <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5614. <password-subscribe-status>
  5615. <association/>
  5616. </password-subscribe-status>
  5617. </operation-data>
  5618. </status>
  5619. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  5620. <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5621. <password-subscribe-status>
  5622. <association/>
  5623. </password-subscribe-status>
  5624. </operation-data>
  5625. </status>
  5626. </output>
  5627. </nds>
  5628. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLADATRK-itp-WriteAccounts.
  5629. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add-association #1.
  5630. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #2.
  5631. 10/16/2017
  5632. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #3.
  5633. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  5634. 10:11:05 2B431700 Drvrs: CADS ST:
  5635. <nds dtdversion="1.1" ndsversion="8.7">
  5636. <source>
  5637. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  5638. <contact>NetIQ Corporation</contact>
  5639. </source>
  5640. <output>
  5641. <add-association dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">52b7c854d68c2a439be0bbb8fa597332<operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5642. <password-subscribe-status>
  5643. <association/>
  5644. </password-subscribe-status>
  5645. </operation-data>
  5646. </add-association>
  5647. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  5648. 10:11:05 2B431700 Drvrs: <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5649. <password-subscribe-status>
  5650. <association/>
  5651. </password-subscribe-status>
  5652. </operation-data>
  5653. </status>
  5654. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  5655. <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5656. <password-subscribe-status>
  5657. <association/>
  5658. </password-subscribe-status>
  5659. </operation-data>
  5660. </status>
  5661. </output>
  5662. </nds>
  5663. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLADDCFG-itp-SubscriberUserAdd.
  5664. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add-association #1.
  5665. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #2.
  5666. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #3.
  5667. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  5668. 10:11:05 2B431700 Drvrs: CADS ST:
  5669. <nds dtdversion="1.1" ndsversion="8.7">
  5670. <source>
  5671. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  5672. <contact>NetIQ Corporation</contact>
  5673. </source>
  5674. <output>
  5675. <add-association dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">52b7c854d68c2a439be0bbb8fa597332<operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5676. <password-subscribe-status>
  5677. <association/>
  5678. </password-subscribe-status>
  5679. </operation-data>
  5680. </add-association>
  5681. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  5682. 10:11:05 2B431700 Drvrs: <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5683. <password-subscribe-status>
  5684. <association/>
  5685. </password-subscribe-status>
  5686. </operation-data>
  5687. </status>
  5688. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  5689. <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5690. <password-subscribe-status>
  5691. <association/>
  5692. </password-subscribe-status>
  5693. </operation-data>
  5694. </status>
  5695. </output>
  5696. </nds>
  5697. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLADDCFG-itp-FormatConversions.
  5698. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add-association #1.
  5699. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #2.
  5700. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #3.
  5701. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  5702. 10:11:05 2B431700 Drvrs: CADS ST:
  5703. <nds dtdversion="1.1" ndsversion="8.7">
  5704. <source>
  5705. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  5706. <contact>NetIQ Corporation</contact>
  5707. </source>
  5708. <output>
  5709. <add-association dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">52b7c854d68c2a439be0bbb8fa597332<operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5710. <password-subscribe-status>
  5711. <association/>
  5712. </password-subscribe-status>
  5713. </operation-data>
  5714. </add-association>
  5715. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  5716. 10:11:05 2B431700 Drvrs: <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5717. <password-subscribe-status>
  5718. <association/>
  5719. </password-subscribe-status>
  5720. </operation-data>
  5721. </status>
  5722. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  5723. <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5724. <password-subscribe-status>
  5725. <association/>
  5726. </password-subscribe-status>
  5727. </operation-data>
  5728. </status>
  5729. </output>
  5730. </nds>
  5731. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLPWDSYNC-itp-EmailOnFailedPwdSub.
  5732. 10:11:05 2B431700 Drvrs: CADS ST: Applying to add-association #1.
  5733. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #2.
  5734. 10:11:05 2B431700 Drvrs: CADS ST: Applying to status #3.
  5735. 10:11:05 2B431700 Drvrs: CADS ST:Policy returned:
  5736. 10:11:05 2B431700 Drvrs: CADS ST:
  5737. <nds dtdversion="1.1" ndsversion="8.7">
  5738. <source>
  5739. <product asn1id="" build="20170106_120000" instance="\ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS" version="4.0.2.1">AD</product>
  5740. <contact>NetIQ Corporation</contact>
  5741. </source>
  5742. <output>
  5743. <add-association dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233">52b7c854d68c2a439be0bbb8fa597332<operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5744. <password-subscribe-status>
  5745. <association/>
  5746. </password-subscribe-status>
  5747. </operation-data>
  5748. </add-association>
  5749. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  5750. 10:11:05 2B431700 Drvrs: <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5751. <password-subscribe-status>
  5752. <association/>
  5753. </password-subscribe-status>
  5754. </operation-data>
  5755. </status>
  5756. <status event-id="devserver01#20171016161104#1#1:4f1bc979-33b2-43bb-84ea-79c91b4fb233" level="success">
  5757. <operation-data AccountTracking-AccountStatusChanged="true" AccountTracking-AppAccountStatus="-" AccountTracking-IdvAccountStatus="I" AccountTracking-LDAPDN="cn=testuser,ou=FACSN users,ou=Academic Affairs Administration,OU=Units,DC=its,DC=cads,DC=ORG,DC=edu" AccountTracking-ObjectDN="\ORG-IDV\ORG\data\users\employees\testuser" AccountTracking-Operation="add" AccountTracking-sAMAccountName="testuser" AccountTracking-userPrincipalName="testuser@its.cads.ORG.edu" attempt-to-match="true" unmatched-src-dn="CN=testuser,OU=employees">
  5758. <password-subscribe-status>
  5759. <association/>
  5760. </password-subscribe-status>
  5761. </operation-data>
  5762. </status>
  5763. </output>
  5764. </nds>
  5765. 10:11:05 2B431700 Drvrs: CADS ST:Applying schema mapping policies to input.
  5766. 10:11:05 2B431700 Drvrs: CADS ST:Applying policy: NOVLADDCFG-smp.
  5767. 10:11:05 2B431700 Drvrs: CADS ST:Resolving association references.
  5768. 10:11:05 2B431700 Drvrs: CADS ST:Processing returned document.
  5769. 10:11:05 2B431700 Drvrs: CADS ST:Processing operation <add-association> for \ORG-IDV\ORG\data\users\employees\testuser.
  5770. 10:11:05 2B431700 Drvrs: CADS ST:Processing operation <status> for .
  5771. 10:11:05 2B431700 Drvrs: CADS ST:
  5772. DirXML Log Event -------------------
  5773. Driver: \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS
  5774. Channel: Subscriber
  5775. Object: \ORG-IDV\ORG\data\users\employees\testuser
  5776. Status: Success
  5777. 10:11:05 2B431700 Drvrs: CADS ST:Processing operation <status> for .
  5778. 10:11:05 2B431700 Drvrs: CADS ST:
  5779. DirXML Log Event -------------------
  5780. Driver: \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS
  5781. Channel: Subscriber
  5782. Object: \ORG-IDV\ORG\data\users\employees\testuser
  5783. Status: Success
  5784. 10:11:05 2B431700 Drvrs: CADS ST:Password synchronization event status recorded.
  5785. 10:11:05 2B431700 Drvrs: CADS ST:End transaction.
  5786. 10:11:05 29769700 Drvrs: ST:Start transaction.
  5787. 10:11:05 29769700 Drvrs: ST:Processing events for transaction.
  5788. 10:11:05 29769700 Drvrs: ST:
  5789. <nds dtdversion="4.0" ndsversion="8.x">
  5790. <source>
  5791. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  5792. <contact>NetIQ Corporation</contact>
  5793. </source>
  5794. <input>
  5795. <modify cached-time="20171016161105.639Z" class-name="User" event-id="devserver01#20171016161105#1#1:a96dbf54-0f2d-46db-b09f-54bf6da92d0f" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170265#6">
  5796. <association state="associated">{84B92AF9-895A-904e-861E-84B92AF9895A}</association>
  5797. <modify-attr attr-name="DirXML-PasswordSyncStatus">
  5798. <add-value>
  5799. <value timestamp="1508170265#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171016161105638000000000004</value>
  5800. </add-value>
  5801. <remove-value>
  5802. <value timestamp="1507928754#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171013210554007000000000004</value>
  5803. </remove-value>
  5804. </modify-attr>
  5805. </modify>
  5806. </input>
  5807. </nds>
  5808. 10:11:05 29769700 Drvrs: ST:Applying event transformation policies.
  5809. 10:11:05 29769700 Drvrs: ST:Applying policy: ORG-SubET-ScopingPolicies.
  5810. 10:11:05 29769700 Drvrs: ST: Applying to modify #1.
  5811. 10:11:05 29769700 Drvrs: ST: Evaluating selection criteria for rule 'User'.
  5812. 10:11:05 29769700 Drvrs: ST: (if-class-name equal "User") = TRUE.
  5813. 10:11:05 29769700 Drvrs: ST: (if-operation equal "move") = FALSE.
  5814. 10:11:05 29769700 Drvrs: ST: Rule rejected.
  5815. 10:11:05 29769700 Drvrs: ST: Evaluating selection criteria for rule 'Group'.
  5816. 10:11:05 29769700 Drvrs: ST: (if-class-name equal "Group") = FALSE.
  5817. 10:11:05 29769700 Drvrs: ST: Rule rejected.
  5818. 10:11:05 29769700 Drvrs: ST:Policy returned:
  5819. 10:11:05 29769700 Drvrs: ST:
  5820. <nds dtdversion="4.0" ndsversion="8.x">
  5821. <source>
  5822. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  5823. <contact>NetIQ Corporation</contact>
  5824. </source>
  5825. <input>
  5826. <modify cached-time="20171016161105.639Z" class-name="User" event-id="devserver01#20171016161105#1#1:a96dbf54-0f2d-46db-b09f-54bf6da92d0f" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170265#6">
  5827. <association state="associated">{84B92AF9-895A-904e-861E-84B92AF9895A}</association>
  5828. <modify-attr attr-name="DirXML-PasswordSyncStatus">
  5829. <add-value>
  5830. <value timestamp="1508170265#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171016161105638000000000004</value>
  5831. </add-value>
  5832. <remove-value>
  5833. <value timestamp="1507928754#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171013210554007000000000004</value>
  5834. </remove-value>
  5835. </modify-attr>
  5836. </modify>
  5837. </input>
  5838. </nds>
  5839. 10:11:05 29769700 Drvrs: ST:Applying policy: ORG-SubET-PassSyncTrigger.
  5840. 10:11:05 29769700 Drvrs: ST: Applying to modify #1.
  5841. 10:11:05 29769700 Drvrs: ST: Evaluating selection criteria for rule 'Trigger: PassSync'.
  5842. 10:11:05 29769700 Drvrs: ST: (if-operation equal "trigger") = FALSE.
  5843. 10:11:05 29769700 Drvrs: ST: Rule rejected.
  5844. 10:11:05 29769700 Drvrs: ST:Policy returned:
  5845. 10:11:05 29769700 Drvrs: ST:
  5846. <nds dtdversion="4.0" ndsversion="8.x">
  5847. <source>
  5848. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  5849. <contact>NetIQ Corporation</contact>
  5850. </source>
  5851. <input>
  5852. <modify cached-time="20171016161105.639Z" class-name="User" event-id="devserver01#20171016161105#1#1:a96dbf54-0f2d-46db-b09f-54bf6da92d0f" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170265#6">
  5853. <association state="associated">{84B92AF9-895A-904e-861E-84B92AF9895A}</association>
  5854. <modify-attr attr-name="DirXML-PasswordSyncStatus">
  5855. <add-value>
  5856. <value timestamp="1508170265#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171016161105638000000000004</value>
  5857. </add-value>
  5858. <remove-value>
  5859. <value timestamp="1507928754#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171013210554007000000000004</value>
  5860. </remove-value>
  5861. </modify-attr>
  5862. </modify>
  5863. </input>
  5864. </nds>
  5865. 10:11:05 29769700 Drvrs: ST:Applying policy: ORG-SubET-TriggerVetoAll.
  5866. 10:11:05 29769700 Drvrs: ST: Applying to modify #1.
  5867. 10:11:05 29769700 Drvrs: ST: Evaluating selection criteria for rule 'Trigger: Strip trigger'.
  5868. 10:11:05 29769700 Drvrs: ST: (if-operation equal "trigger") = FALSE.
  5869. 10:11:05 29769700 Drvrs: ST: Rule rejected.
  5870. 10:11:05 29769700 Drvrs: ST:Policy returned:
  5871. 10:11:05 29769700 Drvrs: ST:
  5872. <nds dtdversion="4.0" ndsversion="8.x">
  5873. <source>
  5874. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  5875. <contact>NetIQ Corporation</contact>
  5876. </source>
  5877. <input>
  5878. <modify cached-time="20171016161105.639Z" class-name="User" event-id="devserver01#20171016161105#1#1:a96dbf54-0f2d-46db-b09f-54bf6da92d0f" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170265#6">
  5879. <association state="associated">{84B92AF9-895A-904e-861E-84B92AF9895A}</association>
  5880. <modify-attr attr-name="DirXML-PasswordSyncStatus">
  5881. <add-value>
  5882. <value timestamp="1508170265#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171016161105638000000000004</value>
  5883. </add-value>
  5884. <remove-value>
  5885. <value timestamp="1507928754#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171013210554007000000000004</value>
  5886. </remove-value>
  5887. </modify-attr>
  5888. </modify>
  5889. </input>
  5890. </nds>
  5891. 10:11:05 29769700 Drvrs: ST:Subscriber processing modify for \ORG-IDV\ORG\data\users\employees\testuser.
  5892. 10:11:05 29769700 Drvrs: ST:Applying command transformation policies.
  5893. 10:11:05 29769700 Drvrs: ST:Applying policy: NOVLPWDSYNC-sub-ctp-TransformDistPwd.
  5894. 10:11:05 29769700 Drvrs: ST: Applying to modify #1.
  5895. 10:11:05 29769700 Drvrs: ST: Evaluating selection criteria for rule 'Convert adds of the nspmDistributionPassword attribute to password elements'.
  5896. 10:11:05 29769700 Drvrs: ST: (if-operation equal "add") = FALSE.
  5897. 10:11:05 29769700 Drvrs: ST: Rule rejected.
  5898. 10:11:05 29769700 Drvrs: ST: Evaluating selection criteria for rule 'Block modifies for failed password publish operations if reset password is false'.
  5899. 10:11:05 29769700 Drvrs: ST: (if-global-variable 'reset-external-password-on-failure' equal "false") = FALSE.
  5900. 10:11:05 29769700 Drvrs: ST: Rule rejected.
  5901. 10:11:05 29769700 Drvrs: ST: Evaluating selection criteria for rule 'Convert modifies of a nspmDistributionPassword attribute to a modify password operation'.
  5902. 10:11:05 29769700 Drvrs: ST: (if-operation equal "modify") = TRUE.
  5903. 10:11:05 29769700 Drvrs: ST: (if-op-attr 'nspmDistributionPassword' available) = FALSE.
  5904. 10:11:05 29769700 Drvrs: ST: Rule rejected.
  5905. 10:11:05 29769700 Drvrs: ST: Evaluating selection criteria for rule 'Block empty modify operations'.
  5906. 10:11:05 29769700 Drvrs: ST: (if-operation equal "modify") = TRUE.
  5907. 10:11:05 29769700 Drvrs: ST: (if-xpath not-true "modify-attr") = FALSE.
  5908. 10:11:05 29769700 Drvrs: ST: Rule rejected.
  5909. 10:11:05 29769700 Drvrs: ST:Policy returned:
  5910. 10:11:05 29769700 Drvrs: ST:
  5911. <nds dtdversion="4.0" ndsversion="8.x">
  5912. <source>
  5913. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  5914. <contact>NetIQ Corporation</contact>
  5915. </source>
  5916. <input>
  5917. <modify cached-time="20171016161105.639Z" class-name="User" event-id="devserver01#20171016161105#1#1:a96dbf54-0f2d-46db-b09f-54bf6da92d0f" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170265#6">
  5918. <association state="associated">{84B92AF9-895A-904e-861E-84B92AF9895A}</association>
  5919. <modify-attr attr-name="DirXML-PasswordSyncStatus">
  5920. <add-value>
  5921. <value timestamp="1508170265#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171016161105638000000000004</value>
  5922. </add-value>
  5923. <remove-value>
  5924. <value timestamp="1507928754#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171013210554007000000000004</value>
  5925. </remove-value>
  5926. </modify-attr>
  5927. </modify>
  5928. </input>
  5929. </nds>
  5930. 10:11:05 29769700 Drvrs: ST:Applying policy: NOVLPWDSYNC-sub-ctp-DefaultPwd.
  5931. 10:11:05 29769700 Drvrs: ST: Applying to modify #1.
  5932. 10:11:05 29769700 Drvrs: ST: Evaluating selection criteria for rule 'On User add, provide default password of ORGDefaultPassword if no password exists'.
  5933. 10:11:05 29769700 Drvrs: ST: (if-operation equal "add") = FALSE.
  5934. 10:11:05 29769700 Drvrs: ST: Rule rejected.
  5935. 10:11:05 29769700 Drvrs: ST:Policy returned:
  5936. 10:11:05 29769700 Drvrs: ST:
  5937. <nds dtdversion="4.0" ndsversion="8.x">
  5938. <source>
  5939. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  5940. <contact>NetIQ Corporation</contact>
  5941. </source>
  5942. <input>
  5943. <modify cached-time="20171016161105.639Z" class-name="User" event-id="devserver01#20171016161105#1#1:a96dbf54-0f2d-46db-b09f-54bf6da92d0f" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170265#6">
  5944. <association state="associated">{84B92AF9-895A-904e-861E-84B92AF9895A}</association>
  5945. <modify-attr attr-name="DirXML-PasswordSyncStatus">
  5946. <add-value>
  5947. <value timestamp="1508170265#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171016161105638000000000004</value>
  5948. </add-value>
  5949. <remove-value>
  5950. <value timestamp="1507928754#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171013210554007000000000004</value>
  5951. </remove-value>
  5952. </modify-attr>
  5953. </modify>
  5954. </input>
  5955. </nds>
  5956. 10:11:05 29769700 Drvrs: ST:Applying policy: NOVLPWDSYNC-sub-ctp-CheckPwdGCV.
  5957. 10:11:05 29769700 Drvrs: ST: Applying to modify #1.
  5958. 10:11:05 29769700 Drvrs: ST: Evaluating selection criteria for rule 'Block subscribing to passwords when objects are added'.
  5959. 10:11:05 29769700 Drvrs: ST: (if-global-variable 'enable-password-subscribe' equal "false") = FALSE.
  5960. 10:11:05 29769700 Drvrs: ST: Rule rejected.
  5961. 10:11:05 29769700 Drvrs: ST: Evaluating selection criteria for rule 'Block subscribing to password modifications'.
  5962. 10:11:05 29769700 Drvrs: ST: (if-global-variable 'enable-password-subscribe' equal "false") = FALSE.
  5963. 10:11:05 29769700 Drvrs: ST: Rule rejected.
  5964. 10:11:05 29769700 Drvrs: ST:Policy returned:
  5965. 10:11:05 29769700 Drvrs: ST:
  5966. <nds dtdversion="4.0" ndsversion="8.x">
  5967. <source>
  5968. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  5969. <contact>NetIQ Corporation</contact>
  5970. </source>
  5971. <input>
  5972. <modify cached-time="20171016161105.639Z" class-name="User" event-id="devserver01#20171016161105#1#1:a96dbf54-0f2d-46db-b09f-54bf6da92d0f" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170265#6">
  5973. <association state="associated">{84B92AF9-895A-904e-861E-84B92AF9895A}</association>
  5974. <modify-attr attr-name="DirXML-PasswordSyncStatus">
  5975. <add-value>
  5976. <value timestamp="1508170265#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171016161105638000000000004</value>
  5977. </add-value>
  5978. <remove-value>
  5979. <value timestamp="1507928754#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171013210554007000000000004</value>
  5980. </remove-value>
  5981. </modify-attr>
  5982. </modify>
  5983. </input>
  5984. </nds>
  5985. 10:11:05 29769700 Drvrs: ST:Applying policy: NOVLPWDSYNC-sub-ctp-AddPwdPayload.
  5986. 10:11:05 29769700 Drvrs: ST: Applying to modify #1.
  5987. 10:11:05 29769700 Drvrs: ST: Evaluating selection criteria for rule 'Add operation-data element to password subscribe operations'.
  5988. 10:11:05 29769700 Drvrs: ST: (if-operation equal "add") = FALSE.
  5989. 10:11:05 29769700 Drvrs: ST: (if-operation equal "modify-password") = FALSE.
  5990. 10:11:05 29769700 Drvrs: ST: Rule rejected.
  5991. 10:11:05 29769700 Drvrs: ST: Evaluating selection criteria for rule 'Add payload data to a reset password from a failed password publish operation'.
  5992. 10:11:05 29769700 Drvrs: ST: (if-operation equal "modify-password") = FALSE.
  5993. 10:11:05 29769700 Drvrs: ST: Rule rejected.
  5994. 10:11:05 29769700 Drvrs: ST: Evaluating selection criteria for rule 'Add payload data to password subscribe operations'.
  5995. 10:11:05 29769700 Drvrs: ST: (if-operation equal "add") = FALSE.
  5996. 10:11:05 29769700 Drvrs: ST: (if-operation equal "modify-password") = FALSE.
  5997. 10:11:05 29769700 Drvrs: ST: Rule rejected.
  5998. 10:11:05 29769700 Drvrs: ST:Policy returned:
  5999. 10:11:05 29769700 Drvrs: ST:
  6000. <nds dtdversion="4.0" ndsversion="8.x">
  6001. <source>
  6002. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  6003. <contact>NetIQ Corporation</contact>
  6004. </source>
  6005. <input>
  6006. <modify cached-time="20171016161105.639Z" class-name="User" event-id="devserver01#20171016161105#1#1:a96dbf54-0f2d-46db-b09f-54bf6da92d0f" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170265#6">
  6007. <association state="associated">{84B92AF9-895A-904e-861E-84B92AF9895A}</association>
  6008. <modify-attr attr-name="DirXML-PasswordSyncStatus">
  6009. <add-value>
  6010. <value timestamp="1508170265#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171016161105638000000000004</value>
  6011. </add-value>
  6012. <remove-value>
  6013. <value timestamp="1507928754#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171013210554007000000000004</value>
  6014. </remove-value>
  6015. </modify-attr>
  6016. </modify>
  6017. </input>
  6018. </nds>
  6019. 10:11:05 29769700 Drvrs: ST:Filtering out notification-only attributes.
  6020. 10:11:05 29769700 Drvrs: ST:Fixing up association references.
  6021. 10:11:05 29769700 Drvrs: ST:Applying schema mapping policies to output.
  6022. 10:11:05 29769700 Drvrs: ST:Applying policy: MappingRule.
  6023. 10:11:05 29769700 Drvrs: ST: No mapping for class-name 'User'.
  6024. 10:11:05 29769700 Drvrs: ST:No output transformation policies.
  6025. 10:11:05 29769700 Drvrs: ST:Submitting document to subscriber shim:
  6026. 10:11:05 29769700 Drvrs: ST:
  6027. <nds dtdversion="4.0" ndsversion="8.x">
  6028. <source>
  6029. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  6030. <contact>NetIQ Corporation</contact>
  6031. </source>
  6032. <input>
  6033. <modify cached-time="20171016161105.639Z" class-name="User" event-id="devserver01#20171016161105#1#1:a96dbf54-0f2d-46db-b09f-54bf6da92d0f" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170265#6">
  6034. <association state="associated">{84B92AF9-895A-904e-861E-84B92AF9895A}</association>
  6035. <modify-attr attr-name="DirXML-PasswordSyncStatus">
  6036. <add-value>
  6037. <value timestamp="1508170265#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171016161105638000000000004</value>
  6038. </add-value>
  6039. <remove-value>
  6040. <value timestamp="1507928754#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171013210554007000000000004</value>
  6041. </remove-value>
  6042. </modify-attr>
  6043. </modify>
  6044. </input>
  6045. </nds>
  6046. 10:11:05 29769700 Drvrs: ST:: Reusing connection.
  6047. 10:11:05 29769700 Drvrs: ST:: Sending...
  6048. 10:11:05 29769700 Drvrs: ST:
  6049. <nds dtdversion="4.0" ndsversion="8.x">
  6050. <source>
  6051. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  6052. <contact>NetIQ Corporation</contact>
  6053. </source>
  6054. <input>
  6055. <modify cached-time="20171016161105.639Z" class-name="User" event-id="devserver01#20171016161105#1#1:a96dbf54-0f2d-46db-b09f-54bf6da92d0f" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222" timestamp="1508170265#6">
  6056. <association state="associated">{84B92AF9-895A-904e-861E-84B92AF9895A}</association>
  6057. <modify-attr attr-name="DirXML-PasswordSyncStatus">
  6058. <add-value>
  6059. <value timestamp="1508170265#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171016161105638000000000004</value>
  6060. </add-value>
  6061. <remove-value>
  6062. <value timestamp="1507928754#6" type="string">22CA3222DC8D9A48803922CA3222DC8D20171013210554007000000000004</value>
  6063. </remove-value>
  6064. </modify-attr>
  6065. </modify>
  6066. </input>
  6067. </nds>
  6068. 10:11:05 29769700 Drvrs: ST:: Document sent.
  6069. 10:11:05 29769700 Drvrs: ST:: Waiting for receive...
  6070. 10:11:05 29769700 Drvrs: ST:: Received.
  6071. 10:11:05 29769700 Drvrs: ST:
  6072. <nds dtdversion="4.0" ndsversion="8.x">
  6073. <source>
  6074. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  6075. <contact>NetIQ Corporation</contact>
  6076. </source>
  6077. <input>
  6078. <query class-name="User" dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" event-id="0" scope="entry">
  6079. <association>{84B92AF9-895A-904e-861E-84B92AF9895A}</association>
  6080. <read-attr attr-name="ORGAccessORG"/>
  6081. <read-attr attr-name="ORGUserRole"/>
  6082. </query>
  6083. </input>
  6084. </nds>
  6085. 10:11:05 29769700 Drvrs: ST:Received query from subscriber shim.
  6086. 10:11:05 29769700 Drvrs: ST:
  6087. <nds dtdversion="4.0" ndsversion="8.x">
  6088. <source>
  6089. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  6090. <contact>NetIQ Corporation</contact>
  6091. </source>
  6092. <input>
  6093. <query class-name="User" dest-dn="\ORG-IDV\ORG\data\users\employees\testuser" dest-entry-id="342222" event-id="0" scope="entry">
  6094. <association>{84B92AF9-895A-904e-861E-84B92AF9895A}</association>
  6095. <read-attr attr-name="ORGAccessORG"/>
  6096. <read-attr attr-name="ORGUserRole"/>
  6097. </query>
  6098. </input>
  6099. </nds>
  6100. 10:11:05 29769700 Drvrs: ST:No input transformation policies.
  6101. 10:11:05 29769700 Drvrs: ST:Applying schema mapping policies to input.
  6102. 10:11:05 29769700 Drvrs: ST:Applying policy: MappingRule.
  6103. 10:11:05 29769700 Drvrs: ST: No mapping for class-name 'User'.
  6104. 10:11:05 29769700 Drvrs: ST:Resolving association references.
  6105. 10:11:05 29769700 Drvrs: ST:Pumping XDS to eDirectory.
  6106. 10:11:05 29769700 Drvrs: ST:Performing operation query for \ORG-IDV\ORG\data\users\employees\testuser.
  6107. 10:11:05 29769700 Drvrs: ST:--JCLNT-- \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-eDir-AUTH : Duplicating : context = 1955070586, tempContext = 1955071285
  6108. 10:11:05 29769700 Drvrs: ST:--JCLNT-- \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-eDir-AUTH : Calling free on tempContext = 1955071285
  6109. 10:11:05 29769700 Drvrs: ST:Fixing up association references.
  6110. 10:11:05 29769700 Drvrs: ST:Applying schema mapping policies to output.
  6111. 10:11:05 29769700 Drvrs: ST:Applying policy: MappingRule.
  6112. 10:11:05 29769700 Drvrs: ST: No mapping for class-name 'User'.
  6113. 10:11:05 29769700 Drvrs: ST:No output transformation policies.
  6114. 10:11:05 29769700 Drvrs: ST:
  6115. <nds dtdversion="4.0" ndsversion="8.x">
  6116. <source>
  6117. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  6118. <contact>NetIQ Corporation</contact>
  6119. </source>
  6120. <output>
  6121. <instance class-name="User" event-id="0" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222">
  6122. <association state="associated">{84B92AF9-895A-904e-861E-84B92AF9895A}</association>
  6123. <attr attr-name="ORGAccessORG">
  6124. <value timestamp="1496939376#26" type="string">B836Z049</value>
  6125. </attr>
  6126. <attr attr-name="ORGUserRole">
  6127. <value timestamp="1496939376#27" type="string">EMPL</value>
  6128. </attr>
  6129. </instance>
  6130. <status event-id="0" level="success"></status>
  6131. </output>
  6132. </nds>
  6133. 10:11:05 29769700 Drvrs: ST:: Sending...
  6134. 10:11:05 29769700 Drvrs: ST:
  6135. <nds dtdversion="4.0" ndsversion="8.x">
  6136. <source>
  6137. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  6138. <contact>NetIQ Corporation</contact>
  6139. </source>
  6140. <output>
  6141. <instance class-name="User" event-id="0" qualified-src-dn="O=ORG\OU=data\OU=users\OU=employees\CN=testuser" src-dn="\ORG-IDV\ORG\data\users\employees\testuser" src-entry-id="342222">
  6142. <association state="associated">{84B92AF9-895A-904e-861E-84B92AF9895A}</association>
  6143. <attr attr-name="ORGAccessORG">
  6144. <value timestamp="1496939376#26" type="string">B836Z049</value>
  6145. </attr>
  6146. <attr attr-name="ORGUserRole">
  6147. <value timestamp="1496939376#27" type="string">EMPL</value>
  6148. </attr>
  6149. </instance>
  6150. <status event-id="0" level="success"></status>
  6151. </output>
  6152. </nds>
  6153. 10:11:05 29769700 Drvrs: ST:: Document sent.
  6154. 10:11:05 29769700 Drvrs: ST:: Waiting for receive...
  6155. 10:11:05 29769700 Drvrs: ST:: Received.
  6156. 10:11:05 29769700 Drvrs: ST:
  6157. <nds dtdversion="4.0" ndsversion="8.x">
  6158. <source>
  6159. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  6160. <contact>NetIQ Corporation</contact>
  6161. </source>
  6162. <output>
  6163. <status event-id="devserver01#20171016161105#1#1:a96dbf54-0f2d-46db-b09f-54bf6da92d0f" level="success"><application>DirXML</application>
  6164. <module>ORG-eDir-IDV</module>
  6165. <object-dn>\ORG-IDV\ORG\data\users\employees\testuser (ORG\data\users\active\testuser)</object-dn>
  6166. <component>Publisher</component>
  6167. </status>
  6168. </output>
  6169. </nds>
  6170. 10:11:05 29769700 Drvrs: ST:SubscriptionShim.execute() returned:
  6171. 10:11:05 29769700 Drvrs: ST:
  6172. <nds dtdversion="4.0" ndsversion="8.x">
  6173. <source>
  6174. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  6175. <contact>NetIQ Corporation</contact>
  6176. </source>
  6177. <output>
  6178. <status event-id="devserver01#20171016161105#1#1:a96dbf54-0f2d-46db-b09f-54bf6da92d0f" level="success"><application>DirXML</application>
  6179. <module>ORG-eDir-IDV</module>
  6180. <object-dn>\ORG-IDV\ORG\data\users\employees\testuser (ORG\data\users\active\testuser)</object-dn>
  6181. <component>Publisher</component>
  6182. </status>
  6183. </output>
  6184. </nds>
  6185. 10:11:05 29769700 Drvrs: ST:No input transformation policies.
  6186. 10:11:05 29769700 Drvrs: ST:Applying schema mapping policies to input.
  6187. 10:11:05 29769700 Drvrs: ST:Applying policy: MappingRule.
  6188. 10:11:05 29769700 Drvrs: ST:Resolving association references.
  6189. 10:11:05 29769700 Drvrs: ST:Processing returned document.
  6190. 10:11:05 29769700 Drvrs: ST:Processing operation <status> for .
  6191. 10:11:05 29769700 Drvrs: ST:
  6192. DirXML Log Event -------------------
  6193. 10:11:11 2BA58700 Drvrs: CADS :Remote Interface Driver: Received.
  6194. 10:11:11 2BA58700 Drvrs: CADS :
  6195. <nds dtdversion="3.5" ndsversion="8.x">
  6196. <input>
  6197. <status event-id="report status" level="warning">Remote driver stopped</status>
  6198. <init-params event-id="write state">
  6199. <publisher-state>
  6200. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6201. </publisher-state>
  6202. </init-params>
  6203. </input>
  6204. </nds>
  6205. 10:11:11 2BA58700 Drvrs: CADS :Remote Interface Driver: Received document for publisher channel
  6206. 10:11:11 2BA58700 Drvrs: CADS :Remote Interface Driver: Waiting for receive...
  6207. 10:11:11 2CEF9700 Drvrs: CADS PT:Receiving DOM document from application.
  6208. 10:11:11 2BA58700 Drvrs: CADS :Remote Interface Driver: Closing connection...
  6209. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6210. <nds dtdversion="3.5" ndsversion="8.x">
  6211. <input>
  6212. <status event-id="report status" level="warning">Remote driver stopped</status>
  6213. <init-params event-id="write state">
  6214. <publisher-state>
  6215. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6216. </publisher-state>
  6217. </init-params>
  6218. </input>
  6219. </nds>
  6220. 10:11:11 2BA58700 Drvrs: CADS :Remote Interface Driver: Connection closed
  6221. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying input transformation policies.
  6222. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: ORG-otp-itp-inverse-disable.
  6223. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6224. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  6225. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule selected.
  6226. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying rule 'toggle dirxml-uACAccountDisable'.
  6227. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  6228. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to init-params #2.
  6229. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  6230. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule selected.
  6231. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying rule 'toggle dirxml-uACAccountDisable'.
  6232. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  6233. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6234. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6235. <nds dtdversion="3.5" ndsversion="8.x">
  6236. <input>
  6237. <status event-id="report status" level="warning">Remote driver stopped</status>
  6238. <init-params event-id="write state">
  6239. <publisher-state>
  6240. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6241. </publisher-state>
  6242. </init-params>
  6243. </input>
  6244. </nds>
  6245. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLADATRK-itp-Publish.
  6246. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6247. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to init-params #2.
  6248. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6249. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6250. <nds dtdversion="3.5" ndsversion="8.x">
  6251. <input>
  6252. <status event-id="report status" level="warning">Remote driver stopped</status>
  6253. <init-params event-id="write state">
  6254. <publisher-state>
  6255. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6256. </publisher-state>
  6257. </init-params>
  6258. </input>
  6259. </nds>
  6260. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: Scope.
  6261. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6262. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'Vetos adds and moves'.
  6263. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-operation match "add|modify|delete|rename|move") = FALSE.
  6264. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6265. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to init-params #2.
  6266. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'Vetos adds and moves'.
  6267. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-operation match "add|modify|delete|rename|move") = FALSE.
  6268. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6269. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6270. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6271. <nds dtdversion="3.5" ndsversion="8.x">
  6272. <input>
  6273. <status event-id="report status" level="warning">Remote driver stopped</status>
  6274. <init-params event-id="write state">
  6275. <publisher-state>
  6276. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6277. </publisher-state>
  6278. </init-params>
  6279. </input>
  6280. </nds>
  6281. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLADATRK-itp-WriteAccounts.
  6282. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6283. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to init-params #2.
  6284. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6285. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6286. <nds dtdversion="3.5" ndsversion="8.x">
  6287. <input>
  6288. <status event-id="report status" level="warning">Remote driver stopped</status>
  6289. <init-params event-id="write state">
  6290. <publisher-state>
  6291. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6292. </publisher-state>
  6293. </init-params>
  6294. </input>
  6295. </nds>
  6296. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLADDCFG-itp-SubscriberUserAdd.
  6297. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6298. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to init-params #2.
  6299. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6300. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6301. <nds dtdversion="3.5" ndsversion="8.x">
  6302. <input>
  6303. <status event-id="report status" level="warning">Remote driver stopped</status>
  6304. <init-params event-id="write state">
  6305. <publisher-state>
  6306. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6307. </publisher-state>
  6308. </init-params>
  6309. </input>
  6310. </nds>
  6311. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLADDCFG-itp-FormatConversions.
  6312. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6313. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to init-params #2.
  6314. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6315. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6316. <nds dtdversion="3.5" ndsversion="8.x">
  6317. <input>
  6318. <status event-id="report status" level="warning">Remote driver stopped</status>
  6319. <init-params event-id="write state">
  6320. <publisher-state>
  6321. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6322. </publisher-state>
  6323. </init-params>
  6324. </input>
  6325. </nds>
  6326. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLPWDSYNC-itp-EmailOnFailedPwdSub.
  6327. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6328. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to init-params #2.
  6329. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6330. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6331. <nds dtdversion="3.5" ndsversion="8.x">
  6332. <input>
  6333. <status event-id="report status" level="warning">Remote driver stopped</status>
  6334. <init-params event-id="write state">
  6335. <publisher-state>
  6336. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6337. </publisher-state>
  6338. </init-params>
  6339. </input>
  6340. </nds>
  6341. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying schema mapping policies to input.
  6342. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLADDCFG-smp.
  6343. 10:11:11 2CEF9700 Drvrs: CADS PT:Resolving association references.
  6344. 10:11:11 2CEF9700 Drvrs: CADS PT:Reading XML attribute vnd.nds.stream://ORG-IDV/ORG/services/ORG-VaultDriverSet/ORG-CADS#DirXML-DriverStorage.
  6345. 10:11:11 2CEF9700 Drvrs: CADS PT:Writing driver state.
  6346. 10:11:11 2CEF9700 Drvrs: CADS PT:Writing XML attribute vnd.nds.stream://ORG-IDV/ORG/services/ORG-VaultDriverSet/ORG-CADS#DirXML-DriverStorage.
  6347. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying event transformation policies.
  6348. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLADDCFG-pub-etp-HandleMovesAndRenames.
  6349. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6350. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to init-params #2.
  6351. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6352. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6353. <nds dtdversion="3.5" ndsversion="8.x">
  6354. <input>
  6355. <status event-id="report status" level="warning">Remote driver stopped</status>
  6356. <init-params event-id="write state">
  6357. <publisher-state>
  6358. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6359. </publisher-state>
  6360. </init-params>
  6361. </input>
  6362. </nds>
  6363. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying publisher filter.
  6364. 10:11:11 2CEF9700 Drvrs: CADS PT:Publisher processing status for .
  6365. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying command transformation policies.
  6366. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLADDCFG-pub-ctp-UserNameMap.
  6367. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6368. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6369. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6370. <nds dtdversion="3.5" ndsversion="8.x">
  6371. <input>
  6372. <status event-id="report status" level="warning">Remote driver stopped</status>
  6373. </input>
  6374. </nds>
  6375. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLPWDSYNC-pub-ctp-DefaultPwd.
  6376. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6377. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6378. 10/16/2017
  6379. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6380. <nds dtdversion="3.5" ndsversion="8.x">
  6381. <input>
  6382. <status event-id="report status" level="warning">Remote driver stopped</status>
  6383. </input>
  6384. </nds>
  6385. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLPWDSYNC-pub-ctp-CheckPwdGCV.
  6386. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6387. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6388. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6389. <nds dtdversion="3.5" ndsversion="8.x">
  6390. <input>
  6391. <status event-id="report status" level="warning">Remote driver stopped</status>
  6392. </input>
  6393. </nds>
  6394. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLPWDSYNC-pub-ctp-PublishDistPwd.
  6395. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6396. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6397. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6398. <nds dtdversion="3.5" ndsversion="8.x">
  6399. <input>
  6400. <status event-id="report status" level="warning">Remote driver stopped</status>
  6401. </input>
  6402. </nds>
  6403. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLPWDSYNC-pub-ctp-PublishNDSPwd.
  6404. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6405. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6406. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6407. <nds dtdversion="3.5" ndsversion="8.x">
  6408. <input>
  6409. <status event-id="report status" level="warning">Remote driver stopped</status>
  6410. </input>
  6411. </nds>
  6412. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLPWDSYNC-pub-ctp-AddPwdPayload.
  6413. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6414. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6415. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6416. <nds dtdversion="3.5" ndsversion="8.x">
  6417. <input>
  6418. <status event-id="report status" level="warning">Remote driver stopped</status>
  6419. </input>
  6420. </nds>
  6421. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLADATRK-pub-ctp-WriteAccountsOnAdds.
  6422. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6423. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6424. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6425. <nds dtdversion="3.5" ndsversion="8.x">
  6426. <input>
  6427. <status event-id="report status" level="warning">Remote driver stopped</status>
  6428. </input>
  6429. </nds>
  6430. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLADDCFG-pub-ctp.
  6431. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6432. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6433. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6434. <nds dtdversion="3.5" ndsversion="8.x">
  6435. <input>
  6436. <status event-id="report status" level="warning">Remote driver stopped</status>
  6437. </input>
  6438. </nds>
  6439. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying XSLT policy: NOVLADDCFG-pub-cts.
  6440. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6441. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6442. <nds dtdversion="3.5" ndsversion="8.x">
  6443. <input>
  6444. <status event-id="report status" level="warning">Remote driver stopped</status>
  6445. </input>
  6446. </nds>
  6447. 10:11:11 2CEF9700 Drvrs: CADS PT:Filtering out notification-only attributes.
  6448. 10:11:11 2CEF9700 Drvrs: CADS PT:Pumping XDS to eDirectory.
  6449. 10:11:11 2CEF9700 Drvrs: CADS PT:Performing operation status for .
  6450. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6451. DirXML Log Event -------------------
  6452. Driver: \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS
  6453. Channel: Publisher
  6454. Status: Warning
  6455. Message: Remote driver stopped
  6456. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying publisher filter.
  6457. 10:11:11 2CEF9700 Drvrs: CADS PT:Publisher processing init-params for .
  6458. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying command transformation policies.
  6459. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLADDCFG-pub-ctp-UserNameMap.
  6460. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to init-params #1.
  6461. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6462. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6463. <nds dtdversion="3.5" ndsversion="8.x">
  6464. <input>
  6465. <init-params event-id="write state">
  6466. <publisher-state>
  6467. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6468. </publisher-state>
  6469. </init-params>
  6470. </input>
  6471. </nds>
  6472. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLPWDSYNC-pub-ctp-DefaultPwd.
  6473. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to init-params #1.
  6474. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6475. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6476. <nds dtdversion="3.5" ndsversion="8.x">
  6477. <input>
  6478. <init-params event-id="write state">
  6479. <publisher-state>
  6480. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6481. </publisher-state>
  6482. </init-params>
  6483. </input>
  6484. </nds>
  6485. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLPWDSYNC-pub-ctp-CheckPwdGCV.
  6486. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to init-params #1.
  6487. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6488. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6489. <nds dtdversion="3.5" ndsversion="8.x">
  6490. <input>
  6491. <init-params event-id="write state">
  6492. <publisher-state>
  6493. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6494. </publisher-state>
  6495. </init-params>
  6496. </input>
  6497. </nds>
  6498. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLPWDSYNC-pub-ctp-PublishDistPwd.
  6499. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to init-params #1.
  6500. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6501. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6502. <nds dtdversion="3.5" ndsversion="8.x">
  6503. <input>
  6504. <init-params event-id="write state">
  6505. <publisher-state>
  6506. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6507. </publisher-state>
  6508. </init-params>
  6509. </input>
  6510. </nds>
  6511. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLPWDSYNC-pub-ctp-PublishNDSPwd.
  6512. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to init-params #1.
  6513. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6514. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6515. <nds dtdversion="3.5" ndsversion="8.x">
  6516. <input>
  6517. <init-params event-id="write state">
  6518. <publisher-state>
  6519. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6520. </publisher-state>
  6521. </init-params>
  6522. </input>
  6523. </nds>
  6524. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLPWDSYNC-pub-ctp-AddPwdPayload.
  6525. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to init-params #1.
  6526. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6527. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6528. <nds dtdversion="3.5" ndsversion="8.x">
  6529. <input>
  6530. <init-params event-id="write state">
  6531. <publisher-state>
  6532. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6533. </publisher-state>
  6534. </init-params>
  6535. </input>
  6536. </nds>
  6537. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLADATRK-pub-ctp-WriteAccountsOnAdds.
  6538. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to init-params #1.
  6539. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6540. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6541. <nds dtdversion="3.5" ndsversion="8.x">
  6542. <input>
  6543. <init-params event-id="write state">
  6544. <publisher-state>
  6545. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6546. </publisher-state>
  6547. </init-params>
  6548. </input>
  6549. </nds>
  6550. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLADDCFG-pub-ctp.
  6551. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to init-params #1.
  6552. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6553. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6554. <nds dtdversion="3.5" ndsversion="8.x">
  6555. <input>
  6556. <init-params event-id="write state">
  6557. <publisher-state>
  6558. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6559. </publisher-state>
  6560. </init-params>
  6561. </input>
  6562. </nds>
  6563. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying XSLT policy: NOVLADDCFG-pub-cts.
  6564. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6565. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6566. <nds dtdversion="3.5" ndsversion="8.x">
  6567. <input>
  6568. <init-params event-id="write state">
  6569. <publisher-state>
  6570. <cookie>TVNEUwMAAABap5wwmUbTAQAAAAAAAAAAQAAAAJ3SAwAAAAAAAAAAAAAAAACd0gMAAAAAAIA99CH9NfdHoFdStiQBtIcBAAAAAAAAAAIAAAAAAAAAgD30If0190egV1K2JAG0h53SAwAAAAAAHWAcqHV6lESauRh0hgTsTNIxAAAAAAAA</cookie>
  6571. </publisher-state>
  6572. </init-params>
  6573. </input>
  6574. </nds>
  6575. 10:11:11 2CEF9700 Drvrs: CADS PT:Filtering out notification-only attributes.
  6576. 10:11:11 2CEF9700 Drvrs: CADS PT:Pumping XDS to eDirectory.
  6577. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6578. DirXML Log Event -------------------
  6579. Driver: \ORG-IDV\ORG\services\ORG-VaultDriverSet\ORG-CADS
  6580. Channel: Publisher
  6581. Status: Success
  6582. 10:11:11 2CEF9700 Drvrs: CADS PT:Fixing up association references.
  6583. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying schema mapping policies to output.
  6584. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLADDCFG-smp.
  6585. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying output transformation policies.
  6586. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLADDCFG-otp-FormatConversions.
  6587. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6588. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'Street Address: Convert LF to CR-LF'.
  6589. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule selected.
  6590. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying rule 'Street Address: Convert LF to CR-LF'.
  6591. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-reformat-op-attr("streetAddress",token-replace-all("[^\r]\n","\r\n",token-local-variable("current-value"))).
  6592. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'logonHours: Convert to Active Directory form'.
  6593. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule selected.
  6594. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying rule 'logonHours: Convert to Active Directory form'.
  6595. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
  6596. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'accountExpires: Convert to Active Directory form'.
  6597. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-op-attr 'accountExpires' changing) = FALSE.
  6598. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6599. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'lockoutTime: Convert to Active Directory form'.
  6600. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-op-attr 'lockoutTime' available) = FALSE.
  6601. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6602. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'Add: User - convert multi-valued Telephone to single value'.
  6603. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-operation equal "add") = FALSE.
  6604. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6605. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'update Active Directory logon name'.
  6606. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-xpath true "self::status[@level = 'success']/operation-data/windows-2000-logon-name") = FALSE.
  6607. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6608. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #2.
  6609. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'Street Address: Convert LF to CR-LF'.
  6610. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule selected.
  6611. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying rule 'Street Address: Convert LF to CR-LF'.
  6612. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-reformat-op-attr("streetAddress",token-replace-all("[^\r]\n","\r\n",token-local-variable("current-value"))).
  6613. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'logonHours: Convert to Active Directory form'.
  6614. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule selected.
  6615. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying rule 'logonHours: Convert to Active Directory form'.
  6616. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
  6617. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'accountExpires: Convert to Active Directory form'.
  6618. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-op-attr 'accountExpires' changing) = FALSE.
  6619. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6620. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'lockoutTime: Convert to Active Directory form'.
  6621. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-op-attr 'lockoutTime' available) = FALSE.
  6622. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6623. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'Add: User - convert multi-valued Telephone to single value'.
  6624. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-operation equal "add") = FALSE.
  6625. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6626. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'update Active Directory logon name'.
  6627. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-xpath true "self::status[@level = 'success']/operation-data/windows-2000-logon-name") = FALSE.
  6628. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6629. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6630. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6631. <nds dtdversion="4.0" ndsversion="8.x">
  6632. <source>
  6633. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  6634. <contact>NetIQ Corporation</contact>
  6635. </source>
  6636. <output>
  6637. <status event-id="report status" level="success"></status>
  6638. <status event-id="write state" level="success"><application>DirXML</application>
  6639. <module>ORG-CADS</module>
  6640. <object-dn></object-dn>
  6641. <component>Publisher</component>
  6642. </status>
  6643. </output>
  6644. </nds>
  6645. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLADDCFG-otp-ExchangeEntitlementQuery.
  6646. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6647. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'Add dest-dn to the Exchange Entitlement Query'.
  6648. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-operation equal "query") = FALSE.
  6649. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6650. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #2.
  6651. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'Add dest-dn to the Exchange Entitlement Query'.
  6652. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-operation equal "query") = FALSE.
  6653. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6654. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6655. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6656. <nds dtdversion="4.0" ndsversion="8.x">
  6657. <source>
  6658. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  6659. <contact>NetIQ Corporation</contact>
  6660. </source>
  6661. <output>
  6662. <status event-id="report status" level="success"></status>
  6663. <status event-id="write state" level="success"><application>DirXML</application>
  6664. <module>ORG-CADS</module>
  6665. <object-dn></object-dn>
  6666. <component>Publisher</component>
  6667. </status>
  6668. </output>
  6669. </nds>
  6670. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLPWDSYNC-otp-EmailOnFailedPwdPub.
  6671. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6672. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'Send e-mail for a failed publish password operation'.
  6673. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-global-variable 'notify-user-on-password-dist-failure' equal "true") = TRUE.
  6674. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-operation equal "status") = TRUE.
  6675. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-xpath true "self::status[@level != 'success']/operation-data/password-publish-status") = FALSE.
  6676. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6677. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #2.
  6678. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'Send e-mail for a failed publish password operation'.
  6679. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-global-variable 'notify-user-on-password-dist-failure' equal "true") = TRUE.
  6680. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-operation equal "status") = TRUE.
  6681. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-xpath true "self::status[@level != 'success']/operation-data/password-publish-status") = FALSE.
  6682. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6683. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6684. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6685. <nds dtdversion="4.0" ndsversion="8.x">
  6686. <source>
  6687. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  6688. <contact>NetIQ Corporation</contact>
  6689. </source>
  6690. <output>
  6691. <status event-id="report status" level="success"></status>
  6692. <status event-id="write state" level="success"><application>DirXML</application>
  6693. <module>ORG-CADS</module>
  6694. <object-dn></object-dn>
  6695. <component>Publisher</component>
  6696. </status>
  6697. </output>
  6698. </nds>
  6699. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: NOVLADATRK-otp-Subscribe.
  6700. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6701. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'Do not process Account Tracking policies if modify with no source-dn '.
  6702. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-operation equal "modify") = FALSE.
  6703. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6704. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'AccountTracking - Initialize Realm Mapping'.
  6705. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-global-variable 'drv.acctTrk.enable' equal "true") = TRUE.
  6706. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  6707. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6708. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'AccountTracking - disregard if disabled or wrong object class'.
  6709. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule selected.
  6710. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying rule 'AccountTracking - disregard if disabled or wrong object class'.
  6711. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-if().
  6712. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating conditions.
  6713. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-global-variable 'drv.acctTrk.enable' not-equal "true") = FALSE.
  6714. 10:11:11 2CEF9700 Drvrs: CADS PT: Performing else actions.
  6715. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-for-each(arg-node-set(token-global-variable("drv.acctTrk.objectClass"))).
  6716. 10:11:11 2CEF9700 Drvrs: CADS PT: arg-node-set(token-global-variable("drv.acctTrk.objectClass"))
  6717. 10:11:11 2CEF9700 Drvrs: CADS PT: token-global-variable("drv.acctTrk.objectClass")
  6718. 10:11:11 2CEF9700 Drvrs: CADS PT: Token Value: {"user"}.
  6719. 10:11:11 2CEF9700 Drvrs: CADS PT: Arg Value: {"user"}.
  6720. 10:11:11 2CEF9700 Drvrs: CADS PT: Performing actions for local-variable(current-node) = "user".
  6721. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-if().
  6722. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating conditions.
  6723. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-class-name equal "$current-node$") = FALSE.
  6724. 10:11:11 2CEF9700 Drvrs: CADS PT: Performing else actions.
  6725. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-if().
  6726. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating conditions.
  6727. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-local-variable 'pass' not-available) = TRUE.
  6728. 10:11:11 2CEF9700 Drvrs: CADS PT: Performing if actions.
  6729. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-break().
  6730. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #2.
  6731. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'Do not process Account Tracking policies if modify with no source-dn '.
  6732. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-operation equal "modify") = FALSE.
  6733. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6734. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'AccountTracking - Initialize Realm Mapping'.
  6735. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-global-variable 'drv.acctTrk.enable' equal "true") = TRUE.
  6736. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-global-variable 'drv.acctTrk.mode' equal "fanout") = FALSE.
  6737. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule rejected.
  6738. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'AccountTracking - disregard if disabled or wrong object class'.
  6739. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule selected.
  6740. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying rule 'AccountTracking - disregard if disabled or wrong object class'.
  6741. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-if().
  6742. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating conditions.
  6743. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-global-variable 'drv.acctTrk.enable' not-equal "true") = FALSE.
  6744. 10:11:11 2CEF9700 Drvrs: CADS PT: Performing else actions.
  6745. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-for-each(arg-node-set(token-global-variable("drv.acctTrk.objectClass"))).
  6746. 10:11:11 2CEF9700 Drvrs: CADS PT: arg-node-set(token-global-variable("drv.acctTrk.objectClass"))
  6747. 10:11:11 2CEF9700 Drvrs: CADS PT: token-global-variable("drv.acctTrk.objectClass")
  6748. 10:11:11 2CEF9700 Drvrs: CADS PT: Token Value: {"user"}.
  6749. 10:11:11 2CEF9700 Drvrs: CADS PT: Arg Value: {"user"}.
  6750. 10:11:11 2CEF9700 Drvrs: CADS PT: Performing actions for local-variable(current-node) = "user".
  6751. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-if().
  6752. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating conditions.
  6753. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-class-name equal "$current-node$") = FALSE.
  6754. 10:11:11 2CEF9700 Drvrs: CADS PT: Performing else actions.
  6755. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-if().
  6756. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating conditions.
  6757. 10:11:11 2CEF9700 Drvrs: CADS PT: (if-local-variable 'pass' not-available) = TRUE.
  6758. 10:11:11 2CEF9700 Drvrs: CADS PT: Performing if actions.
  6759. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-break().
  6760. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6761. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6762. <nds dtdversion="4.0" ndsversion="8.x">
  6763. <source>
  6764. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  6765. <contact>NetIQ Corporation</contact>
  6766. </source>
  6767. <output>
  6768. <status event-id="report status" level="success"></status>
  6769. <status event-id="write state" level="success"><application>DirXML</application>
  6770. <module>ORG-CADS</module>
  6771. <object-dn></object-dn>
  6772. <component>Publisher</component>
  6773. </status>
  6774. </output>
  6775. </nds>
  6776. 10:11:11 2CEF9700 Drvrs: CADS PT:Applying policy: ORG-otp-itp-inverse-disable.
  6777. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #1.
  6778. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  6779. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule selected.
  6780. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying rule 'toggle dirxml-uACAccountDisable'.
  6781. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  6782. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying to status #2.
  6783. 10:11:11 2CEF9700 Drvrs: CADS PT: Evaluating selection criteria for rule 'toggle dirxml-uACAccountDisable'.
  6784. 10:11:11 2CEF9700 Drvrs: CADS PT: Rule selected.
  6785. 10:11:11 2CEF9700 Drvrs: CADS PT: Applying rule 'toggle dirxml-uACAccountDisable'.
  6786. 10:11:11 2CEF9700 Drvrs: CADS PT: Action: do-reformat-op-attr("dirxml-uACAccountDisable",token-xpath("string(string($current-value) = "false")")).
  6787. 10:11:11 2CEF9700 Drvrs: CADS PT:Policy returned:
  6788. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6789. <nds dtdversion="4.0" ndsversion="8.x">
  6790. <source>
  6791. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  6792. <contact>NetIQ Corporation</contact>
  6793. </source>
  6794. <output>
  6795. <status event-id="report status" level="success"></status>
  6796. <status event-id="write state" level="success"><application>DirXML</application>
  6797. <module>ORG-CADS</module>
  6798. <object-dn></object-dn>
  6799. <component>Publisher</component>
  6800. </status>
  6801. </output>
  6802. </nds>
  6803. 10:11:11 2CEF9700 Drvrs: CADS PT:
  6804. <nds dtdversion="4.0" ndsversion="8.x">
  6805. <source>
  6806. <product edition="Advanced" version="4.6.0.0">DirXML</product>
  6807. <contact>NetIQ Corporation</contact>
  6808. </source>
  6809. <output>
  6810. <status event-id="report status" level="success"></status>
  6811. <status event-id="write state" level="success"><application>DirXML</application>
  6812. <module>ORG-CADS</module>
  6813. <object-dn></object-dn>
  6814. <component>Publisher</component>
  6815. </status>
  6816. </output>
  6817. </nds>
  6818. 10:11:11 2CEF9700 Drvrs: CADS PT:Remote Interface Driver: Opening connection...
  6819. 10:11:11 2CEF9700 Drvrs: CADS PT:Remote Interface Driver: Creating an JSSEKmoFactory ServerSocket
  6820. 10:11:11 2B22F700 Drvrs: Manual Tasks PT:
  6821. DirXML Log Event -------------------
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement