IBM Verify

IBM Verify

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only

Custom Rule for Inactive Accounts and Attribute Mapping in ISVG

  • 1.  Custom Rule for Inactive Accounts and Attribute Mapping in ISVG

    Posted Mon January 06, 2025 05:09 AM

    Dears,
    I am currently working on creating a custom rule in ISVG (version 10.0.1.4) to identify accounts that have not logged into the target application for over three months in ISVG. I have developed this adapter and I'm sure that I retrieve the Last Login attribute from the target system. In the IGA Core under the PWDMANAGEMENT table, I can only see the account code, but the Last Login attribute and other attributes are not visible.
    However, when I check the ITIMUSER.IB_RE_USERS table, I see all attributes in the SERIALIZED_VALUE column, including the Last Login attribute. 
    I reviewed the mapping in the Read-From and Write-To configurations and found the attribute was not mapped.
    I mapped it correctly, but the Last Login value and other attributes still do not appear in the PWDMANAGEMENT table.
    Has anyone faced a similar issue or have suggestions on what might be causing this?



    ------------------------------
    Alaa Elfiky
    ------------------------------