We've recently noticed a new issue with our IDM environment -- at least
I think it's IDM that's causing this. When the properties of a user
object are changed, whether by the user (password change) or an admin
(password change, description field modified, etc) -- the user account
expires. Console One shows an expiration of 12/31/1969, but an LDAP
export shows it as 2/7/2106.
This doesn't happen every time, but it happens a lot.

Attached are two IDM L3 traces (prod-to-vault and vault-to-prod)
showing a user TIMS01 who just had this happen.


... I'm envisioning an evil genius somewhere saying "We replaced his
IDM environment with a Whack-a-mole game! Let's see how long it takes
him to go mad."

|Filename: tims01 logs.zip |
|Download: http://forums.novell.com/attachment....achmentid=3658 |

