Hi

I am seeing a problem, when I try to send account expires to AD
I have set up a Schema Map between Login Expiration Time and accountEpires.

However I recieve the following error in my trace.

Any cues?

17:26:29 6A679160 Drvrs: AD DRIVER ST: Start transaction.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Processing events for transaction.
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="3.0" ndsversion="8.x">
<source>
<product version="3.0.0.20051118 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="PARNWEDT02#20060525072413#1#2"
qualified-src-dn="O=IDENTITY\OU=INTERNAL\OU=ACTIVE\CN=Thur1test "
src-dn="\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test " src-entry-id="33174"
timestamp="1148541989#2">
<association state="associated">dea3c0890a752c479a47cc0786dc784 4</association>
<modify-attr attr-name="Login Expiration Time">
<remove-value>
<value timestamp="1148541853#2" type="time">1160488800</value>
</remove-value>
<add-value>
<value timestamp="1148541989#2" type="time">1159797600</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying event transformation policies.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying policy: Account Move Policy.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying to modify #1.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Dont Run if Not a User or Operation = ADD'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-class-name not-equal "User") =
FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "add") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Create Variable based on the OU the account resides in'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-class-name equal "User") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "move") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Move account to Expired Account in AD if lvrExpired = INACTIVE'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-local-variable 'lvrExpired'
equal "INACTIVE") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Move account to OU Based on FPdistinguished Name Attr is lvrExpired =
ACTIVE'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-local-variable 'lvrExpired'
equal "ACTIVE") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Check to see if FPdistinguishedName is Changing'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-class-name equal "User") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-op-attr 'FPDistinguishedName'
changing) = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Policy returned:
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="3.0" ndsversion="8.x">
<source>
<product version="3.0.0.20051118 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="PARNWEDT02#20060525072413#1#2"
qualified-src-dn="O=IDENTITY\OU=INTERNAL\OU=ACTIVE\CN=Thur1test "
src-dn="\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test " src-entry-id="33174"
timestamp="1148541989#2">
<association state="associated">dea3c0890a752c479a47cc0786dc784 4</association>
<modify-attr attr-name="Login Expiration Time">
<remove-value>
<value timestamp="1148541853#2" type="time">1160488800</value>
</remove-value>
<add-value>
<value timestamp="1148541989#2" type="time">1159797600</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying policy: User and Group
Creation Checks.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying to modify #1.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'USER : Check for FPDistinguisedName Attribute'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-class-name equal "User") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Query from policy
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="3.0" ndsversion="8.x">
<source>
<product version="3.0.0.20051118 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="User"
dest-dn="\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test "
dest-entry-id="33174" scope="entry">
<read-attr attr-name="FPDistinguishedName"/>
</query>
</input>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Pumping XDS to eDirectory.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Performing operation query for
\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Query from policy result
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="3.0" ndsversion="8.x">
<source>
<product version="3.0.0.20051118 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<instance class-name="User"
qualified-src-dn="O=IDENTITY\OU=INTERNAL\OU=ACTIVE\CN=Thur1test "
src-dn="\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test " src-entry-id="33174">
<association state="associated">dea3c0890a752c479a47cc0786dc784 4</association>
<attr attr-name="FPDistinguishedName">
<value timestamp="1148538856#20" type="string">CITY1</value>
</attr>
</instance>
<status level="success"></status>
</output>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-src-attr 'FPDistinguishedName'
not-available) = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Group : Check Group in Container ADGROUPS'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-class-name equal "Group") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Policy returned:
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="3.0" ndsversion="8.x">
<source>
<product version="3.0.0.20051118 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="PARNWEDT02#20060525072413#1#2"
qualified-src-dn="O=IDENTITY\OU=INTERNAL\OU=ACTIVE\CN=Thur1test "
src-dn="\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test " src-entry-id="33174"
timestamp="1148541989#2">
<association state="associated">dea3c0890a752c479a47cc0786dc784 4</association>
<modify-attr attr-name="Login Expiration Time">
<remove-value>
<value timestamp="1148541853#2" type="time">1160488800</value>
</remove-value>
<add-value>
<value timestamp="1148541989#2" type="time">1159797600</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Subscriber processing modify for
\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying command transformation
policies.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying policy: Group Attribute Check.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying to modify #1.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Add new user to associated groups'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "add") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Policy returned:
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="3.0" ndsversion="8.x">
<source>
<product version="3.0.0.20051118 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="PARNWEDT02#20060525072413#1#2"
qualified-src-dn="O=IDENTITY\OU=INTERNAL\OU=ACTIVE\CN=Thur1test "
src-dn="\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test " src-entry-id="33174"
timestamp="1148541989#2">
<association state="associated">dea3c0890a752c479a47cc0786dc784 4</association>
<modify-attr attr-name="Login Expiration Time">
<remove-value>
<value timestamp="1148541853#2" type="time">1160488800</value>
</remove-value>
<add-value>
<value timestamp="1148541989#2" type="time">1159797600</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying policy: Command.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying to modify #1.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Policy returned:
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="3.0" ndsversion="8.x">
<source>
<product version="3.0.0.20051118 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="PARNWEDT02#20060525072413#1#2"
qualified-src-dn="O=IDENTITY\OU=INTERNAL\OU=ACTIVE\CN=Thur1test "
src-dn="\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test " src-entry-id="33174"
timestamp="1148541989#2">
<association state="associated">dea3c0890a752c479a47cc0786dc784 4</association>
<modify-attr attr-name="Login Expiration Time">
<remove-value>
<value timestamp="1148541853#2" type="time">1160488800</value>
</remove-value>
<add-value>
<value timestamp="1148541989#2" type="time">1159797600</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying policy: 'A set of rules
that are executed when any one of the user name mapping options are selected.'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying to modify #1.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'consider user objects when name mapping is enabled'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-class-name not-equal "User") =
FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-global-variable 'FullNameMap'
equal "false") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'generate full name on merge'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-global-variable 'FullNameMap'
equal "true") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-xpath true
".[@from-merge='true']") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'map full name to destination object name'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-global-variable 'FullNameMap'
equal "true") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "modify") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-op-attr 'Full Name' available) =
FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'escape source object name'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "rename") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'map rename to NT logon name'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-global-variable 'LogonNameMap'
equal "true") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "rename") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'map rename to Active Directory logon name'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-global-variable 'UpnMap' equal
"edir-name-auth") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "rename") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'map e-mail address to Active Directory logon name'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-global-variable 'UpnMap' equal
"edir-mail-auth") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'unmap e-mail address from Active Directory logon name'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-global-variable 'UpnMap' equal
"edir-mail-auth") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'map e-mail address to Active Directory logon name on merge'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-global-variable 'UpnMap' equal
"edir-mail-auth") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'unmap e-mail address from Active Directory logon name on merge'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-global-variable 'UpnMap' equal
"edir-mail-auth") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'discard unwanted renames'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-global-variable 'FullNameMap'
equal "true") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "rename") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Policy returned:
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="3.0" ndsversion="8.x">
<source>
<product version="3.0.0.20051118 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="PARNWEDT02#20060525072413#1#2"
qualified-src-dn="O=IDENTITY\OU=INTERNAL\OU=ACTIVE\CN=Thur1test "
src-dn="\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test " src-entry-id="33174"
timestamp="1148541989#2">
<association state="associated">dea3c0890a752c479a47cc0786dc784 4</association>
<modify-attr attr-name="Login Expiration Time">
<remove-value>
<value timestamp="1148541853#2" type="time">1160488800</value>
</remove-value>
<add-value>
<value timestamp="1148541989#2" type="time">1159797600</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying policy: 'Transform NMAS
attribute to password elements'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying to modify #1.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Convert adds of the nspmDistributionPassword attribute to password
elements'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "add") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Block modifies for failed password publish operations if reset
password is false'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-global-variable
'reset-external-password-on-failure' equal "false") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "modify") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-xpath true
"modify-attr[@attr-name='nspmDistributionPassword' and
@failed-sync='true']") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Convert modifies of a nspmDistributionPassword attribute to a modify
password operation'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "modify") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-op-attr
'nspmDistributionPassword' available) = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Block empty modify operations'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "modify") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-xpath not-true "modify-attr") =
FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Policy returned:
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="3.0" ndsversion="8.x">
<source>
<product version="3.0.0.20051118 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="PARNWEDT02#20060525072413#1#2"
qualified-src-dn="O=IDENTITY\OU=INTERNAL\OU=ACTIVE\CN=Thur1test "
src-dn="\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test " src-entry-id="33174"
timestamp="1148541989#2">
<association state="associated">dea3c0890a752c479a47cc0786dc784 4</association>
<modify-attr attr-name="Login Expiration Time">
<remove-value>
<value timestamp="1148541853#2" type="time">1160488800</value>
</remove-value>
<add-value>
<value timestamp="1148541989#2" type="time">1159797600</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying policy:
Password(Sub)-Default Password Policy.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying to modify #1.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'On User add, provide default password of Surname if no password exists'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "add") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Policy returned:
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="3.0" ndsversion="8.x">
<source>
<product version="3.0.0.20051118 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="PARNWEDT02#20060525072413#1#2"
qualified-src-dn="O=IDENTITY\OU=INTERNAL\OU=ACTIVE\CN=Thur1test "
src-dn="\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test " src-entry-id="33174"
timestamp="1148541989#2">
<association state="associated">dea3c0890a752c479a47cc0786dc784 4</association>
<modify-attr attr-name="Login Expiration Time">
<remove-value>
<value timestamp="1148541853#2" type="time">1160488800</value>
</remove-value>
<add-value>
<value timestamp="1148541989#2" type="time">1159797600</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying policy: 'Subscribe to
password changes'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying to modify #1.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Block subscribing to passwords when objects are added'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-global-variable
'enable-password-subscribe' equal "false") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Block subscribing to password modifications'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-global-variable
'enable-password-subscribe' equal "false") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Policy returned:
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="3.0" ndsversion="8.x">
<source>
<product version="3.0.0.20051118 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="PARNWEDT02#20060525072413#1#2"
qualified-src-dn="O=IDENTITY\OU=INTERNAL\OU=ACTIVE\CN=Thur1test "
src-dn="\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test " src-entry-id="33174"
timestamp="1148541989#2">
<association state="associated">dea3c0890a752c479a47cc0786dc784 4</association>
<modify-attr attr-name="Login Expiration Time">
<remove-value>
<value timestamp="1148541853#2" type="time">1160488800</value>
</remove-value>
<add-value>
<value timestamp="1148541989#2" type="time">1159797600</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying policy: 'Payloads for
subscribe to password changes'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying to modify #1.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Add operation-data element to password subscribe operations'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "add") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal
"modify-password") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Add payload data to a reset password from a failed password publish
operation'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal
"modify-password") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Add payload data to password subscribe operations'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "add") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal
"modify-password") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Policy returned:
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="3.0" ndsversion="8.x">
<source>
<product version="3.0.0.20051118 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="PARNWEDT02#20060525072413#1#2"
qualified-src-dn="O=IDENTITY\OU=INTERNAL\OU=ACTIVE\CN=Thur1test "
src-dn="\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test " src-entry-id="33174"
timestamp="1148541989#2">
<association state="associated">dea3c0890a752c479a47cc0786dc784 4</association>
<modify-attr attr-name="Login Expiration Time">
<remove-value>
<value timestamp="1148541853#2" type="time">1160488800</value>
</remove-value>
<add-value>
<value timestamp="1148541989#2" type="time">1159797600</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Filtering out notification-only
attributes.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Fixing up association references.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying schema mapping policies to
output.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Mapping attr-name 'Login Expiration
Time' to 'accountExpires'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Mapping class-name 'User' to 'user'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying output transformation policies.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying policy: 'Convert selected
attributes to a form most commonly used in Active Directory.'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying to modify #1.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Street Address: Convert LF to CR-LF'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule selected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying rule 'Street Address:
Convert LF to CR-LF'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("[^\r]\n","\r\n",token-local-variable("current-value"))).
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'logonHours: Convert to Active Directory form'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule selected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying rule 'logonHours: Convert
to Active Directory form'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'accountExpires: Convert to Active Directory form'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule selected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying rule 'accountExpires:
Convert to Active Directory form'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
17:26:29 6A679160 Drvrs: AD DRIVER ST:
arg-string(token-xpath("jadutil:translateEpoch2FileTime($current-value)"))
17:26:29 6A679160 Drvrs: AD DRIVER ST:
token-xpath("jadutil:translateEpoch2FileTime($current-value)")
17:26:29 6A679160 Drvrs: AD DRIVER ST: Token Value: "128049624000000000".
17:26:29 6A679160 Drvrs: AD DRIVER ST: Arg Value: "128049624000000000".
17:26:29 6A679160 Drvrs: AD DRIVER ST:
arg-string(token-xpath("jadutil:translateEpoch2FileTime($current-value)"))
17:26:29 6A679160 Drvrs: AD DRIVER ST:
token-xpath("jadutil:translateEpoch2FileTime($current-value)")
17:26:29 6A679160 Drvrs: AD DRIVER ST: Token Value: "128042712000000000".
17:26:29 6A679160 Drvrs: AD DRIVER ST: Arg Value: "128042712000000000".
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'lockoutTime: Convert to Active Directory form'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule selected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying rule 'lockoutTime: Convert
to Active Directory form'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Action:
do-reformat-op-attr("lockoutTime",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Add: User - convert multi-valued Telephone to single value'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "add") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'update Active Directory logon name'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-xpath true "self::status[@level
= 'success']/operation-data/windows-2000-logon-name") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Policy returned:
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="3.0" ndsversion="8.x">
<source>
<product version="3.0.0.20051118 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="user" event-id="PARNWEDT02#20060525072413#1#2"
qualified-src-dn="O=IDENTITY\OU=INTERNAL\OU=ACTIVE\CN=Thur1test "
src-dn="\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test " src-entry-id="33174"
timestamp="1148541989#2">
<association state="associated">dea3c0890a752c479a47cc0786dc784 4</association>
<modify-attr attr-name="accountExpires">
<remove-value>
<value type="octet">128049624000000000</value>
</remove-value>
<add-value>
<value type="octet">128042712000000000</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying policy: 'Email
notifications for failed password publications'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying to modify #1.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Send e-mail for a failed publish password operation'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "status") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Policy returned:
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="3.0" ndsversion="8.x">
<source>
<product version="3.0.0.20051118 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="user" event-id="PARNWEDT02#20060525072413#1#2"
qualified-src-dn="O=IDENTITY\OU=INTERNAL\OU=ACTIVE\CN=Thur1test "
src-dn="\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test " src-entry-id="33174"
timestamp="1148541989#2">
<association state="associated">dea3c0890a752c479a47cc0786dc784 4</association>
<modify-attr attr-name="accountExpires">
<remove-value>
<value type="octet">128049624000000000</value>
</remove-value>
<add-value>
<value type="octet">128042712000000000</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Submitting document to subscriber shim:
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="3.0" ndsversion="8.x">
<source>
<product version="3.0.0.20051118 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="user" event-id="PARNWEDT02#20060525072413#1#2"
qualified-src-dn="O=IDENTITY\OU=INTERNAL\OU=ACTIVE\CN=Thur1test "
src-dn="\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test " src-entry-id="33174"
timestamp="1148541989#2">
<association state="associated">dea3c0890a752c479a47cc0786dc784 4</association>
<modify-attr attr-name="accountExpires">
<remove-value>
<value type="octet">128049624000000000</value>
</remove-value>
<add-value>
<value type="octet">128042712000000000</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Remote Interface Driver: Sending...
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="3.0" ndsversion="8.x">
<source>
<product version="3.0.0.20051118 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="user" event-id="PARNWEDT02#20060525072413#1#2"
qualified-src-dn="O=IDENTITY\OU=INTERNAL\OU=ACTIVE\CN=Thur1test "
src-dn="\OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test " src-entry-id="33174"
timestamp="1148541989#2">
<association state="associated">dea3c0890a752c479a47cc0786dc784 4</association>
<modify-attr attr-name="accountExpires">
<remove-value>
<value type="octet">128049624000000000</value>
</remove-value>
<add-value>
<value type="octet">128042712000000000</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Remote Interface Driver: Document sent.
17:26:29 65C11260 Drvrs: AD DRIVER : Remote Interface Driver: Received.
17:26:29 65C11260 Drvrs: AD DRIVER :
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20051114_120000"
instance="\OSR_VTEST\ADMIN\IDMDriverSet\Active Directory"
version="3.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="PARNWEDT02#20060525072413#1#2" level="error"
type="driver-general">
<ldap-err ldap-rc="20" ldap-rc-name="LDAP_ATTRIBUTE_OR_VALUE_EXISTS">
<client-err ldap-rc="20"
ldap-rc-name="LDAP_ATTRIBUTE_OR_VALUE_EXISTS">Attribute Or Value
Exists</client-err>
<server-err>0000207E: AtrErr: DSID-03190617, #1:
0: 0000207E: DSID-03190617, problem 1006 (ATT_OR_VALUE_EXISTS), data 0,
Att 9009f (accountExpires)
</server-err>
<server-err-ex win32-rc="8318"/>
</ldap-err>
</status>
</output>
</nds>
17:26:29 65C11260 Drvrs: AD DRIVER : Remote Interface Driver: Received
document for subscriber channel
17:26:29 65C11260 Drvrs: AD DRIVER : Remote Interface Driver: Waiting for
receive...
17:26:29 6A679160 Drvrs: AD DRIVER ST: SubscriptionShim.execute() returned:
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20051114_120000"
instance="\OSR_VTEST\ADMIN\IDMDriverSet\Active Directory"
version="3.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="PARNWEDT02#20060525072413#1#2" level="error"
type="driver-general">
<ldap-err ldap-rc="20" ldap-rc-name="LDAP_ATTRIBUTE_OR_VALUE_EXISTS">
<client-err ldap-rc="20"
ldap-rc-name="LDAP_ATTRIBUTE_OR_VALUE_EXISTS">Attribute Or Value
Exists</client-err>
<server-err>0000207E: AtrErr: DSID-03190617, #1:
0: 0000207E: DSID-03190617, problem 1006 (ATT_OR_VALUE_EXISTS), data 0,
Att 9009f (accountExpires)
</server-err>
<server-err-ex win32-rc="8318"/>
</ldap-err>
</status>
</output>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying input transformation policies.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying policy: 'Convert selected
attributes to a form most commonly used in the Identity Vault.'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying to status #1.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'streetAddress: Convert CR-LF to LF'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule selected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying rule 'streetAddress:
Convert CR-LF to LF'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("\r\n","\r",token-local-variable("current-value"))).
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'logonHours: Convert to Login Allowed Time Map form'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule selected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying rule 'logonHours: Convert
to Login Allowed Time Map form'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2eDir($current-value)")).
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'accountExpires: Convert to Identity Vault time format'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule selected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying rule 'accountExpires:
Convert to Identity Vault time format'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateFileTime2Epoch($current-value)")).
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'lockoutTime: Convert to Identity Vault time format'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule selected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying rule 'lockoutTime: Convert
to Identity Vault time format'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Action:
do-reformat-op-attr("lockoutTime",token-xpath("jadutil:translateFileTime2Epoch($current-value)")).
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Check target of add-association for group membership entitlements'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal
"add-association") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Policy returned:
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20051114_120000"
instance="\OSR_VTEST\ADMIN\IDMDriverSet\Active Directory"
version="3.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="PARNWEDT02#20060525072413#1#2" level="error"
type="driver-general">
<ldap-err ldap-rc="20" ldap-rc-name="LDAP_ATTRIBUTE_OR_VALUE_EXISTS">
<client-err ldap-rc="20"
ldap-rc-name="LDAP_ATTRIBUTE_OR_VALUE_EXISTS">Attribute Or Value
Exists</client-err>
<server-err>0000207E: AtrErr: DSID-03190617, #1:
0: 0000207E: DSID-03190617, problem 1006 (ATT_OR_VALUE_EXISTS), data 0,
Att 9009f (accountExpires)
</server-err>
<server-err-ex win32-rc="8318"/>
</ldap-err>
</status>
</output>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying policy: 'Email
notifications for failed password subscriptions'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying to status #1.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Send e-mail on a failure when subscribing to passwords'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "status") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-xpath true "self::status[@level
!= 'success'][text() !=
'']/operation-data/password-subscribe-status/association[text() != '']") =
FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Evaluating selection criteria for
rule 'Send e-mail on failure to reset connected system password using the
Identity Manager data store password'.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-operation equal "status") = TRUE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: (if-xpath true "self::status[@level
!= 'success']/operation-data/password-reset-status") = FALSE.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Rule rejected.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Policy returned:
17:26:29 6A679160 Drvrs: AD DRIVER ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20051114_120000"
instance="\OSR_VTEST\ADMIN\IDMDriverSet\Active Directory"
version="3.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="PARNWEDT02#20060525072413#1#2" level="error"
type="driver-general">
<ldap-err ldap-rc="20" ldap-rc-name="LDAP_ATTRIBUTE_OR_VALUE_EXISTS">
<client-err ldap-rc="20"
ldap-rc-name="LDAP_ATTRIBUTE_OR_VALUE_EXISTS">Attribute Or Value
Exists</client-err>
<server-err>0000207E: AtrErr: DSID-03190617, #1:
0: 0000207E: DSID-03190617, problem 1006 (ATT_OR_VALUE_EXISTS), data 0,
Att 9009f (accountExpires)
</server-err>
<server-err-ex win32-rc="8318"/>
</ldap-err>
</status>
</output>
</nds>
17:26:29 6A679160 Drvrs: AD DRIVER ST: Applying schema mapping policies to
input.
Thursday, 25 May 2006
17:26:29 6A679160 Drvrs: AD DRIVER ST: Resolving association references.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Processing returned document.
17:26:29 6A679160 Drvrs: AD DRIVER ST: Processing operation <status> for .
17:26:29 6A679160 Drvrs: AD DRIVER ST:
DirXML Log Event -------------------
Driver: \OSR_VTEST\ADMIN\IDMDriverSet\Active Directory
Channel: Subscriber
Object: \OSR_VTEST\IDENTITY\INTERNAL\ACTIVE\Thur1test
Status: Error
Message: <ldap-err ldap-rc="20" ldap-rc-name="LDAP_ATTRIBUTE_OR_VALUE_EXISTS">
<client-err ldap-rc="20"
ldap-rc-name="LDAP_ATTRIBUTE_OR_VALUE_EXISTS">Attribute Or Value
Exists</client-err>
<server-err>0000207E: AtrErr: DSID-03190617, #1:
0: 0000207E: DSID-03190617, problem 1006 (ATT_OR_VALUE_EXISTS), data 0,
Att 9009f (accountExpires)
</server-err>
<server-err-ex win32-rc="8318"/>
</ldap-err>
17:26:29 6A679160 Drvrs: AD DRIVER ST: End transaction.