Guys,

I tried to assign user into group in AD, it was successful with default
driver. But when I put that policy in my driver, it not work.

I have reviewed the trace log, it did add destination value in group, but
it did not in AD.

I post policy and trace lv3 for you guys to help me verify the problem.

=======================================
this is my policy in command transform


<rule>
<description>ax Assign user to INTERNET group</description>
<conditions>
<or>
<if-class-name mode="nocase" op="equal">User</if-class-name>
</or>
<or>
<if-op-attr mode="nocase" name="xxxaxADInternetFlag"
op="equal">1</if-op-attr>
<if-attr mode="nocase" name="xxxaxADInternetFlag"
op="equal">1</if-attr>
</or>
</conditions>
<actions>
<do-add-dest-attr-value class-name="Group" name="Member">
<arg-dn>
<token-text
xml:space="preserve">cn=internet,ou=commongroups,d c=ax-core,dc=ax,dc=xxx,dc=net</token-text>
</arg-dn>
<arg-value type="string">
<token-text
xml:space="preserve">cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net</token-text>
</arg-value>
</do-add-dest-attr-value>
</actions>
</rule>


==================================
Trace lv3


[12/05/07 18:34:12.418]:AD-IDM-CORE-AX ST:Start transaction.
[12/05/07 18:34:12.418]:AD-IDM-CORE-AX ST:Processing events for
transaction.
[12/05/07 18:34:12.419]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User" event-id="skidmqed1jp#20071205093412#1#1"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003"
timestamp="1196847252#13">
<add-attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</add-attr>
<add-attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</add-attr>
<add-attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</add-attr>
<add-attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</add-attr>
<add-attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</add-attr>
<add-attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</add-attr>
</add>
</input>
</nds>
[12/05/07 18:34:12.429]:AD-IDM-CORE-AX ST:No event transformation policies.
[12/05/07 18:34:12.429]:AD-IDM-CORE-AX ST:Subscriber processing add for
xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004.
[12/05/07 18:34:12.430]:AD-IDM-CORE-AX ST:Applying object matching
policies.
[12/05/07 18:34:12.430]:AD-IDM-CORE-AX ST:Applying policy: %+C%14C'Find
matching object in Active Directory'%-C.
[12/05/07 18:34:12.431]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:12.431]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'remember relative position in hierarchy'.
[12/05/07 18:34:12.431]:AD-IDM-CORE-AX ST: (if-src-dn in-subtree
"JP") = TRUE.
[12/05/07 18:34:12.432]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.432]:AD-IDM-CORE-AX ST: Applying rule 'remember
relative position in hierarchy'.
[12/05/07 18:34:12.432]:AD-IDM-CORE-AX ST: Action:
do-set-op-property("unmatched-src-dn",token-unmatched-src-dn(convert="true")).
[12/05/07 18:34:12.432]:AD-IDM-CORE-AX ST:
arg-string(token-unmatched-src-dn(convert="true"))
[12/05/07 18:34:12.433]:AD-IDM-CORE-AX ST:
token-unmatched-src-dn(convert="true")
[12/05/07 18:34:12.433]:AD-IDM-CORE-AX ST: Token Value:
"CN=1ad00004,OU=Employees,OU=xxxKK".
[12/05/07 18:34:12.433]:AD-IDM-CORE-AX ST: Arg Value:
"CN=1ad00004,OU=Employees,OU=xxxKK".
[12/05/07 18:34:12.434]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'veto out-of-scope events'.
[12/05/07 18:34:12.434]:AD-IDM-CORE-AX ST: (if-op-property
'unmatched-src-dn' not-available) = FALSE.
[12/05/07 18:34:12.434]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.435]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'generate full name if not in Identity Vault'.
[12/05/07 18:34:12.435]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.435]:AD-IDM-CORE-AX ST: (if-global-variable
'FullNameMap' equal "true") = FALSE.
[12/05/07 18:34:12.435]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.436]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'match users based on NT logon name'.
[12/05/07 18:34:12.436]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.436]:AD-IDM-CORE-AX ST: (if-global-variable
'LogonNameMap' equal "true") = FALSE.
[12/05/07 18:34:12.436]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.436]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'match users based on full name'.
[12/05/07 18:34:12.437]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.437]:AD-IDM-CORE-AX ST: (if-global-variable
'FullNameMap' equal "true") = FALSE.
[12/05/07 18:34:12.437]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.437]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX match user based on xxxADUsername'.
[12/05/07 18:34:12.438]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.438]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.438]:AD-IDM-CORE-AX ST: Applying rule 'AX match user
based on xxxADUsername'.
[12/05/07 18:34:12.438]:AD-IDM-CORE-AX ST: Action:
do-find-matching-object(scope="entry",arg-dn("cn="+token-op-attr("xxxADUsername")+",ou=GP1,ou=Users,ou="+token-op-attr("xxxCompanyCode")+","+token-global-variable("gcvDomainName"))).
[12/05/07 18:34:12.439]:AD-IDM-CORE-AX ST:
arg-dn("cn="+token-op-attr("xxxADUsername")+",ou=GP1,ou=Users,ou="+token-op-attr("xxxCompanyCode")+","+token-global-variable("gcvDomainName"))
[12/05/07 18:34:12.439]:AD-IDM-CORE-AX ST: token-text("cn=")
[12/05/07 18:34:12.439]:AD-IDM-CORE-AX ST:
token-op-attr("xxxADUsername")
[12/05/07 18:34:12.440]:AD-IDM-CORE-AX ST: Token Value:
"1ad00004".
[12/05/07 18:34:12.440]:AD-IDM-CORE-AX ST:
token-text(",ou=GP1,ou=Users,ou=")
[12/05/07 18:34:12.440]:AD-IDM-CORE-AX ST:
token-op-attr("xxxCompanyCode")
[12/05/07 18:34:12.440]:AD-IDM-CORE-AX ST: Token Value: "xxxKK".
[12/05/07 18:34:12.440]:AD-IDM-CORE-AX ST: token-text(",")
[12/05/07 18:34:12.445]:AD-IDM-CORE-AX ST:
token-global-variable("gcvDomainName")
[12/05/07 18:34:12.445]:AD-IDM-CORE-AX ST: Token Value:
"dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET".
[12/05/07 18:34:12.445]:AD-IDM-CORE-AX ST: Arg Value:
"cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET".
[12/05/07 18:34:12.445]:AD-IDM-CORE-AX ST: Query from policy
[12/05/07 18:34:12.446]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="User"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
scope="entry">
<search-class class-name="User"/>
<read-attr/>
</query>
</input>
</nds>
[12/05/07 18:34:12.447]:AD-IDM-CORE-AX ST: Fixing up association
references.
[12/05/07 18:34:12.447]:AD-IDM-CORE-AX ST: Applying schema mapping
policies to output.
[12/05/07 18:34:12.447]:AD-IDM-CORE-AX ST: Applying policy:
%+C%14CSchemaMapping%-C.
[12/05/07 18:34:12.447]:AD-IDM-CORE-AX ST: Mapping class-name
'User' to 'user'.
[12/05/07 18:34:12.447]:AD-IDM-CORE-AX ST: Mapping class-name
'User' to 'user'.
[12/05/07 18:34:12.448]:AD-IDM-CORE-AX ST: Applying output
transformation policies.
[12/05/07 18:34:12.448]:AD-IDM-CORE-AX ST: Applying policy:
%+C%14C'Convert selected attributes to a form most commonly used in Active
Directory.'%-C.
[12/05/07 18:34:12.448]:AD-IDM-CORE-AX ST: Applying to query #1.
[12/05/07 18:34:12.449]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Street Address: Convert LF to CR-LF'.
[12/05/07 18:34:12.449]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.449]:AD-IDM-CORE-AX ST: Applying rule
'Street Address: Convert LF to CR-LF'.
[12/05/07 18:34:12.449]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("[^r]n","rn",token-local-variable("current-value"))).
[12/05/07 18:34:12.450]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'logonHours: Convert to Active Directory form'.
[12/05/07 18:34:12.450]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.450]:AD-IDM-CORE-AX ST: Applying rule
'logonHours: Convert to Active Directory form'.
[12/05/07 18:34:12.451]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
[12/05/07 18:34:12.451]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:12.451]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.452]:AD-IDM-CORE-AX ST: Applying rule
'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:12.452]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:12.452]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'lockoutTime: Convert to Active Directory form'.
[12/05/07 18:34:12.452]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.457]:AD-IDM-CORE-AX ST: Applying rule
'lockoutTime: Convert to Active Directory form'.
[12/05/07 18:34:12.457]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("lockoutTime",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:12.458]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Add: User - convert multi-valued Telephone to single
value'.
[12/05/07 18:34:12.458]:AD-IDM-CORE-AX ST: (if-operation
equal "add") = FALSE.
[12/05/07 18:34:12.458]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.459]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'update Active Directory logon name'.
[12/05/07 18:34:12.459]:AD-IDM-CORE-AX ST: (if-xpath true
"self::status[@level = 'success']/operation-data/windows-2000-logon-name")
= FALSE.
[12/05/07 18:34:12.460]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.460]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'User: Modify Login Expiration Time - Clear strips Login
Expiration Time and sets destination attribute to
9223372036854775807'.
[12/05/07 18:34:12.462]:AD-IDM-CORE-AX ST: (if-class-name
equal "User") = TRUE.
[12/05/07 18:34:12.462]:AD-IDM-CORE-AX ST: (if-op-attr
'accountExpires' not-available) = TRUE.
[12/05/07 18:34:12.462]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.463]:AD-IDM-CORE-AX ST: Applying rule 'User:
Modify Login Expiration Time - Clear strips Login
Expiration Time and sets destination attribute to
9223372036854775807'.
[12/05/07 18:34:12.463]:AD-IDM-CORE-AX ST: Action:
do-strip-xpath("./modify-attr[@attr-name='accountExpires']").
[12/05/07 18:34:12.464]:AD-IDM-CORE-AX ST: Action:
do-set-dest-attr-value("accountExpires","9223372036854775807").
[12/05/07 18:34:12.464]:AD-IDM-CORE-AX ST:
arg-string("9223372036854775807")
[12/05/07 18:34:12.464]:AD-IDM-CORE-AX ST:
token-text("9223372036854775807")
[12/05/07 18:34:12.469]:AD-IDM-CORE-AX ST: Arg Value:
"9223372036854775807".
[12/05/07 18:34:12.469]:AD-IDM-CORE-AX ST: Policy returned:
[12/05/07 18:34:12.469]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="0" scope="entry">
<search-class class-name="user"/>
<read-attr/>
</query>
<modify class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="0">
<modify-attr attr-name="accountExpires">
<remove-all-values/>
<add-value>
<value type="string">9223372036854775807</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:12.472]:AD-IDM-CORE-AX ST: Applying policy:
%+C%14C'Email notifications for failed password publications'%-C.
[12/05/07 18:34:12.472]:AD-IDM-CORE-AX ST: Applying to query #1.
[12/05/07 18:34:12.472]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail for a failed publish password operation'.
[12/05/07 18:34:12.473]:AD-IDM-CORE-AX ST:
(if-global-variable 'notify-user-on-password-dist-failure' equal "true") =
FALSE.
[12/05/07 18:34:12.473]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.473]:AD-IDM-CORE-AX ST: Applying to modify #2.
[12/05/07 18:34:12.473]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail for a failed publish password operation'.
[12/05/07 18:34:12.474]:AD-IDM-CORE-AX ST:
(if-global-variable 'notify-user-on-password-dist-failure' equal "true") =
FALSE.
[12/05/07 18:34:12.474]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.474]:AD-IDM-CORE-AX ST: Policy returned:
[12/05/07 18:34:12.475]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="0" scope="entry">
<search-class class-name="user"/>
<read-attr/>
</query>
<modify class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="0">
<modify-attr attr-name="accountExpires">
<remove-all-values/>
<add-value>
<value type="string">9223372036854775807</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:12.481]:AD-IDM-CORE-AX ST: Submitting document to
subscriber shim:
[12/05/07 18:34:12.481]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="0" scope="entry">
<search-class class-name="user"/>
<read-attr/>
</query>
<modify class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="0">
<modify-attr attr-name="accountExpires">
<remove-all-values/>
<add-value>
<value type="string">9223372036854775807</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:12.483]:AD-IDM-CORE-AX ST: Remote Interface Driver:
Sending...
[12/05/07 18:34:12.483]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="0" scope="entry">
<search-class class-name="user"/>
<read-attr/>
</query>
<modify class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="0_opData1">
<modify-attr attr-name="accountExpires">
<remove-all-values/>
<add-value>
<value type="string">9223372036854775807</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:12.485]:AD-IDM-CORE-AX ST: Remote Interface Driver:
Document sent.
[12/05/07 18:34:12.531]:AD-IDM-CORE-AX :Remote Interface Driver: Received.
[12/05/07 18:34:12.532]:AD-IDM-CORE-AX :
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="0" level="success"/>
<status event-id="0_opData1" level="warning" type="driver-general">
<ldap-err ldap-rc="32" ldap-rc-name="LDAP_NO_SUCH_OBJECT">
<client-err ldap-rc="32"
ldap-rc-name="LDAP_NO_SUCH_OBJECT">?????????????????</client-err>
<server-err>0000208D: NameErr: DSID-031001CD, problem 2001
(NO_OBJECT), data 0, best match of:
'OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net'
</server-err>
<server-err-ex win32-rc="8333"/>
</ldap-err>
</status>
</output>
</nds>
[12/05/07 18:34:12.535]:AD-IDM-CORE-AX :Remote Interface Driver: Received
document for subscriber channel
[12/05/07 18:34:12.535]:AD-IDM-CORE-AX ST:
SubscriptionShim.execute() returned:
[12/05/07 18:34:12.536]:AD-IDM-CORE-AX ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="0" level="success"/>
<status event-id="0" level="warning" type="driver-general">
<ldap-err ldap-rc="32" ldap-rc-name="LDAP_NO_SUCH_OBJECT">
<client-err ldap-rc="32"
ldap-rc-name="LDAP_NO_SUCH_OBJECT">?????????????????</client-err>
<server-err>0000208D: NameErr: DSID-031001CD, problem 2001
(NO_OBJECT), data 0, best match of:
'OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net'
</server-err>
<server-err-ex win32-rc="8333"/>
</ldap-err>
</status>
</output>
</nds>
[12/05/07 18:34:12.538]:AD-IDM-CORE-AX ST: Applying input
transformation policies.
[12/05/07 18:34:12.538]:AD-IDM-CORE-AX ST: Applying policy:
%+C%14C'Convert selected attributes to a form most commonly used in the
Identity Vault.'%-C.
[12/05/07 18:34:12.538]:AD-IDM-CORE-AX ST: Applying to status #1.
[12/05/07 18:34:12.539]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:12.539]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.539]:AD-IDM-CORE-AX ST: Applying rule
'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:12.539]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("rn","r",token-local-variable("current-value"))).
[12/05/07 18:34:12.540]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'logonHours: Convert to Login Allowed Time Map form'.
[12/05/07 18:34:12.540]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.540]:AD-IDM-CORE-AX ST: Applying rule
'logonHours: Convert to Login Allowed Time Map form'.
[12/05/07 18:34:12.541]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2eDir($current-value)")).
[12/05/07 18:34:12.541]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:12.542]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.542]:AD-IDM-CORE-AX ST: Applying rule
'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:12.542]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateFileTime2Epoch($current-value)")).
[12/05/07 18:34:12.542]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchanged'.
[12/05/07 18:34:12.543]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.543]:AD-IDM-CORE-AX ST: Applying rule 'AX
trace whenchanged'.
[12/05/07 18:34:12.543]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:12.544]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:12.544]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:12.544]:AD-IDM-CORE-AX ST: Token Value:
"".
[12/05/07 18:34:12.549]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:12.549]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:12.549]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-src-attr("whenChanged")).
[12/05/07 18:34:12.549]:AD-IDM-CORE-AX ST:
arg-string(token-src-attr("whenChanged"))
[12/05/07 18:34:12.550]:AD-IDM-CORE-AX ST:
token-src-attr("whenChanged")
[12/05/07 18:34:12.550]:AD-IDM-CORE-AX ST: Token Value:
"".
[12/05/07 18:34:12.550]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:12.550]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:12.550]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchange'.
[12/05/07 18:34:12.551]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.551]:AD-IDM-CORE-AX ST: Applying rule 'AX
trace whenchange'.
[12/05/07 18:34:12.552]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:12.552]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:12.552]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:12.553]:AD-IDM-CORE-AX ST: Token Value:
"".
[12/05/07 18:34:12.553]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:12.553]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:12.553]:AD-IDM-CORE-AX ST: Applying to status #2.
[12/05/07 18:34:12.553]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:12.554]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.554]:AD-IDM-CORE-AX ST: Applying rule
'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:12.554]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("rn","r",token-local-variable("current-value"))).
[12/05/07 18:34:12.554]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'logonHours: Convert to Login Allowed Time Map form'.
[12/05/07 18:34:12.555]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.555]:AD-IDM-CORE-AX ST: Applying rule
'logonHours: Convert to Login Allowed Time Map form'.
[12/05/07 18:34:12.555]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2eDir($current-value)")).
[12/05/07 18:34:12.556]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:12.556]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.556]:AD-IDM-CORE-AX ST: Applying rule
'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:12.556]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateFileTime2Epoch($current-value)")).
[12/05/07 18:34:12.557]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchanged'.
[12/05/07 18:34:12.557]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.557]:AD-IDM-CORE-AX ST: Applying rule 'AX
trace whenchanged'.
[12/05/07 18:34:12.557]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:12.558]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:12.558]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:12.558]:AD-IDM-CORE-AX ST: Token Value:
"".
[12/05/07 18:34:12.559]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:12.559]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:12.559]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-src-attr("whenChanged")).
[12/05/07 18:34:12.559]:AD-IDM-CORE-AX ST:
arg-string(token-src-attr("whenChanged"))
[12/05/07 18:34:12.560]:AD-IDM-CORE-AX ST:
token-src-attr("whenChanged")
[12/05/07 18:34:12.560]:AD-IDM-CORE-AX ST: Token Value:
"".
[12/05/07 18:34:12.560]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:12.560]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:12.561]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchange'.
[12/05/07 18:34:12.561]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.561]:AD-IDM-CORE-AX ST: Applying rule 'AX
trace whenchange'.
[12/05/07 18:34:12.561]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:12.561]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:12.562]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:12.562]:AD-IDM-CORE-AX ST: Token Value:
"".
[12/05/07 18:34:12.562]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:12.562]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:12.562]:AD-IDM-CORE-AX ST: Policy returned:
[12/05/07 18:34:12.563]:AD-IDM-CORE-AX ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="0" level="success"/>
<status event-id="0" level="warning" type="driver-general">
<ldap-err ldap-rc="32" ldap-rc-name="LDAP_NO_SUCH_OBJECT">
<client-err ldap-rc="32"
ldap-rc-name="LDAP_NO_SUCH_OBJECT">?????????????????</client-err>
<server-err>0000208D: NameErr: DSID-031001CD, problem 2001
(NO_OBJECT), data 0, best match of:
'OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net'
</server-err>
<server-err-ex win32-rc="8333"/>
</ldap-err>
</status>
</output>
</nds>
[12/05/07 18:34:12.565]:AD-IDM-CORE-AX :Remote Interface Driver: Waiting
for receive...
[12/05/07 18:34:12.565]:AD-IDM-CORE-AX ST: Applying policy:
%+C%14C'Email notifications for failed password subscriptions'%-C.
[12/05/07 18:34:12.565]:AD-IDM-CORE-AX ST: Applying to status #1.
[12/05/07 18:34:12.565]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on a failure when subscribing to passwords'.
[12/05/07 18:34:12.566]:AD-IDM-CORE-AX ST:
(if-global-variable 'notify-user-on-password-dist-failure' equal "true") =
FALSE.
[12/05/07 18:34:12.566]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.566]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on failure to reset connected system
password using the Identity Manager data store password'.
[12/05/07 18:34:12.567]:AD-IDM-CORE-AX ST:
(if-global-variable 'notify-user-on-password-dist-failure' equal "true") =
FALSE.
[12/05/07 18:34:12.567]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.568]:AD-IDM-CORE-AX ST: Applying to status #2.
[12/05/07 18:34:12.568]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on a failure when subscribing to passwords'.
[12/05/07 18:34:12.568]:AD-IDM-CORE-AX ST:
(if-global-variable 'notify-user-on-password-dist-failure' equal "true") =
FALSE.
[12/05/07 18:34:12.569]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.569]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on failure to reset connected system
password using the Identity Manager data store password'.
[12/05/07 18:34:12.569]:AD-IDM-CORE-AX ST:
(if-global-variable 'notify-user-on-password-dist-failure' equal "true") =
FALSE.
[12/05/07 18:34:12.570]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.570]:AD-IDM-CORE-AX ST: Policy returned:
[12/05/07 18:34:12.570]:AD-IDM-CORE-AX ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="0" level="success"/>
<status event-id="0" level="warning" type="driver-general">
<ldap-err ldap-rc="32" ldap-rc-name="LDAP_NO_SUCH_OBJECT">
<client-err ldap-rc="32"
ldap-rc-name="LDAP_NO_SUCH_OBJECT">?????????????????</client-err>
<server-err>0000208D: NameErr: DSID-031001CD, problem 2001
(NO_OBJECT), data 0, best match of:
'OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net'
</server-err>
<server-err-ex win32-rc="8333"/>
</ldap-err>
</status>
</output>
</nds>
[12/05/07 18:34:12.572]:AD-IDM-CORE-AX ST: Applying schema mapping
policies to input.
[12/05/07 18:34:12.572]:AD-IDM-CORE-AX ST: Applying policy:
%+C%14CSchemaMapping%-C.
[12/05/07 18:34:12.574]:AD-IDM-CORE-AX ST: Resolving association
references.
[12/05/07 18:34:12.574]:AD-IDM-CORE-AX ST: Query from policy result
[12/05/07 18:34:12.575]:AD-IDM-CORE-AX ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="0" level="success"/>
<status event-id="0" level="warning" type="driver-general">
<ldap-err ldap-rc="32" ldap-rc-name="LDAP_NO_SUCH_OBJECT">
<client-err ldap-rc="32"
ldap-rc-name="LDAP_NO_SUCH_OBJECT">?????????????????</client-err>
<server-err>0000208D: NameErr: DSID-031001CD, problem 2001
(NO_OBJECT), data 0, best match of:
'OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net'
</server-err>
<server-err-ex win32-rc="8333"/>
</ldap-err>
</status>
</output>
</nds>
[12/05/07 18:34:12.581]:AD-IDM-CORE-AX ST: No matches found.
[12/05/07 18:34:12.581]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'match everything else'.
[12/05/07 18:34:12.581]:AD-IDM-CORE-AX ST: (if-class-name not-equal
"User") = FALSE.
[12/05/07 18:34:12.582]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.582]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:12.582]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User" event-id="skidmqed1jp#20071205093412#1#1"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003"
timestamp="1196847252#13">
<add-attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</add-attr>
<add-attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</add-attr>
<add-attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</add-attr>
<add-attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</add-attr>
<add-attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</add-attr>
<add-attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</add-attr>
<operation-data
unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK"/>
</add>
</input>
</nds>
[12/05/07 18:34:12.587]:AD-IDM-CORE-AX ST:No match found.
[12/05/07 18:34:12.587]:AD-IDM-CORE-AX ST:Applying object creation
policies.
[12/05/07 18:34:12.587]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CCreation%-C.
[12/05/07 18:34:12.588]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:12.588]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Veto if nspmDistributionPassword is not available'.
[12/05/07 18:34:12.588]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.588]:AD-IDM-CORE-AX ST: (if-global-variable
'enable-password-subscribe' equal "true") = TRUE.
[12/05/07 18:34:12.589]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.589]:AD-IDM-CORE-AX ST: Applying rule 'Veto if
nspmDistributionPassword is not available'.
[12/05/07 18:34:12.589]:AD-IDM-CORE-AX ST: Action:
do-veto-if-op-attr-not-available("nspmDistributionPassword").
[12/05/07 18:34:12.589]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:12.590]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input/>
</nds>
[12/05/07 18:34:12.590]:AD-IDM-CORE-AX ST:Processing returned document.
[12/05/07 18:34:12.590]:AD-IDM-CORE-AX ST:Processing operation <status>
for .
[12/05/07 18:34:12.591]:AD-IDM-CORE-AX ST:
DirXML Log Event -------------------
Driver: xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX
Channel: Subscriber
Object: xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004
Status: Warning
Message: Code(-8017) Operation vetoed by object creation policy.
[12/05/07 18:34:12.638]:AD-IDM-CORE-AX ST:End transaction.
[12/05/07 18:34:12.657]:AD-IDM-CORE-AX ST:Start transaction.
[12/05/07 18:34:12.714]:AD-IDM-CORE-AX ST:Processing events for
transaction.
[12/05/07 18:34:12.715]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003"
timestamp="1196847252#76">
<modify-attr attr-name="pwdChangedTime">
<add-value>
<value timestamp="1196847252#76" type="time">1196847252</value>
</add-value>
</modify-attr>
<modify-attr attr-name="nspmDistributionPassword"><!-- content
suppressed -->
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:12.717]:AD-IDM-CORE-AX ST:Password synchronization event
detected.
[12/05/07 18:34:12.718]:AD-IDM-CORE-AX ST:No event transformation policies.
[12/05/07 18:34:12.718]:AD-IDM-CORE-AX ST:Subscriber processing modify for
xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004.
[12/05/07 18:34:12.718]:AD-IDM-CORE-AX ST:Password synchronization command
detected.
[12/05/07 18:34:12.718]:AD-IDM-CORE-AX ST:Converting <modify> to <add>
[12/05/07 18:34:12.720]:AD-IDM-CORE-AX ST:Reading relevant attributes from
xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004.
[12/05/07 18:34:12.720]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="User"
dest-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" dest-entry-id="34003"
scope="entry">
<read-attr attr-name="xxxADUsername"/>
<read-attr attr-name="xxxCompanyCode"/>
<read-attr attr-name="xxxDepartmentCode"/>
<read-attr attr-name="xxxDepartmentDescription"/>
<read-attr attr-name="xxxAXADDescription"/>
<read-attr attr-name="xxxAXADDisplayName"/>
<read-attr attr-name="xxxAXADFlag"/>
<read-attr attr-name="xxxAXADInternetFlag"/>
<read-attr attr-name="xxxAXADInternetGADFlag"/>
<read-attr attr-name="xxxAXADUserAccountControl"/>
<read-attr attr-name="xxxAXWorkerType"/>
<read-attr attr-name="xxxTerminateDate"/>
<read-attr attr-name="xxxTransactionType"/>
<read-attr attr-name="employeeStatus"/>
<read-attr attr-name="Given Name"/>
<read-attr attr-name="Internet EMail Address"/>
<read-attr attr-name="Login Disabled"/>
<read-attr attr-name="Login Expiration Time"/>
<read-attr attr-name="nspmDistributionPassword"/>
<read-attr attr-name="pwdChangedTime"/>
<read-attr attr-name="Surname"/>
</query>
</input>
</nds>
[12/05/07 18:34:12.733]:AD-IDM-CORE-AX ST:Pumping XDS to eDirectory.
[12/05/07 18:34:12.733]:AD-IDM-CORE-AX ST:Performing operation query for
xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004.
[12/05/07 18:34:12.748]:AD-IDM-CORE-AX ST:Read result:
[12/05/07 18:34:12.749]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<instance class-name="User"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</attr>
<attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</attr>
<attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</attr>
<attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</attr>
<attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</attr>
<attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</attr>
<attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</attr>
<attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</attr>
<attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</attr>
<attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</attr>
<attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</attr>
<attr attr-name="nspmDistributionPassword"><!-- content suppressed
-->
</attr>
<attr attr-name="pwdChangedTime">
<value timestamp="1196847252#76" type="time">1196847252</value>
</attr>
<attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</attr>
</instance>
<status level="success"></status>
</output>
</nds>
[12/05/07 18:34:12.755]:AD-IDM-CORE-AX ST:Synthetic add:
[12/05/07 18:34:12.755]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User" event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</add-attr>
<add-attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</add-attr>
<add-attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</add-attr>
<add-attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="nspmDistributionPassword"><!-- content
suppressed -->
</add-attr>
<add-attr attr-name="pwdChangedTime">
<value timestamp="1196847252#76" type="time">1196847252</value>
</add-attr>
<add-attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</add-attr>
</add>
</input>
</nds>
[12/05/07 18:34:12.761]:AD-IDM-CORE-AX ST:Applying object matching
policies.
[12/05/07 18:34:12.761]:AD-IDM-CORE-AX ST:Applying policy: %+C%14C'Find
matching object in Active Directory'%-C.
[12/05/07 18:34:12.762]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:12.762]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'remember relative position in hierarchy'.
[12/05/07 18:34:12.762]:AD-IDM-CORE-AX ST: (if-src-dn in-subtree
"JP") = TRUE.
[12/05/07 18:34:12.763]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.763]:AD-IDM-CORE-AX ST: Applying rule 'remember
relative position in hierarchy'.
[12/05/07 18:34:12.763]:AD-IDM-CORE-AX ST: Action:
do-set-op-property("unmatched-src-dn",token-unmatched-src-dn(convert="true")).
[12/05/07 18:34:12.763]:AD-IDM-CORE-AX ST:
arg-string(token-unmatched-src-dn(convert="true"))
[12/05/07 18:34:12.763]:AD-IDM-CORE-AX ST:
token-unmatched-src-dn(convert="true")
[12/05/07 18:34:12.764]:AD-IDM-CORE-AX ST: Token Value:
"CN=1ad00004,OU=Employees,OU=xxxKK".
[12/05/07 18:34:12.764]:AD-IDM-CORE-AX ST: Arg Value:
"CN=1ad00004,OU=Employees,OU=xxxKK".
[12/05/07 18:34:12.764]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'veto out-of-scope events'.
[12/05/07 18:34:12.765]:AD-IDM-CORE-AX ST: (if-op-property
'unmatched-src-dn' not-available) = FALSE.
[12/05/07 18:34:12.765]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.765]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'generate full name if not in Identity Vault'.
[12/05/07 18:34:12.765]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.766]:AD-IDM-CORE-AX ST: (if-global-variable
'FullNameMap' equal "true") = FALSE.
[12/05/07 18:34:12.766]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.766]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'match users based on NT logon name'.
[12/05/07 18:34:12.766]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.767]:AD-IDM-CORE-AX ST: (if-global-variable
'LogonNameMap' equal "true") = FALSE.
[12/05/07 18:34:12.768]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.768]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'match users based on full name'.
[12/05/07 18:34:12.768]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.768]:AD-IDM-CORE-AX ST: (if-global-variable
'FullNameMap' equal "true") = FALSE.
[12/05/07 18:34:12.769]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.769]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX match user based on xxxADUsername'.
[12/05/07 18:34:12.769]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.769]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.770]:AD-IDM-CORE-AX ST: Applying rule 'AX match user
based on xxxADUsername'.
[12/05/07 18:34:12.770]:AD-IDM-CORE-AX ST: Action:
do-find-matching-object(scope="entry",arg-dn("cn="+token-op-attr("xxxADUsername")+",ou=GP1,ou=Users,ou="+token-op-attr("xxxCompanyCode")+","+token-global-variable("gcvDomainName"))).
[12/05/07 18:34:12.770]:AD-IDM-CORE-AX ST:
arg-dn("cn="+token-op-attr("xxxADUsername")+",ou=GP1,ou=Users,ou="+token-op-attr("xxxCompanyCode")+","+token-global-variable("gcvDomainName"))
[12/05/07 18:34:12.771]:AD-IDM-CORE-AX ST: token-text("cn=")
[12/05/07 18:34:12.771]:AD-IDM-CORE-AX ST:
token-op-attr("xxxADUsername")
[12/05/07 18:34:12.772]:AD-IDM-CORE-AX ST: Token Value:
"1ad00004".
[12/05/07 18:34:12.772]:AD-IDM-CORE-AX ST:
token-text(",ou=GP1,ou=Users,ou=")
[12/05/07 18:34:12.772]:AD-IDM-CORE-AX ST:
token-op-attr("xxxCompanyCode")
[12/05/07 18:34:12.772]:AD-IDM-CORE-AX ST: Token Value: "xxxKK".
[12/05/07 18:34:12.772]:AD-IDM-CORE-AX ST: token-text(",")
[12/05/07 18:34:12.777]:AD-IDM-CORE-AX ST:
token-global-variable("gcvDomainName")
[12/05/07 18:34:12.777]:AD-IDM-CORE-AX ST: Token Value:
"dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET".
[12/05/07 18:34:12.778]:AD-IDM-CORE-AX ST: Arg Value:
"cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET".
[12/05/07 18:34:12.778]:AD-IDM-CORE-AX ST: Query from policy
[12/05/07 18:34:12.778]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="User"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
scope="entry">
<search-class class-name="User"/>
<read-attr/>
</query>
</input>
</nds>
[12/05/07 18:34:12.779]:AD-IDM-CORE-AX ST: Fixing up association
references.
[12/05/07 18:34:12.779]:AD-IDM-CORE-AX ST: Applying schema mapping
policies to output.
[12/05/07 18:34:12.780]:AD-IDM-CORE-AX ST: Applying policy:
%+C%14CSchemaMapping%-C.
[12/05/07 18:34:12.780]:AD-IDM-CORE-AX ST: Mapping class-name
'User' to 'user'.
[12/05/07 18:34:12.780]:AD-IDM-CORE-AX ST: Mapping class-name
'User' to 'user'.
[12/05/07 18:34:12.781]:AD-IDM-CORE-AX ST: Applying output
transformation policies.
[12/05/07 18:34:12.781]:AD-IDM-CORE-AX ST: Applying policy:
%+C%14C'Convert selected attributes to a form most commonly used in Active
Directory.'%-C.
[12/05/07 18:34:12.781]:AD-IDM-CORE-AX ST: Applying to query #1.
[12/05/07 18:34:12.782]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Street Address: Convert LF to CR-LF'.
[12/05/07 18:34:12.783]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.783]:AD-IDM-CORE-AX ST: Applying rule
'Street Address: Convert LF to CR-LF'.
[12/05/07 18:34:12.783]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("[^r]n","rn",token-local-variable("current-value"))).
[12/05/07 18:34:12.784]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'logonHours: Convert to Active Directory form'.
[12/05/07 18:34:12.784]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.784]:AD-IDM-CORE-AX ST: Applying rule
'logonHours: Convert to Active Directory form'.
[12/05/07 18:34:12.784]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
[12/05/07 18:34:12.785]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:12.785]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.785]:AD-IDM-CORE-AX ST: Applying rule
'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:12.786]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:12.786]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'lockoutTime: Convert to Active Directory form'.
[12/05/07 18:34:12.786]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.787]:AD-IDM-CORE-AX ST: Applying rule
'lockoutTime: Convert to Active Directory form'.
[12/05/07 18:34:12.787]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("lockoutTime",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:12.788]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Add: User - convert multi-valued Telephone to single
value'.
[12/05/07 18:34:12.788]:AD-IDM-CORE-AX ST: (if-operation
equal "add") = FALSE.
[12/05/07 18:34:12.788]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.788]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'update Active Directory logon name'.
[12/05/07 18:34:12.789]:AD-IDM-CORE-AX ST: (if-xpath true
"self::status[@level = 'success']/operation-data/windows-2000-logon-name")
= FALSE.
[12/05/07 18:34:12.790]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.790]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'User: Modify Login Expiration Time - Clear strips Login
Expiration Time and sets destination attribute to
9223372036854775807'.
[12/05/07 18:34:12.791]:AD-IDM-CORE-AX ST: (if-class-name
equal "User") = TRUE.
[12/05/07 18:34:12.791]:AD-IDM-CORE-AX ST: (if-op-attr
'accountExpires' not-available) = TRUE.
[12/05/07 18:34:12.791]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.791]:AD-IDM-CORE-AX ST: Applying rule 'User:
Modify Login Expiration Time - Clear strips Login
Expiration Time and sets destination attribute to
9223372036854775807'.
[12/05/07 18:34:12.792]:AD-IDM-CORE-AX ST: Action:
do-strip-xpath("./modify-attr[@attr-name='accountExpires']").
[12/05/07 18:34:12.792]:AD-IDM-CORE-AX ST: Action:
do-set-dest-attr-value("accountExpires","9223372036854775807").
[12/05/07 18:34:12.792]:AD-IDM-CORE-AX ST:
arg-string("9223372036854775807")
[12/05/07 18:34:12.793]:AD-IDM-CORE-AX ST:
token-text("9223372036854775807")
[12/05/07 18:34:12.793]:AD-IDM-CORE-AX ST: Arg Value:
"9223372036854775807".
[12/05/07 18:34:12.793]:AD-IDM-CORE-AX ST: Policy returned:
[12/05/07 18:34:12.793]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="0" scope="entry">
<search-class class-name="user"/>
<read-attr/>
</query>
<modify class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="0">
<modify-attr attr-name="accountExpires">
<remove-all-values/>
<add-value>
<value type="string">9223372036854775807</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:12.793]:AD-IDM-CORE-AX ST: Applying policy:
%+C%14C'Email notifications for failed password publications'%-C.
[12/05/07 18:34:12.795]:AD-IDM-CORE-AX ST: Applying to query #1.
[12/05/07 18:34:12.796]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail for a failed publish password operation'.
[12/05/07 18:34:12.796]:AD-IDM-CORE-AX ST:
(if-global-variable 'notify-user-on-password-dist-failure' equal "true") =
FALSE.
[12/05/07 18:34:12.796]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.796]:AD-IDM-CORE-AX ST: Applying to modify #2.
[12/05/07 18:34:12.801]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail for a failed publish password operation'.
[12/05/07 18:34:12.801]:AD-IDM-CORE-AX ST:
(if-global-variable 'notify-user-on-password-dist-failure' equal "true") =
FALSE.
[12/05/07 18:34:12.802]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.802]:AD-IDM-CORE-AX ST: Policy returned:
[12/05/07 18:34:12.802]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="0" scope="entry">
<search-class class-name="user"/>
<read-attr/>
</query>
<modify class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="0">
<modify-attr attr-name="accountExpires">
<remove-all-values/>
<add-value>
<value type="string">9223372036854775807</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:12.804]:AD-IDM-CORE-AX ST: Submitting document to
subscriber shim:
[12/05/07 18:34:12.804]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="0" scope="entry">
<search-class class-name="user"/>
<read-attr/>
</query>
<modify class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="0">
<modify-attr attr-name="accountExpires">
<remove-all-values/>
<add-value>
<value type="string">9223372036854775807</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:12.807]:AD-IDM-CORE-AX ST: Remote Interface Driver:
Sending...
[12/05/07 18:34:12.807]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="0" scope="entry">
<search-class class-name="user"/>
<read-attr/>
</query>
<modify class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="0_opData1">
<modify-attr attr-name="accountExpires">
<remove-all-values/>
<add-value>
<value type="string">9223372036854775807</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:12.813]:AD-IDM-CORE-AX ST: Remote Interface Driver:
Document sent.
[12/05/07 18:34:12.837]:AD-IDM-CORE-AX :Remote Interface Driver: Received.
[12/05/07 18:34:12.837]:AD-IDM-CORE-AX :
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="0" level="success"/>
<status event-id="0_opData1" level="warning" type="driver-general">
<ldap-err ldap-rc="32" ldap-rc-name="LDAP_NO_SUCH_OBJECT">
<client-err ldap-rc="32"
ldap-rc-name="LDAP_NO_SUCH_OBJECT">?????????????????</client-err>
<server-err>0000208D: NameErr: DSID-031001CD, problem 2001
(NO_OBJECT), data 0, best match of:
'OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net'
</server-err>
<server-err-ex win32-rc="8333"/>
</ldap-err>
</status>
</output>
</nds>
[12/05/07 18:34:12.840]:AD-IDM-CORE-AX :Remote Interface Driver: Received
document for subscriber channel
[12/05/07 18:34:12.840]:AD-IDM-CORE-AX :Remote Interface Driver: Waiting
for receive...
[12/05/07 18:34:12.840]:AD-IDM-CORE-AX ST:
SubscriptionShim.execute() returned:
[12/05/07 18:34:12.841]:AD-IDM-CORE-AX ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="0" level="success"/>
<status event-id="0" level="warning" type="driver-general">
<ldap-err ldap-rc="32" ldap-rc-name="LDAP_NO_SUCH_OBJECT">
<client-err ldap-rc="32"
ldap-rc-name="LDAP_NO_SUCH_OBJECT">?????????????????</client-err>
<server-err>0000208D: NameErr: DSID-031001CD, problem 2001
(NO_OBJECT), data 0, best match of:
'OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net'
</server-err>
<server-err-ex win32-rc="8333"/>
</ldap-err>
</status>
</output>
</nds>
[12/05/07 18:34:12.843]:AD-IDM-CORE-AX ST: Applying input
transformation policies.
[12/05/07 18:34:12.843]:AD-IDM-CORE-AX ST: Applying policy:
%+C%14C'Convert selected attributes to a form most commonly used in the
Identity Vault.'%-C.
[12/05/07 18:34:12.844]:AD-IDM-CORE-AX ST: Applying to status #1.
[12/05/07 18:34:12.844]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:12.844]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.849]:AD-IDM-CORE-AX ST: Applying rule
'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:12.849]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("rn","r",token-local-variable("current-value"))).
[12/05/07 18:34:12.849]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'logonHours: Convert to Login Allowed Time Map form'.
[12/05/07 18:34:12.850]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.850]:AD-IDM-CORE-AX ST: Applying rule
'logonHours: Convert to Login Allowed Time Map form'.
[12/05/07 18:34:12.850]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2eDir($current-value)")).
[12/05/07 18:34:12.851]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:12.851]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.851]:AD-IDM-CORE-AX ST: Applying rule
'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:12.851]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateFileTime2Epoch($current-value)")).
[12/05/07 18:34:12.852]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchanged'.
[12/05/07 18:34:12.852]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.852]:AD-IDM-CORE-AX ST: Applying rule 'AX
trace whenchanged'.
[12/05/07 18:34:12.852]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:12.853]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:12.853]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:12.853]:AD-IDM-CORE-AX ST: Token Value:
"".
[12/05/07 18:34:12.853]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:12.853]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:12.853]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-src-attr("whenChanged")).
[12/05/07 18:34:12.854]:AD-IDM-CORE-AX ST:
arg-string(token-src-attr("whenChanged"))
[12/05/07 18:34:12.854]:AD-IDM-CORE-AX ST:
token-src-attr("whenChanged")
[12/05/07 18:34:12.854]:AD-IDM-CORE-AX ST: Token Value:
"".
[12/05/07 18:34:12.855]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:12.855]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:12.855]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchange'.
[12/05/07 18:34:12.855]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.855]:AD-IDM-CORE-AX ST: Applying rule 'AX
trace whenchange'.
[12/05/07 18:34:12.855]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:12.856]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:12.856]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:12.856]:AD-IDM-CORE-AX ST: Token Value:
"".
[12/05/07 18:34:12.856]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:12.857]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:12.857]:AD-IDM-CORE-AX ST: Applying to status #2.
[12/05/07 18:34:12.857]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:12.857]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.857]:AD-IDM-CORE-AX ST: Applying rule
'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:12.859]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("rn","r",token-local-variable("current-value"))).
[12/05/07 18:34:12.860]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'logonHours: Convert to Login Allowed Time Map form'.
[12/05/07 18:34:12.860]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.860]:AD-IDM-CORE-AX ST: Applying rule
'logonHours: Convert to Login Allowed Time Map form'.
[12/05/07 18:34:12.861]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2eDir($current-value)")).
[12/05/07 18:34:12.861]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:12.861]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.861]:AD-IDM-CORE-AX ST: Applying rule
'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:12.862]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateFileTime2Epoch($current-value)")).
[12/05/07 18:34:12.862]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchanged'.
[12/05/07 18:34:12.862]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.863]:AD-IDM-CORE-AX ST: Applying rule 'AX
trace whenchanged'.
[12/05/07 18:34:12.863]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:12.863]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:12.863]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:12.864]:AD-IDM-CORE-AX ST: Token Value:
"".
[12/05/07 18:34:12.864]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:12.865]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:12.865]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-src-attr("whenChanged")).
[12/05/07 18:34:12.865]:AD-IDM-CORE-AX ST:
arg-string(token-src-attr("whenChanged"))
[12/05/07 18:34:12.865]:AD-IDM-CORE-AX ST:
token-src-attr("whenChanged")
[12/05/07 18:34:12.866]:AD-IDM-CORE-AX ST: Token Value:
"".
[12/05/07 18:34:12.866]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:12.866]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:12.866]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchange'.
[12/05/07 18:34:12.866]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.867]:AD-IDM-CORE-AX ST: Applying rule 'AX
trace whenchange'.
[12/05/07 18:34:12.867]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:12.867]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:12.867]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:12.868]:AD-IDM-CORE-AX ST: Token Value:
"".
[12/05/07 18:34:12.868]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:12.868]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:12.868]:AD-IDM-CORE-AX ST: Policy returned:
[12/05/07 18:34:12.868]:AD-IDM-CORE-AX ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="0" level="success"/>
<status event-id="0" level="warning" type="driver-general">
<ldap-err ldap-rc="32" ldap-rc-name="LDAP_NO_SUCH_OBJECT">
<client-err ldap-rc="32"
ldap-rc-name="LDAP_NO_SUCH_OBJECT">?????????????????</client-err>
<server-err>0000208D: NameErr: DSID-031001CD, problem 2001
(NO_OBJECT), data 0, best match of:
'OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net'
</server-err>
<server-err-ex win32-rc="8333"/>
</ldap-err>
</status>
</output>
</nds>
[12/05/07 18:34:12.871]:AD-IDM-CORE-AX ST: Applying policy:
%+C%14C'Email notifications for failed password subscriptions'%-C.
[12/05/07 18:34:12.871]:AD-IDM-CORE-AX ST: Applying to status #1.
[12/05/07 18:34:12.871]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on a failure when subscribing to passwords'.
[12/05/07 18:34:12.872]:AD-IDM-CORE-AX ST:
(if-global-variable 'notify-user-on-password-dist-failure' equal "true") =
FALSE.
[12/05/07 18:34:12.872]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.872]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on failure to reset connected system
password using the Identity Manager data store password'.
[12/05/07 18:34:12.877]:AD-IDM-CORE-AX ST:
(if-global-variable 'notify-user-on-password-dist-failure' equal "true") =
FALSE.
[12/05/07 18:34:12.877]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.877]:AD-IDM-CORE-AX ST: Applying to status #2.
[12/05/07 18:34:12.877]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on a failure when subscribing to passwords'.
[12/05/07 18:34:12.878]:AD-IDM-CORE-AX ST:
(if-global-variable 'notify-user-on-password-dist-failure' equal "true") =
FALSE.
[12/05/07 18:34:12.878]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.878]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on failure to reset connected system
password using the Identity Manager data store password'.
[12/05/07 18:34:12.879]:AD-IDM-CORE-AX ST:
(if-global-variable 'notify-user-on-password-dist-failure' equal "true") =
FALSE.
[12/05/07 18:34:12.879]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.879]:AD-IDM-CORE-AX ST: Policy returned:
[12/05/07 18:34:12.880]:AD-IDM-CORE-AX ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="0" level="success"/>
<status event-id="0" level="warning" type="driver-general">
<ldap-err ldap-rc="32" ldap-rc-name="LDAP_NO_SUCH_OBJECT">
<client-err ldap-rc="32"
ldap-rc-name="LDAP_NO_SUCH_OBJECT">?????????????????</client-err>
<server-err>0000208D: NameErr: DSID-031001CD, problem 2001
(NO_OBJECT), data 0, best match of:
'OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net'
</server-err>
<server-err-ex win32-rc="8333"/>
</ldap-err>
</status>
</output>
</nds>
[12/05/07 18:34:12.882]:AD-IDM-CORE-AX ST: Applying schema mapping
policies to input.
[12/05/07 18:34:12.882]:AD-IDM-CORE-AX ST: Applying policy:
%+C%14CSchemaMapping%-C.
[12/05/07 18:34:12.882]:AD-IDM-CORE-AX ST: Resolving association
references.
[12/05/07 18:34:12.883]:AD-IDM-CORE-AX ST: Query from policy result
[12/05/07 18:34:12.883]:AD-IDM-CORE-AX ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="0" level="success"/>
<status event-id="0" level="warning" type="driver-general">
<ldap-err ldap-rc="32" ldap-rc-name="LDAP_NO_SUCH_OBJECT">
<client-err ldap-rc="32"
ldap-rc-name="LDAP_NO_SUCH_OBJECT">?????????????????</client-err>
<server-err>0000208D: NameErr: DSID-031001CD, problem 2001
(NO_OBJECT), data 0, best match of:
'OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net'
</server-err>
<server-err-ex win32-rc="8333"/>
</ldap-err>
</status>
</output>
</nds>
[12/05/07 18:34:12.885]:AD-IDM-CORE-AX ST: No matches found.
[12/05/07 18:34:12.886]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'match everything else'.
[12/05/07 18:34:12.887]:AD-IDM-CORE-AX ST: (if-class-name not-equal
"User") = FALSE.
[12/05/07 18:34:12.887]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.887]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:12.887]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User" event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</add-attr>
<add-attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</add-attr>
<add-attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</add-attr>
<add-attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="nspmDistributionPassword"><!-- content
suppressed -->
</add-attr>
<add-attr attr-name="pwdChangedTime">
<value timestamp="1196847252#76" type="time">1196847252</value>
</add-attr>
<add-attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</add-attr>
<operation-data
unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK"/>
</add>
</input>
</nds>
[12/05/07 18:34:12.893]:AD-IDM-CORE-AX ST:No match found.
[12/05/07 18:34:12.893]:AD-IDM-CORE-AX ST:Applying object creation
policies.
[12/05/07 18:34:12.893]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CCreation%-C.
[12/05/07 18:34:12.894]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:12.894]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Veto if nspmDistributionPassword is not available'.
[12/05/07 18:34:12.894]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.894]:AD-IDM-CORE-AX ST: (if-global-variable
'enable-password-subscribe' equal "true") = TRUE.
[12/05/07 18:34:12.895]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.895]:AD-IDM-CORE-AX ST: Applying rule 'Veto if
nspmDistributionPassword is not available'.
[12/05/07 18:34:12.895]:AD-IDM-CORE-AX ST: Action:
do-veto-if-op-attr-not-available("nspmDistributionPassword").
[12/05/07 18:34:12.896]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX Required attributes'.
[12/05/07 18:34:12.896]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.896]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.896]:AD-IDM-CORE-AX ST: Applying rule 'AX Required
attributes'.
[12/05/07 18:34:12.896]:AD-IDM-CORE-AX ST: Action:
do-veto-if-op-attr-not-available("xxxADUsername").
[12/05/07 18:34:12.901]:AD-IDM-CORE-AX ST: Action:
do-veto-if-op-attr-not-available("xxxAXADDisplayName").
[12/05/07 18:34:12.901]:AD-IDM-CORE-AX ST: Action:
do-veto-if-op-attr-not-available("xxxCompanyCode").
[12/05/07 18:34:12.901]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX veto invalid transaction type'.
[12/05/07 18:34:12.901]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.902]:AD-IDM-CORE-AX ST: (if-op-attr
'xxxTransactionType' not-equal "HIRED") = FALSE.
[12/05/07 18:34:12.902]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.902]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX veto if AD flag is not correct'.
[12/05/07 18:34:12.902]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.903]:AD-IDM-CORE-AX ST: (if-op-attr 'xxxAXADFlag'
not-equal "1") = FALSE.
[12/05/07 18:34:12.903]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.903]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Create User objects'.
[12/05/07 18:34:12.903]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.904]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.904]:AD-IDM-CORE-AX ST: Applying rule 'Create User
objects'.
[12/05/07 18:34:12.904]:AD-IDM-CORE-AX ST: Action:
do-set-dest-attr-value("DirXML-ADAliasName",token-substring(length="20",token-replace-all("^a-zA-Z0-9x21x23-x29x2dx2ex40x5e-x60x7bx7dx7exc0-xf6xf8-xffx410-x44f","",token-src-name()))).
[12/05/07 18:34:12.905]:AD-IDM-CORE-AX ST:
arg-string(token-substring(length="20",token-replace-all("^a-zA-Z0-9x21x23-x29x2dx2ex40x5e-x60x7bx7dx7exc0-xf6xf8-xffx410-x44f","",token-src-name())))
[12/05/07 18:34:12.905]:AD-IDM-CORE-AX ST:
token-substring(length="20",token-replace-all("^a-zA-Z0-9x21x23-x29x2dx2ex40x5e-x60x7bx7dx7exc0-xf6xf8-xffx410-x44f","",token-src-name()))
[12/05/07 18:34:12.906]:AD-IDM-CORE-AX ST:
token-substring(length="20",token-replace-all("^a-zA-Z0-9x21x23-x29x2dx2ex40x5e-x60x7bx7dx7exc0-xf6xf8-xffx410-x44f","",token-src-name()))
[12/05/07 18:34:12.906]:AD-IDM-CORE-AX ST:
token-replace-all("^a-zA-Z0-9x21x23-x29x2dx2ex40x5e-x60x7bx7dx7exc0-xf6xf8-xffx410-x44f","",token-src-name())
[12/05/07 18:34:12.907]:AD-IDM-CORE-AX ST:
token-replace-all("^a-zA-Z0-9x21x23-x29x2dx2ex40x5e-x60x7bx7dx7exc0-xf6xf8-xffx410-x44f","",token-src-name())
[12/05/07 18:34:12.907]:AD-IDM-CORE-AX ST:
token-src-name()
[12/05/07 18:34:12.907]:AD-IDM-CORE-AX ST: Token Value:
"1ad00004".
[12/05/07 18:34:12.907]:AD-IDM-CORE-AX ST: Arg Value:
"1ad00004".
[12/05/07 18:34:12.908]:AD-IDM-CORE-AX ST: Token Value:
"1ad00004".
[12/05/07 18:34:12.908]:AD-IDM-CORE-AX ST: Arg Value:
"1ad00004".
[12/05/07 18:34:12.908]:AD-IDM-CORE-AX ST: Token Value:
"1ad00004".
[12/05/07 18:34:12.908]:AD-IDM-CORE-AX ST: Arg Value: "1ad00004".
[12/05/07 18:34:12.908]:AD-IDM-CORE-AX ST: Action:
do-add-src-attr-value("Object
Class",class-name="User","DirXML-ApplicationAttrs").
[12/05/07 18:34:12.909]:AD-IDM-CORE-AX ST:
arg-string("DirXML-ApplicationAttrs")
[12/05/07 18:34:12.909]:AD-IDM-CORE-AX ST:
token-text("DirXML-ApplicationAttrs")
[12/05/07 18:34:12.909]:AD-IDM-CORE-AX ST: Arg Value:
"DirXML-ApplicationAttrs".
[12/05/07 18:34:12.909]:AD-IDM-CORE-AX ST: Action:
do-set-src-attr-value("DirXML-ADAliasName",token-substring(length="20",token-replace-all("^a-zA-Z0-9x21x23-x29x2dx2ex40x5e-x60x7bx7dx7exc0-xf6xf8-xffx410-x44f","",token-src-name()))).
[12/05/07 18:34:12.909]:AD-IDM-CORE-AX ST:
arg-string(token-substring(length="20",token-replace-all("^a-zA-Z0-9x21x23-x29x2dx2ex40x5e-x60x7bx7dx7exc0-xf6xf8-xffx410-x44f","",token-src-name())))
[12/05/07 18:34:12.911]:AD-IDM-CORE-AX ST:
token-substring(length="20",token-replace-all("^a-zA-Z0-9x21x23-x29x2dx2ex40x5e-x60x7bx7dx7exc0-xf6xf8-xffx410-x44f","",token-src-name()))
[12/05/07 18:34:12.911]:AD-IDM-CORE-AX ST:
token-substring(length="20",token-replace-all("^a-zA-Z0-9x21x23-x29x2dx2ex40x5e-x60x7bx7dx7exc0-xf6xf8-xffx410-x44f","",token-src-name()))
[12/05/07 18:34:12.911]:AD-IDM-CORE-AX ST:
token-replace-all("^a-zA-Z0-9x21x23-x29x2dx2ex40x5e-x60x7bx7dx7exc0-xf6xf8-xffx410-x44f","",token-src-name())
[12/05/07 18:34:12.912]:AD-IDM-CORE-AX ST:
token-replace-all("^a-zA-Z0-9x21x23-x29x2dx2ex40x5e-x60x7bx7dx7exc0-xf6xf8-xffx410-x44f","",token-src-name())
[12/05/07 18:34:12.912]:AD-IDM-CORE-AX ST:
token-src-name()
[12/05/07 18:34:12.912]:AD-IDM-CORE-AX ST: Token Value:
"1ad00004".
[12/05/07 18:34:12.917]:AD-IDM-CORE-AX ST: Arg Value:
"1ad00004".
[12/05/07 18:34:12.917]:AD-IDM-CORE-AX ST: Token Value:
"1ad00004".
[12/05/07 18:34:12.917]:AD-IDM-CORE-AX ST: Arg Value:
"1ad00004".
[12/05/07 18:34:12.917]:AD-IDM-CORE-AX ST: Token Value:
"1ad00004".
[12/05/07 18:34:12.917]:AD-IDM-CORE-AX ST: Arg Value: "1ad00004".
[12/05/07 18:34:12.918]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'map user name to Windows logon name'.
[12/05/07 18:34:12.918]:AD-IDM-CORE-AX ST: (if-global-variable
'UpnMap' equal "edir-name-auth") = TRUE.
[12/05/07 18:34:12.918]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.918]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.918]:AD-IDM-CORE-AX ST: Applying rule 'map user name
to Windows logon name'.
[12/05/07 18:34:12.919]:AD-IDM-CORE-AX ST: Action:
do-set-dest-attr-value("userPrincipalName",class-name="User",token-src-name()+"@"+"AX-core.AX.xxx.net").
[12/05/07 18:34:12.919]:AD-IDM-CORE-AX ST:
arg-string(token-src-name()+"@"+"AX-core.AX.xxx.net")
[12/05/07 18:34:12.919]:AD-IDM-CORE-AX ST: token-src-name()
[12/05/07 18:34:12.920]:AD-IDM-CORE-AX ST: Token Value:
"1ad00004".
[12/05/07 18:34:12.920]:AD-IDM-CORE-AX ST: token-text("@")
[12/05/07 18:34:12.920]:AD-IDM-CORE-AX ST:
token-text("AX-core.AX.xxx.net")
[12/05/07 18:34:12.920]:AD-IDM-CORE-AX ST: Arg Value:
"1ad00004@AX-core.AX.xxx.net".
[12/05/07 18:34:12.920]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Create Group objects'.
[12/05/07 18:34:12.921]:AD-IDM-CORE-AX ST: (if-class-name equal
"Group") = FALSE.
[12/05/07 18:34:12.921]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.921]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Identity Vault accounts are enabled if Login Disabled
does not exist'.
[12/05/07 18:34:12.921]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.921]:AD-IDM-CORE-AX ST: (if-op-attr 'Login
Disabled' not-available) = FALSE.
[12/05/07 18:34:12.922]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.922]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'default Exchange assignment'.
[12/05/07 18:34:12.922]:AD-IDM-CORE-AX ST: (if-global-variable
'ExchMailboxPolicy' equal "policy") = FALSE.
[12/05/07 18:34:12.923]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.923]:AD-IDM-CORE-AX ST: Direct command from policy
[12/05/07 18:34:12.923]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User"
dest-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" dest-entry-id="34003"
event-id="skidmqed1jp#20071205093412#1#2">
<modify-attr attr-name="Object Class">
<add-value>
<value>DirXML-ApplicationAttrs</value>
</add-value>
</modify-attr>
<modify-attr attr-name="DirXML-ADAliasName">
<remove-all-values/>
<add-value>
<value type="string">1ad00004</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:12.925]:AD-IDM-CORE-AX ST: Pumping XDS to eDirectory.
[12/05/07 18:34:12.925]:AD-IDM-CORE-AX ST: Performing operation modify
for xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004.
[12/05/07 18:34:12.926]:AD-IDM-CORE-AX ST: Modifying entry
xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004.
[12/05/07 18:34:12.933]:AD-IDM-CORE-AX ST: Processing returned document.
[12/05/07 18:34:12.934]:AD-IDM-CORE-AX ST: Processing operation <status>
for .
[12/05/07 18:34:12.934]:AD-IDM-CORE-AX ST:
DirXML Log Event -------------------
Driver: xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX
Channel: Subscriber
Object: xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004
Status: Success
[12/05/07 18:34:12.947]:AD-IDM-CORE-AX ST: Direct command from policy
result
[12/05/07 18:34:12.947]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="skidmqed1jp#20071205093412#1#2"
level="success"><application>DirXML</application>
<module>AD-IDM-CORE-AX</module>
<object-dn>xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004</object-dn>
<component>Subscriber</component>
</status>
</output>
</nds>
[12/05/07 18:34:12.949]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:12.949]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User" event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</add-attr>
<add-attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</add-attr>
<add-attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</add-attr>
<add-attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="nspmDistributionPassword"><!-- content
suppressed -->
</add-attr>
<add-attr attr-name="pwdChangedTime">
<value timestamp="1196847252#76" type="time">1196847252</value>
</add-attr>
<add-attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</add-attr>
<add-attr attr-name="DirXML-ADAliasName">
<value type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="userPrincipalName">
<value type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<operation-data
unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK"/>
</add>
</input>
</nds>
[12/05/07 18:34:12.961]:AD-IDM-CORE-AX ST:Applying object placement
policies.
[12/05/07 18:34:12.961]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CPlacement%-C.
[12/05/07 18:34:12.962]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:12.962]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX Define LCV for Company Code'.
[12/05/07 18:34:12.962]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.962]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.963]:AD-IDM-CORE-AX ST: Applying rule 'AX Define LCV
for Company Code'.
[12/05/07 18:34:12.963]:AD-IDM-CORE-AX ST: Action: do-if().
[12/05/07 18:34:12.963]:AD-IDM-CORE-AX ST: Evaluating conditions.
[12/05/07 18:34:12.963]:AD-IDM-CORE-AX ST: (if-op-attr
'xxxCompanyCode' equal "xxxKK") = TRUE.
[12/05/07 18:34:12.963]:AD-IDM-CORE-AX ST: Performing if actions.
[12/05/07 18:34:12.963]:AD-IDM-CORE-AX ST: Action:
do-set-local-variable("lcvCompanyCode",scope="policy","xxxKK").
[12/05/07 18:34:12.964]:AD-IDM-CORE-AX ST: arg-string("xxxKK")
[12/05/07 18:34:12.964]:AD-IDM-CORE-AX ST: token-text("xxxKK")
[12/05/07 18:34:12.964]:AD-IDM-CORE-AX ST: Arg Value: "xxxKK".
[12/05/07 18:34:12.964]:AD-IDM-CORE-AX ST: Action: do-if().
[12/05/07 18:34:12.964]:AD-IDM-CORE-AX ST: Evaluating conditions.
[12/05/07 18:34:12.965]:AD-IDM-CORE-AX ST: (if-op-attr
'xxxCompanyCode' equal "AIU") = FALSE.
[12/05/07 18:34:12.965]:AD-IDM-CORE-AX ST: Action: do-if().
[12/05/07 18:34:12.965]:AD-IDM-CORE-AX ST: Evaluating conditions.
[12/05/07 18:34:12.965]:AD-IDM-CORE-AX ST: (if-op-attr
'xxxCompanyCode' equal "AHA") = FALSE.
[12/05/07 18:34:12.965]:AD-IDM-CORE-AX ST: Action: do-if().
[12/05/07 18:34:12.966]:AD-IDM-CORE-AX ST: Evaluating conditions.
[12/05/07 18:34:12.966]:AD-IDM-CORE-AX ST: (if-op-attr
'xxxCompanyCode' equal "ALICO") = FALSE.
[12/05/07 18:34:12.966]:AD-IDM-CORE-AX ST: Action: do-if().
[12/05/07 18:34:12.966]:AD-IDM-CORE-AX ST: Evaluating conditions.
[12/05/07 18:34:12.966]:AD-IDM-CORE-AX ST: (if-op-attr
'lcvCompanyCode' equal "xxxStar") = FALSE.
[12/05/07 18:34:12.967]:AD-IDM-CORE-AX ST: Action: do-if().
[12/05/07 18:34:12.967]:AD-IDM-CORE-AX ST: Evaluating conditions.
[12/05/07 18:34:12.967]:AD-IDM-CORE-AX ST: (if-op-attr
'xxxCompanyCode' equal "Edison") = FALSE.
[12/05/07 18:34:12.968]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX placement for all user objects'.
[12/05/07 18:34:12.968]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.968]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:12.968]:AD-IDM-CORE-AX ST: Applying rule 'AX placement
for all user objects'.
[12/05/07 18:34:12.968]:AD-IDM-CORE-AX ST: Action:
do-set-op-dest-dn(arg-dn("cn="+token-op-attr("xxxADUsername")+",ou=GP1,ou=Users,ou="+token-local-variable("lcvCompanyCode")+","+token-global-variable("gcvDomainName"))).
[12/05/07 18:34:12.969]:AD-IDM-CORE-AX ST:
arg-dn("cn="+token-op-attr("xxxADUsername")+",ou=GP1,ou=Users,ou="+token-local-variable("lcvCompanyCode")+","+token-global-variable("gcvDomainName"))
[12/05/07 18:34:12.969]:AD-IDM-CORE-AX ST: token-text("cn=")
[12/05/07 18:34:12.970]:AD-IDM-CORE-AX ST:
token-op-attr("xxxADUsername")
[12/05/07 18:34:12.970]:AD-IDM-CORE-AX ST: Token Value:
"1ad00004".
[12/05/07 18:34:12.970]:AD-IDM-CORE-AX ST:
token-text(",ou=GP1,ou=Users,ou=")
[12/05/07 18:34:12.971]:AD-IDM-CORE-AX ST:
token-local-variable("lcvCompanyCode")
[12/05/07 18:34:12.971]:AD-IDM-CORE-AX ST: Token Value: "xxxKK".
[12/05/07 18:34:12.971]:AD-IDM-CORE-AX ST: token-text(",")
[12/05/07 18:34:12.971]:AD-IDM-CORE-AX ST:
token-global-variable("gcvDomainName")
[12/05/07 18:34:12.971]:AD-IDM-CORE-AX ST: Token Value:
"dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET".
[12/05/07 18:34:12.972]:AD-IDM-CORE-AX ST: Arg Value:
"cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET".
[12/05/07 18:34:12.972]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Use Full Name for naming user objects'.
[12/05/07 18:34:12.972]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.972]:AD-IDM-CORE-AX ST: (if-global-variable
'FullNameMap' equal "true") = FALSE.
[12/05/07 18:34:12.973]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.973]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:12.973]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</add-attr>
<add-attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</add-attr>
<add-attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</add-attr>
<add-attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="nspmDistributionPassword"><!-- content
suppressed -->
</add-attr>
<add-attr attr-name="pwdChangedTime">
<value timestamp="1196847252#76" type="time">1196847252</value>
</add-attr>
<add-attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</add-attr>
<add-attr attr-name="DirXML-ADAliasName">
<value type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="userPrincipalName">
<value type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<operation-data
unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK"/>
</add>
</input>
</nds>
[12/05/07 18:34:12.990]:AD-IDM-CORE-AX ST:Submitting add to subscriber
shim.
[12/05/07 18:34:12.991]:AD-IDM-CORE-AX ST:Applying command transformation
policies.
[12/05/07 18:34:12.991]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CSubCommandP01-AD Password Options%-C.
[12/05/07 18:34:12.991]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:12.993]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Force user to change password at next logon'.
[12/05/07 18:34:12.993]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:12.994]:AD-IDM-CORE-AX ST: (if-operation equal "add")
= TRUE.
[12/05/07 18:34:12.995]:AD-IDM-CORE-AX ST: (if-op-attr
'xxxAXADUserAccountControl' equal "1") = FALSE.
[12/05/07 18:34:12.995]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:12.995]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:12.999]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</add-attr>
<add-attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</add-attr>
<add-attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</add-attr>
<add-attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="nspmDistributionPassword"><!-- content
suppressed -->
</add-attr>
<add-attr attr-name="pwdChangedTime">
<value timestamp="1196847252#76" type="time">1196847252</value>
</add-attr>
<add-attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</add-attr>
<add-attr attr-name="DirXML-ADAliasName">
<value type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="userPrincipalName">
<value type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<operation-data
unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK"/>
</add>
</input>
</nds>
[12/05/07 18:34:13.009]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CCommand%-C.
[12/05/07 18:34:13.010]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:13.011]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'default Exchange assignment'.
[12/05/07 18:34:13.011]:AD-IDM-CORE-AX ST: (if-global-variable
'ExchMailboxPolicy' equal "policy") = FALSE.
[12/05/07 18:34:13.011]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.011]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:13.013]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</add-attr>
<add-attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</add-attr>
<add-attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</add-attr>
<add-attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="nspmDistributionPassword"><!-- content
suppressed -->
</add-attr>
<add-attr attr-name="pwdChangedTime">
<value timestamp="1196847252#76" type="time">1196847252</value>
</add-attr>
<add-attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</add-attr>
<add-attr attr-name="DirXML-ADAliasName">
<value type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="userPrincipalName">
<value type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<operation-data
unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK"/>
</add>
</input>
</nds>
[12/05/07 18:34:13.025]:AD-IDM-CORE-AX ST:Applying policy: %+C%14C'A set
of rules that are executed when any one of the user name mapping options
are selected.'%-C.
[12/05/07 18:34:13.025]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:13.026]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'consider user objects when name mapping is enabled'.
[12/05/07 18:34:13.027]:AD-IDM-CORE-AX ST: (if-class-name not-equal
"User") = FALSE.
[12/05/07 18:34:13.027]:AD-IDM-CORE-AX ST: (if-global-variable
'FullNameMap' equal "false") = TRUE.
[12/05/07 18:34:13.027]:AD-IDM-CORE-AX ST: (if-global-variable
'LogonNameMap' equal "false") = TRUE.
[12/05/07 18:34:13.027]:AD-IDM-CORE-AX ST: (if-global-variable
'UpnMap' equal "none") = FALSE.
[12/05/07 18:34:13.029]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.029]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'generate full name on merge'.
[12/05/07 18:34:13.029]:AD-IDM-CORE-AX ST: (if-global-variable
'FullNameMap' equal "true") = FALSE.
[12/05/07 18:34:13.029]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.030]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'map full name to destination object name'.
[12/05/07 18:34:13.031]:AD-IDM-CORE-AX ST: (if-global-variable
'FullNameMap' equal "true") = FALSE.
[12/05/07 18:34:13.031]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.031]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'escape source object name'.
[12/05/07 18:34:13.031]:AD-IDM-CORE-AX ST: (if-operation equal
"rename") = FALSE.
[12/05/07 18:34:13.031]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.033]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'map rename to NT logon name'.
[12/05/07 18:34:13.033]:AD-IDM-CORE-AX ST: (if-global-variable
'LogonNameMap' equal "true") = FALSE.
[12/05/07 18:34:13.033]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.034]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'map rename to Active Directory logon name'.
[12/05/07 18:34:13.034]:AD-IDM-CORE-AX ST: (if-global-variable
'UpnMap' equal "edir-name-auth") = TRUE.
[12/05/07 18:34:13.035]:AD-IDM-CORE-AX ST: (if-operation equal
"rename") = FALSE.
[12/05/07 18:34:13.035]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.035]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'map e-mail address to Active Directory logon name'.
[12/05/07 18:34:13.035]:AD-IDM-CORE-AX ST: (if-global-variable
'UpnMap' equal "edir-mail-auth") = FALSE.
[12/05/07 18:34:13.037]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.037]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'unmap e-mail address from Active Directory logon name'.
[12/05/07 18:34:13.037]:AD-IDM-CORE-AX ST: (if-global-variable
'UpnMap' equal "edir-mail-auth") = FALSE.
[12/05/07 18:34:13.038]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.039]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'map e-mail address to Active Directory logon name on
merge'.
[12/05/07 18:34:13.039]:AD-IDM-CORE-AX ST: (if-global-variable
'UpnMap' equal "edir-mail-auth") = FALSE.
[12/05/07 18:34:13.039]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.039]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'unmap e-mail address from Active Directory logon name
on merge'.
[12/05/07 18:34:13.041]:AD-IDM-CORE-AX ST: (if-global-variable
'UpnMap' equal "edir-mail-auth") = FALSE.
[12/05/07 18:34:13.041]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.041]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'discard unwanted renames'.
[12/05/07 18:34:13.042]:AD-IDM-CORE-AX ST: (if-global-variable
'FullNameMap' equal "true") = FALSE.
[12/05/07 18:34:13.042]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.043]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:13.043]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</add-attr>
<add-attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</add-attr>
<add-attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</add-attr>
<add-attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="nspmDistributionPassword"><!-- content
suppressed -->
</add-attr>
<add-attr attr-name="pwdChangedTime">
<value timestamp="1196847252#76" type="time">1196847252</value>
</add-attr>
<add-attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</add-attr>
<add-attr attr-name="DirXML-ADAliasName">
<value type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="userPrincipalName">
<value type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<operation-data
unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK"/>
</add>
</input>
</nds>
[12/05/07 18:34:13.057]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14C'Transform NMAS attribute to password elements'%-C.
[12/05/07 18:34:13.057]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:13.057]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Convert adds of the nspmDistributionPassword attribute
to password elements'.
[12/05/07 18:34:13.058]:AD-IDM-CORE-AX ST: (if-operation equal "add")
= TRUE.
[12/05/07 18:34:13.059]:AD-IDM-CORE-AX ST: (if-op-attr
'nspmDistributionPassword' available) = TRUE.
[12/05/07 18:34:13.059]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.059]:AD-IDM-CORE-AX ST: Applying rule 'Convert adds
of the nspmDistributionPassword attribute to password elements'.
[12/05/07 18:34:13.059]:AD-IDM-CORE-AX ST: Action:
do-set-dest-password(token-xpath("add-attr[@attr-name='nspmDistributionPassword']//value")).
[12/05/07 18:34:13.061]:AD-IDM-CORE-AX ST:
arg-string(token-xpath("add-attr[@attr-name='nspmDistributionPassword']//value"))
[12/05/07 18:34:13.061]:AD-IDM-CORE-AX ST:
token-xpath("add-attr[@attr-name='nspmDistributionPassword']//value")
[12/05/07 18:34:13.062]:AD-IDM-CORE-AX ST: Token Value: "--
suppressed --".
[12/05/07 18:34:13.063]:AD-IDM-CORE-AX ST: Arg Value: "--
suppressed --".
[12/05/07 18:34:13.063]:AD-IDM-CORE-AX ST: Action:
do-strip-op-attr("nspmDistributionPassword").
[12/05/07 18:34:13.063]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Block modifies for failed password publish operations
if reset password is false'.
[12/05/07 18:34:13.065]:AD-IDM-CORE-AX ST: (if-global-variable
'reset-external-password-on-failure' equal "false") = FALSE.
[12/05/07 18:34:13.065]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.065]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Convert modifies of a nspmDistributionPassword
attribute to a modify password operation'.
[12/05/07 18:34:13.066]:AD-IDM-CORE-AX ST: (if-operation equal
"modify") = FALSE.
[12/05/07 18:34:13.067]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.067]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Block empty modify operations'.
[12/05/07 18:34:13.067]:AD-IDM-CORE-AX ST: (if-operation equal
"modify") = FALSE.
[12/05/07 18:34:13.067]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.067]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:13.069]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</add-attr>
<add-attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</add-attr>
<add-attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</add-attr>
<add-attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="pwdChangedTime">
<value timestamp="1196847252#76" type="time">1196847252</value>
</add-attr>
<add-attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</add-attr>
<add-attr attr-name="DirXML-ADAliasName">
<value type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="userPrincipalName">
<value type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<password><!-- content suppressed --></password>
<operation-data
unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK"/>
</add>
</input>
</nds>
[12/05/07 18:34:13.082]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CPassword(Sub)-Default Password Policy%-C.
[12/05/07 18:34:13.082]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:13.082]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'On User add, provide default password of Surname if no
password exists'.
[12/05/07 18:34:13.083]:AD-IDM-CORE-AX ST: (if-operation equal "add")
= TRUE.
[12/05/07 18:34:13.083]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:13.083]:AD-IDM-CORE-AX ST: (if-password
not-available) = FALSE.
[12/05/07 18:34:13.084]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.085]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:13.085]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</add-attr>
<add-attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</add-attr>
<add-attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</add-attr>
<add-attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="pwdChangedTime">
<value timestamp="1196847252#76" type="time">1196847252</value>
</add-attr>
<add-attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</add-attr>
<add-attr attr-name="DirXML-ADAliasName">
<value type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="userPrincipalName">
<value type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<password><!-- content suppressed --></password>
<operation-data
unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK"/>
</add>
</input>
</nds>
[12/05/07 18:34:13.092]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14C'Subscribe to password changes'%-C.
[12/05/07 18:34:13.092]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:13.092]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Block subscribing to passwords when objects are added'.
[12/05/07 18:34:13.093]:AD-IDM-CORE-AX ST: (if-global-variable
'enable-password-subscribe' equal "false") = FALSE.
[12/05/07 18:34:13.093]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.093]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Block subscribing to password modifications'.
[12/05/07 18:34:13.093]:AD-IDM-CORE-AX ST: (if-global-variable
'enable-password-subscribe' equal "false") = FALSE.
[12/05/07 18:34:13.094]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.094]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:13.094]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</add-attr>
<add-attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</add-attr>
<add-attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</add-attr>
<add-attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="pwdChangedTime">
<value timestamp="1196847252#76" type="time">1196847252</value>
</add-attr>
<add-attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</add-attr>
<add-attr attr-name="DirXML-ADAliasName">
<value type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="userPrincipalName">
<value type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<password><!-- content suppressed --></password>
<operation-data
unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK"/>
</add>
</input>
</nds>
[12/05/07 18:34:13.100]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14C'Payloads for subscribe to password changes'%-C.
[12/05/07 18:34:13.105]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:13.105]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Add operation-data element to password subscribe
operations'.
[12/05/07 18:34:13.105]:AD-IDM-CORE-AX ST: (if-operation equal "add")
= TRUE.
[12/05/07 18:34:13.105]:AD-IDM-CORE-AX ST: (if-password available) =
TRUE.
[12/05/07 18:34:13.105]:AD-IDM-CORE-AX ST: (if-xpath not-true
"operation-data") = FALSE.
[12/05/07 18:34:13.106]:AD-IDM-CORE-AX ST: (if-operation equal
"modify-password") = FALSE.
[12/05/07 18:34:13.106]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.106]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Add payload data to a reset password from a failed
password publish operation'.
[12/05/07 18:34:13.106]:AD-IDM-CORE-AX ST: (if-operation equal
"modify-password") = FALSE.
[12/05/07 18:34:13.107]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.107]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Add payload data to password subscribe operations'.
[12/05/07 18:34:13.107]:AD-IDM-CORE-AX ST: (if-operation equal "add")
= TRUE.
[12/05/07 18:34:13.107]:AD-IDM-CORE-AX ST: (if-password available) =
TRUE.
[12/05/07 18:34:13.107]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.108]:AD-IDM-CORE-AX ST: Applying rule 'Add payload
data to password subscribe operations'.
[12/05/07 18:34:13.108]:AD-IDM-CORE-AX ST: Action:
do-append-xml-element("password-subscribe-status","operation-data").
[12/05/07 18:34:13.108]:AD-IDM-CORE-AX ST: Action:
do-append-xml-element("association","operation-data/password-subscribe-status").
[12/05/07 18:34:13.109]:AD-IDM-CORE-AX ST: Action:
do-append-xml-text("operation-data/password-subscribe-status/association",token-association()).
[12/05/07 18:34:13.109]:AD-IDM-CORE-AX ST:
arg-string(token-association())
[12/05/07 18:34:13.109]:AD-IDM-CORE-AX ST: token-association()
[12/05/07 18:34:13.109]:AD-IDM-CORE-AX ST: Token Value: "".
[12/05/07 18:34:13.109]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:13.110]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:13.110]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</add-attr>
<add-attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</add-attr>
<add-attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</add-attr>
<add-attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="pwdChangedTime">
<value timestamp="1196847252#76" type="time">1196847252</value>
</add-attr>
<add-attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</add-attr>
<add-attr attr-name="DirXML-ADAliasName">
<value type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="userPrincipalName">
<value type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<password><!-- content suppressed --></password>
<operation-data unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK">
<password-subscribe-status>
<association/>
</password-subscribe-status>
</operation-data>
</add>
</input>
</nds>
[12/05/07 18:34:13.116]:AD-IDM-CORE-AX ST:Applying policy: %+C%14C'Resolve
group memberships on an add user'%-C.
[12/05/07 18:34:13.116]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:13.116]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Add new user to associated groups'.
[12/05/07 18:34:13.116]:AD-IDM-CORE-AX ST: (if-operation equal "add")
= TRUE.
[12/05/07 18:34:13.121]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:13.121]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.121]:AD-IDM-CORE-AX ST: Applying rule 'Add new user
to associated groups'.
[12/05/07 18:34:13.121]:AD-IDM-CORE-AX ST: Action:
do-set-local-variable("groupAssociations",arg-node-set(token-xpath("empty"))).
[12/05/07 18:34:13.121]:AD-IDM-CORE-AX ST:
arg-node-set(token-xpath("empty"))
[12/05/07 18:34:13.122]:AD-IDM-CORE-AX ST: token-xpath("empty")
[12/05/07 18:34:13.122]:AD-IDM-CORE-AX ST: Token Value: {}.
[12/05/07 18:34:13.122]:AD-IDM-CORE-AX ST: Arg Value: {}.
[12/05/07 18:34:13.122]:AD-IDM-CORE-AX ST: Action:
do-for-each(arg-node-set(token-src-attr("Group Membership"))).
[12/05/07 18:34:13.123]:AD-IDM-CORE-AX ST:
arg-node-set(token-src-attr("Group Membership"))
[12/05/07 18:34:13.123]:AD-IDM-CORE-AX ST: token-src-attr("Group
Membership")
[12/05/07 18:34:13.123]:AD-IDM-CORE-AX ST: Query from policy
[12/05/07 18:34:13.123]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="User"
dest-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" dest-entry-id="34003"
scope="entry">
<read-attr attr-name="Group Membership"/>
</query>
</input>
</nds>
[12/05/07 18:34:13.124]:AD-IDM-CORE-AX ST: Pumping XDS to
eDirectory.
[12/05/07 18:34:13.124]:AD-IDM-CORE-AX ST: Performing operation
query for xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004.
[12/05/07 18:34:13.126]:AD-IDM-CORE-AX ST: Query from policy
result
[12/05/07 18:34:13.126]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<instance class-name="User"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003"/>
<status level="success"></status>
</output>
</nds>
[12/05/07 18:34:13.127]:AD-IDM-CORE-AX ST: Token Value: {}.
[12/05/07 18:34:13.127]:AD-IDM-CORE-AX ST: Arg Value: {}.
[12/05/07 18:34:13.128]:AD-IDM-CORE-AX ST: Action:
do-for-each(arg-node-set(token-local-variable("groupAssociations"))).
[12/05/07 18:34:13.128]:AD-IDM-CORE-AX ST:
arg-node-set(token-local-variable("groupAssociations"))
[12/05/07 18:34:13.128]:AD-IDM-CORE-AX ST:
token-local-variable("groupAssociations")
[12/05/07 18:34:13.128]:AD-IDM-CORE-AX ST: Token Value: {}.
[12/05/07 18:34:13.128]:AD-IDM-CORE-AX ST: Arg Value: {}.
[12/05/07 18:34:13.129]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX Assign user to INTERNET group'.
[12/05/07 18:34:13.129]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:13.129]:AD-IDM-CORE-AX ST: (if-op-attr
'xxxAXADInternetFlag' equal "1") = TRUE.
[12/05/07 18:34:13.129]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.130]:AD-IDM-CORE-AX ST: Applying rule 'AX Assign
user to INTERNET group'.
[12/05/07 18:34:13.130]:AD-IDM-CORE-AX ST: Action:
do-add-dest-attr-value("Member",class-name="Group",arg-dn("cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net"),"cn=xxxsi001,cn=users,d c=idm6-qa,dc=test-qa,dc=xxx,dc=net").
[12/05/07 18:34:13.130]:AD-IDM-CORE-AX ST:
arg-dn("cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net")
[12/05/07 18:34:13.131]:AD-IDM-CORE-AX ST:
token-text("cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net")
[12/05/07 18:34:13.131]:AD-IDM-CORE-AX ST: Arg Value:
"cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net".
[12/05/07 18:34:13.131]:AD-IDM-CORE-AX ST:
arg-string("cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net")
[12/05/07 18:34:13.131]:AD-IDM-CORE-AX ST:
token-text("cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net")
[12/05/07 18:34:13.132]:AD-IDM-CORE-AX ST: Arg Value:
"cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net".
[12/05/07 18:34:13.132]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:13.132]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</add-attr>
<add-attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</add-attr>
<add-attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</add-attr>
<add-attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="pwdChangedTime">
<value timestamp="1196847252#76" type="time">1196847252</value>
</add-attr>
<add-attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</add-attr>
<add-attr attr-name="DirXML-ADAliasName">
<value type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="userPrincipalName">
<value type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<password><!-- content suppressed --></password>
<operation-data unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK">
<password-subscribe-status>
<association/>
</password-subscribe-status>
</operation-data>
</add>
<modify class-name="Group"
dest-dn="cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net"
event-id="skidmqed1jp#20071205093412#1#2">
<modify-attr attr-name="Member">
<add-value>
<value
type="string">cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:13.139]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CSubCommandP02-Set Destination Attributes Values%-C.
[12/05/07 18:34:13.140]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:13.140]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Set displayName'.
[12/05/07 18:34:13.140]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:13.144]:AD-IDM-CORE-AX ST: (if-operation equal
"modify") = FALSE.
[12/05/07 18:34:13.145]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.145]:AD-IDM-CORE-AX ST: Applying to modify #2.
[12/05/07 18:34:13.145]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Set displayName'.
[12/05/07 18:34:13.145]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = FALSE.
[12/05/07 18:34:13.146]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.146]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:13.146]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</add-attr>
<add-attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</add-attr>
<add-attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</add-attr>
<add-attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="pwdChangedTime">
<value timestamp="1196847252#76" type="time">1196847252</value>
</add-attr>
<add-attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</add-attr>
<add-attr attr-name="DirXML-ADAliasName">
<value type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="userPrincipalName">
<value type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<password><!-- content suppressed --></password>
<operation-data unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK">
<password-subscribe-status>
<association/>
</password-subscribe-status>
</operation-data>
</add>
<modify class-name="Group"
dest-dn="cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net"
event-id="skidmqed1jp#20071205093412#1#2">
<modify-attr attr-name="Member">
<add-value>
<value
type="string">cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:13.153]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CSubCommandP03-Delete User%-C.
[12/05/07 18:34:13.153]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:13.153]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Delete AD account'.
[12/05/07 18:34:13.154]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:13.154]:AD-IDM-CORE-AX ST: (if-op-attr 'xxxAXADFlag'
changing-to "0") = FALSE.
[12/05/07 18:34:13.154]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.154]:AD-IDM-CORE-AX ST: Applying to modify #2.
[12/05/07 18:34:13.154]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Delete AD account'.
[12/05/07 18:34:13.155]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = FALSE.
[12/05/07 18:34:13.155]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.155]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:13.155]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="xxxADUsername">
<value timestamp="1196847252#9" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxCompanyCode">
<value timestamp="1196847252#8" type="string">xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADFlag">
<value timestamp="1196847252#4" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</add-attr>
<add-attr attr-name="xxxTransactionType">
<value timestamp="1196847252#7" type="string">HIRED</value>
</add-attr>
<add-attr attr-name="employeeStatus">
<value timestamp="1196847252#6" type="string">ACTIVE</value>
</add-attr>
<add-attr attr-name="Given Name">
<value timestamp="1196847252#12" type="string">g1ad00004</value>
</add-attr>
<add-attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="pwdChangedTime">
<value timestamp="1196847252#76" type="time">1196847252</value>
</add-attr>
<add-attr attr-name="Surname">
<value timestamp="1196847252#13" type="string">s1ad00004</value>
</add-attr>
<add-attr attr-name="DirXML-ADAliasName">
<value type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="userPrincipalName">
<value type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<password><!-- content suppressed --></password>
<operation-data unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK">
<password-subscribe-status>
<association/>
</password-subscribe-status>
</operation-data>
</add>
<modify class-name="Group"
dest-dn="cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net"
event-id="skidmqed1jp#20071205093412#1#2">
<modify-attr attr-name="Member">
<add-value>
<value
type="string">cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:13.163]:AD-IDM-CORE-AX ST:Filtering out notification-only
attributes.
[12/05/07 18:34:13.163]:AD-IDM-CORE-AX ST: Filtered out <add-attr
attr-name='xxxADUsername'>.
[12/05/07 18:34:13.163]:AD-IDM-CORE-AX ST: Filtered out <add-attr
attr-name='xxxCompanyCode'>.
[12/05/07 18:34:13.169]:AD-IDM-CORE-AX ST: Filtered out <add-attr
attr-name='xxxAXADFlag'>.
[12/05/07 18:34:13.169]:AD-IDM-CORE-AX ST: Filtered out <add-attr
attr-name='xxxAXADInternetFlag'>.
[12/05/07 18:34:13.169]:AD-IDM-CORE-AX ST: Filtered out <add-attr
attr-name='xxxTransactionType'>.
[12/05/07 18:34:13.169]:AD-IDM-CORE-AX ST: Filtered out <add-attr
attr-name='employeeStatus'>.
[12/05/07 18:34:13.170]:AD-IDM-CORE-AX ST: Filtered out <add-attr
attr-name='Given Name'>.
[12/05/07 18:34:13.170]:AD-IDM-CORE-AX ST: Filtered out <add-attr
attr-name='pwdChangedTime'>.
[12/05/07 18:34:13.170]:AD-IDM-CORE-AX ST: Filtered out <add-attr
attr-name='Surname'>.
[12/05/07 18:34:13.170]:AD-IDM-CORE-AX ST:Fixing up association references.
[12/05/07 18:34:13.171]:AD-IDM-CORE-AX ST:Applying schema mapping policies
to output.
[12/05/07 18:34:13.171]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CSchemaMapping%-C.
[12/05/07 18:34:13.171]:AD-IDM-CORE-AX ST: Mapping attr-name
'xxxAXADDescription' to 'description'.
[12/05/07 18:34:13.171]:AD-IDM-CORE-AX ST: Mapping attr-name
'xxxAXADDisplayName' to 'displayName'.
[12/05/07 18:34:13.171]:AD-IDM-CORE-AX ST: Mapping attr-name 'Internet
EMail Address' to 'mail'.
[12/05/07 18:34:13.172]:AD-IDM-CORE-AX ST: Mapping attr-name 'Login
Disabled' to 'dirxml-uACAccountDisable'.
[12/05/07 18:34:13.172]:AD-IDM-CORE-AX ST: Mapping attr-name
'DirXML-ADAliasName' to 'sAMAccountName'.
[12/05/07 18:34:13.172]:AD-IDM-CORE-AX ST: Mapping attr-name 'Member' to
'member'.
[12/05/07 18:34:13.172]:AD-IDM-CORE-AX ST: Mapping class-name 'User' to
'user'.
[12/05/07 18:34:13.173]:AD-IDM-CORE-AX ST: No mapping for class-name
'Group'.
[12/05/07 18:34:13.173]:AD-IDM-CORE-AX ST:Applying output transformation
policies.
[12/05/07 18:34:13.173]:AD-IDM-CORE-AX ST:Applying policy: %+C%14C'Convert
selected attributes to a form most commonly used in Active Directory.'%-C.
[12/05/07 18:34:13.174]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:13.174]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Street Address: Convert LF to CR-LF'.
[12/05/07 18:34:13.174]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.174]:AD-IDM-CORE-AX ST: Applying rule 'Street
Address: Convert LF to CR-LF'.
[12/05/07 18:34:13.174]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("[^r]n","rn",token-local-variable("current-value"))).
[12/05/07 18:34:13.175]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'logonHours: Convert to Active Directory form'.
[12/05/07 18:34:13.175]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.175]:AD-IDM-CORE-AX ST: Applying rule 'logonHours:
Convert to Active Directory form'.
[12/05/07 18:34:13.175]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
[12/05/07 18:34:13.176]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:13.176]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.176]:AD-IDM-CORE-AX ST: Applying rule
'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:13.176]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:13.177]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'lockoutTime: Convert to Active Directory form'.
[12/05/07 18:34:13.177]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.177]:AD-IDM-CORE-AX ST: Applying rule 'lockoutTime:
Convert to Active Directory form'.
[12/05/07 18:34:13.178]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("lockoutTime",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:13.178]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Add: User - convert multi-valued Telephone to single
value'.
[12/05/07 18:34:13.178]:AD-IDM-CORE-AX ST: (if-operation equal "add")
= TRUE.
[12/05/07 18:34:13.178]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:13.179]:AD-IDM-CORE-AX ST: (if-op-attr
'telephoneNumber' available) = FALSE.
[12/05/07 18:34:13.179]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.179]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'update Active Directory logon name'.
[12/05/07 18:34:13.179]:AD-IDM-CORE-AX ST: (if-xpath true
"self::status[@level = 'success']/operation-data/windows-2000-logon-name")
= FALSE.
[12/05/07 18:34:13.180]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.180]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'User: Modify Login Expiration Time - Clear strips Login
Expiration Time and sets destination attribute to
9223372036854775807'.
[12/05/07 18:34:13.180]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:13.180]:AD-IDM-CORE-AX ST: (if-op-attr
'accountExpires' not-available) = TRUE.
[12/05/07 18:34:13.181]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.181]:AD-IDM-CORE-AX ST: Applying rule 'User: Modify
Login Expiration Time - Clear strips Login
Expiration Time and sets destination attribute to
9223372036854775807'.
[12/05/07 18:34:13.181]:AD-IDM-CORE-AX ST: Action:
do-strip-xpath("./modify-attr[@attr-name='accountExpires']").
[12/05/07 18:34:13.182]:AD-IDM-CORE-AX ST: Action:
do-set-dest-attr-value("accountExpires","9223372036854775807").
[12/05/07 18:34:13.182]:AD-IDM-CORE-AX ST:
arg-string("9223372036854775807")
[12/05/07 18:34:13.182]:AD-IDM-CORE-AX ST:
token-text("9223372036854775807")
[12/05/07 18:34:13.182]:AD-IDM-CORE-AX ST: Arg Value:
"9223372036854775807".
[12/05/07 18:34:13.183]:AD-IDM-CORE-AX ST: Applying to modify #2.
[12/05/07 18:34:13.183]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Street Address: Convert LF to CR-LF'.
[12/05/07 18:34:13.183]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.183]:AD-IDM-CORE-AX ST: Applying rule 'Street
Address: Convert LF to CR-LF'.
[12/05/07 18:34:13.183]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("[^r]n","rn",token-local-variable("current-value"))).
[12/05/07 18:34:13.184]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'logonHours: Convert to Active Directory form'.
[12/05/07 18:34:13.184]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.184]:AD-IDM-CORE-AX ST: Applying rule 'logonHours:
Convert to Active Directory form'.
[12/05/07 18:34:13.185]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
[12/05/07 18:34:13.185]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:13.185]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.185]:AD-IDM-CORE-AX ST: Applying rule
'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:13.186]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:13.186]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'lockoutTime: Convert to Active Directory form'.
[12/05/07 18:34:13.186]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.186]:AD-IDM-CORE-AX ST: Applying rule 'lockoutTime:
Convert to Active Directory form'.
[12/05/07 18:34:13.187]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("lockoutTime",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:13.187]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Add: User - convert multi-valued Telephone to single
value'.
[12/05/07 18:34:13.187]:AD-IDM-CORE-AX ST: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:13.188]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.188]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'update Active Directory logon name'.
[12/05/07 18:34:13.188]:AD-IDM-CORE-AX ST: (if-xpath true
"self::status[@level = 'success']/operation-data/windows-2000-logon-name")
= FALSE.
[12/05/07 18:34:13.188]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.189]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'User: Modify Login Expiration Time - Clear strips Login
Expiration Time and sets destination attribute to
9223372036854775807'.
[12/05/07 18:34:13.189]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = FALSE.
[12/05/07 18:34:13.189]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.189]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:13.190]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="description">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="displayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="mail">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="dirxml-uACAccountDisable">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="sAMAccountName">
<value type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="userPrincipalName">
<value type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="accountExpires">
<value type="string">9223372036854775807</value>
</add-attr>
<password><!-- content suppressed --></password>
<operation-data unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK">
<password-subscribe-status>
<association/>
</password-subscribe-status>
</operation-data>
</add>
<modify class-name="Group"
dest-dn="cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net"
event-id="skidmqed1jp#20071205093412#1#2">
<modify-attr attr-name="member">
<add-value>
<value
type="string">cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:13.193]:AD-IDM-CORE-AX ST:Applying policy: %+C%14C'Email
notifications for failed password publications'%-C.
[12/05/07 18:34:13.194]:AD-IDM-CORE-AX ST: Applying to add #1.
[12/05/07 18:34:13.195]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail for a failed publish password operation'.
[12/05/07 18:34:13.195]:AD-IDM-CORE-AX ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:13.195]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.195]:AD-IDM-CORE-AX ST: Applying to modify #2.
[12/05/07 18:34:13.196]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail for a failed publish password operation'.
[12/05/07 18:34:13.196]:AD-IDM-CORE-AX ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:13.196]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.196]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:13.201]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="description">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="displayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="mail">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="dirxml-uACAccountDisable">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="sAMAccountName">
<value type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="userPrincipalName">
<value type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="accountExpires">
<value type="string">9223372036854775807</value>
</add-attr>
<password><!-- content suppressed --></password>
<operation-data unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK">
<password-subscribe-status>
<association/>
</password-subscribe-status>
</operation-data>
</add>
<modify class-name="Group"
dest-dn="cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net"
event-id="skidmqed1jp#20071205093412#1#2">
<modify-attr attr-name="member">
<add-value>
<value
type="string">cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:13.205]:AD-IDM-CORE-AX ST:Submitting document to
subscriber shim:
[12/05/07 18:34:13.206]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="description">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="displayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="mail">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="dirxml-uACAccountDisable">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="sAMAccountName">
<value type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="userPrincipalName">
<value type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="accountExpires">
<value type="string">9223372036854775807</value>
</add-attr>
<password><!-- content suppressed --></password>
<operation-data unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK">
<password-subscribe-status>
<association/>
</password-subscribe-status>
</operation-data>
</add>
<modify class-name="Group"
dest-dn="cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net"
event-id="skidmqed1jp#20071205093412#1#2">
<modify-attr attr-name="member">
<add-value>
<value
type="string">cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:13.209]:AD-IDM-CORE-AX ST:Password synchronization command
detected.
[12/05/07 18:34:13.210]:AD-IDM-CORE-AX ST:Stripping operation data from
input document
[12/05/07 18:34:13.211]:AD-IDM-CORE-AX ST:Remote Interface Driver:
Sending...
[12/05/07 18:34:13.211]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="user"
dest-dn="cn=1ad00004,ou=GP1,ou=Users,ou=xxxKK,dc=IDM6-QA,dc=TEST-QA,dc=xxx,dc=NET"
event-id="skidmqed1jp#20071205093412#1#2"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<add-attr attr-name="description">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-attr>
<add-attr attr-name="displayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-attr>
<add-attr attr-name="mail">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="dirxml-uACAccountDisable">
<value timestamp="1196847252#11" type="state">false</value>
</add-attr>
<add-attr attr-name="sAMAccountName">
<value type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="userPrincipalName">
<value type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-attr>
<add-attr attr-name="accountExpires">
<value type="string">9223372036854775807</value>
</add-attr>
<password><!-- content suppressed --></password>
</add>
<modify class-name="Group"
dest-dn="cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net"
event-id="skidmqed1jp#20071205093412#1#2_opData1">
<modify-attr attr-name="member">
<add-value>
<value
type="string">cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:13.215]:AD-IDM-CORE-AX ST:Remote Interface Driver:
Document sent.
[12/05/07 18:34:13.685]:AD-IDM-CORE-AX :Remote Interface Driver: Received.
[12/05/07 18:34:13.686]:AD-IDM-CORE-AX :
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify-password class-name="user"
event-id="AD-IDM-CORE-AX##116a9a7a2a0##0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<password><!-- content suppressed --></password>
</modify-password>
</input>
</nds>
[12/05/07 18:34:13.687]:AD-IDM-CORE-AX :Remote Interface Driver: Received
document for publisher channel
[12/05/07 18:34:13.687]:AD-IDM-CORE-AX :Remote Interface Driver: Waiting
for receive...
[12/05/07 18:34:13.687]:AD-IDM-CORE-AX PT:Receiving DOM document from
application.
[12/05/07 18:34:13.687]:AD-IDM-CORE-AX PT:
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify-password class-name="user"
event-id="AD-IDM-CORE-AX##116a9a7a2a0##0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<password><!-- content suppressed --></password>
</modify-password>
</input>
</nds>
[12/05/07 18:34:13.693]:AD-IDM-CORE-AX PT:Applying input transformation
policies.
[12/05/07 18:34:13.693]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'Convert
selected attributes to a form most commonly used in the Identity
Vault.'%-C.
[12/05/07 18:34:13.693]:AD-IDM-CORE-AX PT: Applying to modify-password #1.
[12/05/07 18:34:13.694]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:13.694]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:13.694]:AD-IDM-CORE-AX PT: Applying rule
'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:13.694]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("streetAddress",token-replace-all("rn","r",token-local-variable("current-value"))).
[12/05/07 18:34:13.695]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'logonHours: Convert to Login Allowed Time Map form'.
[12/05/07 18:34:13.695]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:13.695]:AD-IDM-CORE-AX PT: Applying rule 'logonHours:
Convert to Login Allowed Time Map form'.
[12/05/07 18:34:13.695]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2eDir($current-value)")).
[12/05/07 18:34:13.696]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:13.696]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:13.696]:AD-IDM-CORE-AX PT: Applying rule
'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:13.697]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateFileTime2Epoch($current-value)")).
[12/05/07 18:34:13.697]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'AX trace whenchanged'.
[12/05/07 18:34:13.698]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:13.698]:AD-IDM-CORE-AX PT: Applying rule 'AX trace
whenchanged'.
[12/05/07 18:34:13.698]:AD-IDM-CORE-AX PT: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:13.698]:AD-IDM-CORE-AX PT:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:13.698]:AD-IDM-CORE-AX PT:
token-op-attr("whenChanged")
[12/05/07 18:34:13.699]:AD-IDM-CORE-AX PT: Token Value: "".
[12/05/07 18:34:13.699]:AD-IDM-CORE-AX PT: Arg Value: "".
[12/05/07 18:34:13.699]:AD-IDM-CORE-AX PT:
[12/05/07 18:34:13.699]:AD-IDM-CORE-AX PT: Action:
do-trace-message(level="3",token-src-attr("whenChanged")).
[12/05/07 18:34:13.699]:AD-IDM-CORE-AX PT:
arg-string(token-src-attr("whenChanged"))
[12/05/07 18:34:13.699]:AD-IDM-CORE-AX PT:
token-src-attr("whenChanged")
[12/05/07 18:34:13.700]:AD-IDM-CORE-AX PT: Query from policy
[12/05/07 18:34:13.700]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="user"
dest-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net"
scope="entry">
<association>104387554f8b9e4f9924f86d579db540</association>
<read-attr attr-name="whenChanged"/>
</query>
</input>
</nds>
[12/05/07 18:34:13.701]:AD-IDM-CORE-AX PT: Querying publisher
shim.
[12/05/07 18:34:13.701]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="user"
dest-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net"
event-id="0" scope="entry">
<association>104387554f8b9e4f9924f86d579db540</association>
<read-attr attr-name="whenChanged"/>
</query>
</input>
</nds>
[12/05/07 18:34:13.702]:AD-IDM-CORE-AX PT: Remote Interface
Publisher: Querying remote Publisher...
[12/05/07 18:34:13.703]:AD-IDM-CORE-AX PT: Remote Interface
Driver: Sending...
[12/05/07 18:34:13.703]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="user"
dest-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net"
event-id="0" scope="entry">
<association>104387554f8b9e4f9924f86d579db540</association>
<read-attr attr-name="whenChanged"/>
</query>
</input>
</nds>
[12/05/07 18:34:13.706]:AD-IDM-CORE-AX PT: Remote Interface
Driver: Document sent.
[12/05/07 18:34:13.733]:AD-IDM-CORE-AX :Remote Interface Driver: Received.
[12/05/07 18:34:13.733]:AD-IDM-CORE-AX :
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<instance class-name="user" event-id="0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<attr attr-name="whenChanged">
<value naming="true" type="string">20071205093403.0Z</value>
</attr>
</instance>
</output>
</nds>
[12/05/07 18:34:13.735]:AD-IDM-CORE-AX :Remote Interface Driver: Received
document for publisher channel
[12/05/07 18:34:13.735]:AD-IDM-CORE-AX :Remote Interface Driver: Waiting
for receive...
[12/05/07 18:34:13.736]:AD-IDM-CORE-AX PT: Publisher shim
returned:
[12/05/07 18:34:13.736]:AD-IDM-CORE-AX PT:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<instance class-name="user" event-id="0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<attr attr-name="whenChanged">
<value naming="true" type="string">20071205093403.0Z</value>
</attr>
</instance>
</output>
</nds>
[12/05/07 18:34:13.738]:AD-IDM-CORE-AX PT: Query from policy
result
[12/05/07 18:34:13.738]:AD-IDM-CORE-AX PT:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<instance class-name="user" event-id="0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<attr attr-name="whenChanged">
<value naming="true" type="string">20071205093403.0Z</value>
</attr>
</instance>
</output>
</nds>
[12/05/07 18:34:13.740]:AD-IDM-CORE-AX PT: Token Value:
"20071205093403.0Z".
[12/05/07 18:34:13.740]:AD-IDM-CORE-AX PT: Arg Value:
"20071205093403.0Z".
[12/05/07 18:34:13.740]:AD-IDM-CORE-AX PT:20071205093403.0Z
[12/05/07 18:34:13.744]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'AX trace whenchange'.
[12/05/07 18:34:13.745]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:13.745]:AD-IDM-CORE-AX PT: Applying rule 'AX trace
whenchange'.
[12/05/07 18:34:13.745]:AD-IDM-CORE-AX PT: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:13.746]:AD-IDM-CORE-AX PT:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:13.746]:AD-IDM-CORE-AX PT:
token-op-attr("whenChanged")
[12/05/07 18:34:13.747]:AD-IDM-CORE-AX :Remote Interface Driver: Received.
[12/05/07 18:34:13.747]:AD-IDM-CORE-AX :
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<add-association dest-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004"
dest-entry-id="34003"
event-id="skidmqed1jp#20071205093412#1#2">104387554f8b9e 4f9924f86d579db540</add-association>
<status event-id="skidmqed1jp#20071205093412#1#2" level="success"/>
<status event-id="skidmqed1jp#20071205093412#1#2_opData1"
level="success"/>
</output>
</nds>
[12/05/07 18:34:13.749]:AD-IDM-CORE-AX :Remote Interface Driver: Received
document for subscriber channel
[12/05/07 18:34:13.749]:AD-IDM-CORE-AX :Remote Interface Driver: Waiting
for receive...
[12/05/07 18:34:13.750]:AD-IDM-CORE-AX ST:Password synchronization command
status detected.
[12/05/07 18:34:13.750]:AD-IDM-CORE-AX ST:Restoring operation data to
output document
[12/05/07 18:34:13.750]:AD-IDM-CORE-AX ST:SubscriptionShim.execute()
returned:
[12/05/07 18:34:13.751]:AD-IDM-CORE-AX ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<add-association dest-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004"
dest-entry-id="34003"
event-id="skidmqed1jp#20071205093412#1#2">104387554f8b9e 4f9924f86d579db540<operation-data
unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK">
<password-subscribe-status>
<association/>
</password-subscribe-status>
</operation-data>
</add-association>
<status event-id="skidmqed1jp#20071205093412#1#2" level="success">
<operation-data unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK">
<password-subscribe-status>
<association/>
</password-subscribe-status>
</operation-data>
</status>
<status event-id="skidmqed1jp#20071205093412#1#2" level="success"/>
</output>
</nds>
[12/05/07 18:34:13.753]:AD-IDM-CORE-AX ST:Applying input transformation
policies.
[12/05/07 18:34:13.753]:AD-IDM-CORE-AX ST:Applying policy: %+C%14C'Convert
selected attributes to a form most commonly used in the Identity
Vault.'%-C.
[12/05/07 18:34:13.753]:AD-IDM-CORE-AX ST: Applying to add-association #1.
[12/05/07 18:34:13.754]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:13.755]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.755]:AD-IDM-CORE-AX ST: Applying rule
'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:13.755]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("rn","r",token-local-variable("current-value"))).
[12/05/07 18:34:13.756]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'logonHours: Convert to Login Allowed Time Map form'.
[12/05/07 18:34:13.756]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.756]:AD-IDM-CORE-AX ST: Applying rule 'logonHours:
Convert to Login Allowed Time Map form'.
[12/05/07 18:34:13.761]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2eDir($current-value)")).
[12/05/07 18:34:13.761]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:13.761]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.762]:AD-IDM-CORE-AX ST: Applying rule
'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:13.762]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateFileTime2Epoch($current-value)")).
[12/05/07 18:34:13.763]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchanged'.
[12/05/07 18:34:13.763]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.764]:AD-IDM-CORE-AX ST: Applying rule 'AX trace
whenchanged'.
[12/05/07 18:34:13.764]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:13.765]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:13.765]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:13.765]:AD-IDM-CORE-AX ST: Token Value: "".
[12/05/07 18:34:13.766]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:13.766]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:13.766]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-src-attr("whenChanged")).
[12/05/07 18:34:13.766]:AD-IDM-CORE-AX ST:
arg-string(token-src-attr("whenChanged"))
[12/05/07 18:34:13.767]:AD-IDM-CORE-AX ST:
token-src-attr("whenChanged")
[12/05/07 18:34:13.767]:AD-IDM-CORE-AX ST: Token Value: "".
[12/05/07 18:34:13.767]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:13.767]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:13.767]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchange'.
[12/05/07 18:34:13.768]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.768]:AD-IDM-CORE-AX ST: Applying rule 'AX trace
whenchange'.
[12/05/07 18:34:13.768]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:13.769]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:13.769]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:13.769]:AD-IDM-CORE-AX ST: Token Value: "".
[12/05/07 18:34:13.770]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:13.770]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:13.770]:AD-IDM-CORE-AX ST: Applying to status #2.
[12/05/07 18:34:13.770]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:13.771]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.771]:AD-IDM-CORE-AX ST: Applying rule
'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:13.771]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("rn","r",token-local-variable("current-value"))).
[12/05/07 18:34:13.772]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'logonHours: Convert to Login Allowed Time Map form'.
[12/05/07 18:34:13.772]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.772]:AD-IDM-CORE-AX ST: Applying rule 'logonHours:
Convert to Login Allowed Time Map form'.
[12/05/07 18:34:13.772]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2eDir($current-value)")).
[12/05/07 18:34:13.773]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:13.774]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.774]:AD-IDM-CORE-AX ST: Applying rule
'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:13.774]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateFileTime2Epoch($current-value)")).
[12/05/07 18:34:13.775]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchanged'.
[12/05/07 18:34:13.775]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.775]:AD-IDM-CORE-AX ST: Applying rule 'AX trace
whenchanged'.
[12/05/07 18:34:13.775]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:13.776]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:13.776]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:13.777]:AD-IDM-CORE-AX ST: Token Value: "".
[12/05/07 18:34:13.777]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:13.777]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:13.777]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-src-attr("whenChanged")).
[12/05/07 18:34:13.777]:AD-IDM-CORE-AX ST:
arg-string(token-src-attr("whenChanged"))
[12/05/07 18:34:13.778]:AD-IDM-CORE-AX ST:
token-src-attr("whenChanged")
[12/05/07 18:34:13.778]:AD-IDM-CORE-AX ST: Token Value: "".
[12/05/07 18:34:13.778]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:13.779]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:13.779]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchange'.
[12/05/07 18:34:13.779]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.779]:AD-IDM-CORE-AX ST: Applying rule 'AX trace
whenchange'.
[12/05/07 18:34:13.779]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:13.780]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:13.780]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:13.781]:AD-IDM-CORE-AX ST: Token Value: "".
[12/05/07 18:34:13.781]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:13.781]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:13.781]:AD-IDM-CORE-AX ST: Applying to status #3.
[12/05/07 18:34:13.782]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:13.782]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.782]:AD-IDM-CORE-AX ST: Applying rule
'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:13.783]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("rn","r",token-local-variable("current-value"))).
[12/05/07 18:34:13.783]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'logonHours: Convert to Login Allowed Time Map form'.
[12/05/07 18:34:13.784]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.784]:AD-IDM-CORE-AX ST: Applying rule 'logonHours:
Convert to Login Allowed Time Map form'.
[12/05/07 18:34:13.784]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2eDir($current-value)")).
[12/05/07 18:34:13.785]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:13.785]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.785]:AD-IDM-CORE-AX ST: Applying rule
'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:13.786]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateFileTime2Epoch($current-value)")).
[12/05/07 18:34:13.786]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchanged'.
[12/05/07 18:34:13.787]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.787]:AD-IDM-CORE-AX ST: Applying rule 'AX trace
whenchanged'.
[12/05/07 18:34:13.787]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:13.787]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:13.788]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:13.788]:AD-IDM-CORE-AX ST: Token Value: "".
[12/05/07 18:34:13.831]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:13.832]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:13.832]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-src-attr("whenChanged")).
[12/05/07 18:34:13.832]:AD-IDM-CORE-AX ST:
arg-string(token-src-attr("whenChanged"))
[12/05/07 18:34:13.832]:AD-IDM-CORE-AX ST:
token-src-attr("whenChanged")
[12/05/07 18:34:13.833]:AD-IDM-CORE-AX ST: Token Value: "".
[12/05/07 18:34:13.833]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:13.833]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:13.833]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchange'.
[12/05/07 18:34:13.834]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:13.834]:AD-IDM-CORE-AX ST: Applying rule 'AX trace
whenchange'.
[12/05/07 18:34:13.834]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:13.835]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:13.835]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:13.835]:AD-IDM-CORE-AX ST: Token Value: "".
[12/05/07 18:34:13.835]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:13.835]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:13.836]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:13.836]:AD-IDM-CORE-AX ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<add-association dest-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004"
dest-entry-id="34003"
event-id="skidmqed1jp#20071205093412#1#2">104387554f8b9e 4f9924f86d579db540<operation-data
unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK">
<password-subscribe-status>
<association/>
</password-subscribe-status>
</operation-data>
</add-association>
<status event-id="skidmqed1jp#20071205093412#1#2" level="success">
<operation-data unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK">
<password-subscribe-status>
<association/>
</password-subscribe-status>
</operation-data>
</status>
<status event-id="skidmqed1jp#20071205093412#1#2" level="success"/>
</output>
</nds>
[12/05/07 18:34:13.839]:AD-IDM-CORE-AX ST:Applying policy: %+C%14C'Email
notifications for failed password subscriptions'%-C.
[12/05/07 18:34:13.840]:AD-IDM-CORE-AX ST: Applying to add-association #1.
[12/05/07 18:34:13.840]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on a failure when subscribing to passwords'.
[12/05/07 18:34:13.841]:AD-IDM-CORE-AX ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:13.841]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.841]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on failure to reset connected system
password using the Identity Manager data store password'.
[12/05/07 18:34:13.842]:AD-IDM-CORE-AX ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:13.842]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.842]:AD-IDM-CORE-AX ST: Applying to status #2.
[12/05/07 18:34:13.843]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on a failure when subscribing to passwords'.
[12/05/07 18:34:13.843]:AD-IDM-CORE-AX ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:13.843]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.844]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on failure to reset connected system
password using the Identity Manager data store password'.
[12/05/07 18:34:13.844]:AD-IDM-CORE-AX ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:13.845]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.845]:AD-IDM-CORE-AX ST: Applying to status #3.
[12/05/07 18:34:13.845]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on a failure when subscribing to passwords'.
[12/05/07 18:34:13.845]:AD-IDM-CORE-AX ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:13.846]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.846]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on failure to reset connected system
password using the Identity Manager data store password'.
[12/05/07 18:34:13.847]:AD-IDM-CORE-AX ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:13.847]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:13.847]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:13.848]:AD-IDM-CORE-AX ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<add-association dest-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004"
dest-entry-id="34003"
event-id="skidmqed1jp#20071205093412#1#2">104387554f8b9e 4f9924f86d579db540<operation-data
unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK">
<password-subscribe-status>
<association/>
</password-subscribe-status>
</operation-data>
</add-association>
<status event-id="skidmqed1jp#20071205093412#1#2" level="success">
<operation-data unmatched-src-dn="CN=1ad00004,OU=Employees,OU=xxxKK">
<password-subscribe-status>
<association/>
</password-subscribe-status>
</operation-data>
</status>
<status event-id="skidmqed1jp#20071205093412#1#2" level="success"/>
</output>
</nds>
[12/05/07 18:34:13.851]:AD-IDM-CORE-AX ST:Applying schema mapping policies
to input.
[12/05/07 18:34:13.851]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CSchemaMapping%-C.
[12/05/07 18:34:13.852]:AD-IDM-CORE-AX ST:Resolving association references.
[12/05/07 18:34:13.852]:AD-IDM-CORE-AX ST:Processing returned document.
[12/05/07 18:34:13.852]:AD-IDM-CORE-AX ST:Processing operation
<add-association> for xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004.
[12/05/07 18:34:13.854]:AD-IDM-CORE-AX PT: Token Value: "".
[12/05/07 18:34:13.854]:AD-IDM-CORE-AX PT: Arg Value: "".
[12/05/07 18:34:13.854]:AD-IDM-CORE-AX PT:
[12/05/07 18:34:13.854]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:13.854]:AD-IDM-CORE-AX PT:
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify-password class-name="user"
event-id="AD-IDM-CORE-AX##116a9a7a2a0##0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<password><!-- content suppressed --></password>
</modify-password>
</input>
</nds>
[12/05/07 18:34:13.856]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'Email
notifications for failed password subscriptions'%-C.
[12/05/07 18:34:13.857]:AD-IDM-CORE-AX PT: Applying to modify-password #1.
[12/05/07 18:34:13.859]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Send e-mail on a failure when subscribing to passwords'.
[12/05/07 18:34:13.859]:AD-IDM-CORE-AX PT: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:13.860]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.860]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Send e-mail on failure to reset connected system
password using the Identity Manager data store password'.
[12/05/07 18:34:13.865]:AD-IDM-CORE-AX PT: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:13.865]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.865]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:13.865]:AD-IDM-CORE-AX PT:
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify-password class-name="user"
event-id="AD-IDM-CORE-AX##116a9a7a2a0##0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<password><!-- content suppressed --></password>
</modify-password>
</input>
</nds>
[12/05/07 18:34:13.867]:AD-IDM-CORE-AX PT:Applying schema mapping policies
to input.
[12/05/07 18:34:13.867]:AD-IDM-CORE-AX PT:Applying policy:
%+C%14CSchemaMapping%-C.
[12/05/07 18:34:13.868]:AD-IDM-CORE-AX PT: Mapping class-name 'user' to
'User'.
[12/05/07 18:34:13.868]:AD-IDM-CORE-AX PT:Resolving association references.
[12/05/07 18:34:13.868]:AD-IDM-CORE-AX PT:Applying event transformation
policies.
[12/05/07 18:34:13.869]:AD-IDM-CORE-AX PT:Applying policy: %+C%14CEvent
Transform%-C.
[12/05/07 18:34:13.869]:AD-IDM-CORE-AX PT: Applying to modify-password #1.
[12/05/07 18:34:13.869]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'AX OAK add'.
[12/05/07 18:34:13.870]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:13.870]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.870]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'setup for move validation'.
[12/05/07 18:34:13.871]:AD-IDM-CORE-AX PT: (if-operation equal
"move") = FALSE.
[12/05/07 18:34:13.871]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.871]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'setup for rename validation'.
[12/05/07 18:34:13.872]:AD-IDM-CORE-AX PT: (if-operation equal
"rename") = FALSE.
[12/05/07 18:34:13.872]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.872]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'move or rename validation'.
[12/05/07 18:34:13.876]:AD-IDM-CORE-AX PT: (if-local-variable
'cached-object-value' match ".*") = FALSE.
[12/05/07 18:34:13.877]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.877]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'move or rename cached context update'.
[12/05/07 18:34:13.877]:AD-IDM-CORE-AX PT: (if-local-variable
'cached-object-value' match ".*") = FALSE.
[12/05/07 18:34:13.878]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.878]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'veto move'.
[12/05/07 18:34:13.878]:AD-IDM-CORE-AX PT: (if-operation equal
"move") = FALSE.
[12/05/07 18:34:13.878]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.879]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:13.879]:AD-IDM-CORE-AX PT:
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify-password class-name="User"
event-id="AD-IDM-CORE-AX##116a9a7a2a0##0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<password><!-- content suppressed --></password>
</modify-password>
</input>
</nds>
[12/05/07 18:34:13.882]:AD-IDM-CORE-AX PT:Applying publisher filter.
[12/05/07 18:34:13.883]:AD-IDM-CORE-AX PT:Publisher processing
modify-password for
CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net.
[12/05/07 18:34:13.883]:AD-IDM-CORE-AX PT:Applying command transformation
policies.
[12/05/07 18:34:13.883]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'A set
of rules that implement the user name mapping options'%-C.
[12/05/07 18:34:13.884]:AD-IDM-CORE-AX PT: Applying to modify-password #1.
[12/05/07 18:34:13.885]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'consider user objects when name mapping is enabled'.
[12/05/07 18:34:13.885]:AD-IDM-CORE-AX PT: (if-class-name not-equal
"User") = FALSE.
[12/05/07 18:34:13.887]:AD-IDM-CORE-AX PT: (if-global-variable
'FullNameMap' equal "false") = TRUE.
[12/05/07 18:34:13.888]:AD-IDM-CORE-AX PT: (if-global-variable
'LogonNameMap' equal "false") = TRUE.
[12/05/07 18:34:13.888]:AD-IDM-CORE-AX PT: (if-global-variable
'UpnMap' equal "none") = FALSE.
[12/05/07 18:34:13.888]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.888]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'full name mapping: discard unwanted renames'.
[12/05/07 18:34:13.891]:AD-IDM-CORE-AX ST:Processing operation <status>
for .
[12/05/07 18:34:13.892]:AD-IDM-CORE-AX ST:
DirXML Log Event -------------------
Driver: xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX
Channel: Subscriber
Object: xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004
Status: Success
[12/05/07 18:34:13.889]:AD-IDM-CORE-AX PT: (if-global-variable
'FullNameMap' equal "true") = FALSE.
[12/05/07 18:34:13.895]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.895]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'logon name mapping: map NT logon name to Identity Vault
object name'.
[12/05/07 18:34:13.896]:AD-IDM-CORE-AX PT: (if-global-variable
'LogonNameMap' equal "true") = FALSE.
[12/05/07 18:34:13.896]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.896]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'map e-mail address to Active Directory logon name'.
[12/05/07 18:34:13.897]:AD-IDM-CORE-AX PT: (if-global-variable
'UpnMap' equal "ad-mail-auth") = FALSE.
[12/05/07 18:34:13.897]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.897]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'unmap e-mail address from Active Directory logon name'.
[12/05/07 18:34:13.898]:AD-IDM-CORE-AX PT: (if-global-variable
'UpnMap' equal "ad-mail-auth") = FALSE.
[12/05/07 18:34:13.898]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.899]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:13.899]:AD-IDM-CORE-AX PT:
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify-password class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="AD-IDM-CORE-AX##116a9a7a2a0##0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<password><!-- content suppressed --></password>
</modify-password>
</input>
</nds>
[12/05/07 18:34:13.901]:AD-IDM-CORE-AX PT:Applying policy: %+C%14CCommand
Transform%-C.
[12/05/07 18:34:13.901]:AD-IDM-CORE-AX PT: Applying to modify-password #1.
[12/05/07 18:34:13.902]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'set cached context value on merge'.
[12/05/07 18:34:13.902]:AD-IDM-CORE-AX PT: (if-operation equal
"modify") = FALSE.
[12/05/07 18:34:13.902]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.902]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Set Equivalent To Me when adding object to a group'.
[12/05/07 18:34:13.903]:AD-IDM-CORE-AX PT: (if-class-name equal
"Group") = FALSE.
[12/05/07 18:34:13.903]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.903]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Remove Equivalent To Me when removing object from a
group'.
[12/05/07 18:34:13.905]:AD-IDM-CORE-AX PT: (if-class-name equal
"Group") = FALSE.
[12/05/07 18:34:13.905]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.905]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'remove managed attributes when object disassociated'.
[12/05/07 18:34:13.906]:AD-IDM-CORE-AX PT: (if-operation equal
"remove-association") = FALSE.
[12/05/07 18:34:13.906]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.907]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Prevent unassociated users from being removed from
groups'.
[12/05/07 18:34:13.907]:AD-IDM-CORE-AX PT: (if-operation equal
"modify") = FALSE.
[12/05/07 18:34:13.907]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.908]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:13.908]:AD-IDM-CORE-AX PT:
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify-password class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="AD-IDM-CORE-AX##116a9a7a2a0##0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<password><!-- content suppressed --></password>
</modify-password>
</input>
</nds>
[12/05/07 18:34:13.912]:AD-IDM-CORE-AX PT:Applying XSLT policy:
%+C%14CCommand+Transform+SS%-C.
[12/05/07 18:34:13.913]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:13.913]:AD-IDM-CORE-AX PT:
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify-password class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="AD-IDM-CORE-AX##116a9a7a2a0##0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<password><!-- content suppressed --></password>
</modify-password>
</input>
</nds>
[12/05/07 18:34:13.915]:AD-IDM-CORE-AX PT:Applying policy:
%+C%14CPassword(Pub)-Default Password Policy%-C.
[12/05/07 18:34:13.915]:AD-IDM-CORE-AX PT: Applying to modify-password #1.
[12/05/07 18:34:13.915]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'On User add, provide default password of @Dirxml1 if no
password exists'.
[12/05/07 18:34:13.916]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:13.916]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.916]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:13.916]:AD-IDM-CORE-AX PT:
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify-password class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="AD-IDM-CORE-AX##116a9a7a2a0##0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<password><!-- content suppressed --></password>
</modify-password>
</input>
</nds>
[12/05/07 18:34:13.925]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'Publish
Passwords'%-C.
[12/05/07 18:34:13.927]:AD-IDM-CORE-AX PT: Applying to modify-password #1.
[12/05/07 18:34:13.927]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Block publishing passwords to Identity Manager data
store when adding a object'.
[12/05/07 18:34:13.928]:AD-IDM-CORE-AX PT: (if-global-variable
'enable-password-publish' equal "false") = FALSE.
[12/05/07 18:34:13.928]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.928]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Block sending modify-password changes to the Identity
Manager data store'.
[12/05/07 18:34:13.928]:AD-IDM-CORE-AX PT: (if-global-variable
'enable-password-publish' equal "false") = FALSE.
[12/05/07 18:34:13.929]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.929]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:13.929]:AD-IDM-CORE-AX PT:
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify-password class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="AD-IDM-CORE-AX##116a9a7a2a0##0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<password><!-- content suppressed --></password>
</modify-password>
</input>
</nds>
[12/05/07 18:34:13.931]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'Publish
passwords to NMAS distribution password'%-C.
[12/05/07 18:34:13.932]:AD-IDM-CORE-AX PT: Applying to modify-password #1.
[12/05/07 18:34:13.932]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Add nspmDistributionAttribute attribute to add
operation'.
[12/05/07 18:34:13.933]:AD-IDM-CORE-AX PT: (if-global-variable
'publish-password-to-dp' equal "true") = TRUE.
[12/05/07 18:34:13.938]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:13.938]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.938]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Change modify-password operations to a modify'.
[12/05/07 18:34:13.938]:AD-IDM-CORE-AX PT: (if-global-variable
'publish-password-to-dp' equal "true") = TRUE.
[12/05/07 18:34:13.938]:AD-IDM-CORE-AX PT: (if-operation equal
"modify-password") = TRUE.
[12/05/07 18:34:13.939]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:13.939]:AD-IDM-CORE-AX PT: Applying rule 'Change
modify-password operations to a modify'.
[12/05/07 18:34:13.939]:AD-IDM-CORE-AX PT: Action:
do-add-dest-attr-value("nspmDistributionPassword",token-password()).
[12/05/07 18:34:13.939]:AD-IDM-CORE-AX PT:
arg-string(token-password())
[12/05/07 18:34:13.939]:AD-IDM-CORE-AX PT: token-password()
[12/05/07 18:34:13.940]:AD-IDM-CORE-AX PT: Token Value: "--
suppressed --".
[12/05/07 18:34:13.940]:AD-IDM-CORE-AX PT: Arg Value: "--
suppressed --".
[12/05/07 18:34:13.940]:AD-IDM-CORE-AX PT: Action:
do-set-xml-attr("event-id","../modify","pwd-publish").
[12/05/07 18:34:13.940]:AD-IDM-CORE-AX PT: arg-string("pwd-publish")
[12/05/07 18:34:13.945]:AD-IDM-CORE-AX PT:
token-text("pwd-publish")
[12/05/07 18:34:13.945]:AD-IDM-CORE-AX PT: Arg Value:
"pwd-publish".
[12/05/07 18:34:13.945]:AD-IDM-CORE-AX PT: Action:
do-set-xml-attr("enforce-password-policy","../modify/modify-attr[@attr-name='nspmDistributionPassword']",token-global-variable("enforce-password-policy")).
[12/05/07 18:34:13.945]:AD-IDM-CORE-AX PT:
arg-string(token-global-variable("enforce-password-policy"))
[12/05/07 18:34:13.946]:AD-IDM-CORE-AX PT:
token-global-variable("enforce-password-policy")
[12/05/07 18:34:13.946]:AD-IDM-CORE-AX PT: Token Value: "true".
[12/05/07 18:34:13.947]:AD-IDM-CORE-AX PT: Arg Value: "true".
[12/05/07 18:34:13.947]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:13.947]:AD-IDM-CORE-AX PT:
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify-password class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="AD-IDM-CORE-AX##116a9a7a2a0##0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<password><!-- content suppressed --></password>
</modify-password>
<modify class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="pwd-publish"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="nspmDistributionPassword"
enforce-password-policy="true"><!-- content suppressed -->
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:13.958]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'Publish
passwords to NDS password.'%-C.
[12/05/07 18:34:13.958]:AD-IDM-CORE-AX PT: Applying to modify-password #1.
[12/05/07 18:34:13.959]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Block publishing passwords to NDS password'.
[12/05/07 18:34:13.959]:AD-IDM-CORE-AX PT: (if-global-variable
'publish-password-to-nds' equal "false") = TRUE.
[12/05/07 18:34:13.959]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:13.960]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.960]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Block sending modify-password changes to the NDS
password'.
[12/05/07 18:34:13.960]:AD-IDM-CORE-AX PT: (if-global-variable
'publish-password-to-nds' equal "false") = TRUE.
[12/05/07 18:34:13.961]:AD-IDM-CORE-AX PT: (if-operation equal
"modify-password") = TRUE.
[12/05/07 18:34:13.961]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:13.961]:AD-IDM-CORE-AX PT: Applying rule 'Block sending
modify-password changes to the NDS password'.
[12/05/07 18:34:13.962]:AD-IDM-CORE-AX PT: Action: do-veto().
[12/05/07 18:34:13.962]:AD-IDM-CORE-AX PT: Applying to modify #2.
[12/05/07 18:34:13.962]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Block publishing passwords to NDS password'.
[12/05/07 18:34:13.962]:AD-IDM-CORE-AX PT: (if-global-variable
'publish-password-to-nds' equal "false") = TRUE.
[12/05/07 18:34:13.963]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:13.963]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.963]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Block sending modify-password changes to the NDS
password'.
[12/05/07 18:34:13.964]:AD-IDM-CORE-AX PT: (if-global-variable
'publish-password-to-nds' equal "false") = TRUE.
[12/05/07 18:34:13.964]:AD-IDM-CORE-AX PT: (if-operation equal
"modify-password") = FALSE.
[12/05/07 18:34:13.957]:AD-IDM-CORE-AX ST:Processing operation <status>
for .
[12/05/07 18:34:13.969]:AD-IDM-CORE-AX ST:
DirXML Log Event -------------------
Driver: xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX
Channel: Subscriber
Object: xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004
Status: Success
[12/05/07 18:34:13.968]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:13.972]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:13.972]:AD-IDM-CORE-AX PT:
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="pwd-publish"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="nspmDistributionPassword"
enforce-password-policy="true"><!-- content suppressed -->
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:13.974]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'Publish
password payloads'%-C.
[12/05/07 18:34:13.974]:AD-IDM-CORE-AX PT: Applying to modify #1.
[12/05/07 18:34:13.974]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Add operation-data element to password operations'.
[12/05/07 18:34:13.975]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:13.975]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:13.975]:AD-IDM-CORE-AX PT: (if-operation equal
"modify-password") = FALSE.
[12/05/07 18:34:13.975]:AD-IDM-CORE-AX PT: (if-operation equal
"modify") = TRUE.
[12/05/07 18:34:13.976]:AD-IDM-CORE-AX PT: (if-xpath true
"modify-attr[@attr-name='nspmDistributionPassword']") = TRUE.
[12/05/07 18:34:13.976]:AD-IDM-CORE-AX PT: (if-xpath not-true
"operation-data") = TRUE.
[12/05/07 18:34:13.976]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:13.981]:AD-IDM-CORE-AX PT: Applying rule 'Add
operation-data element to password operations'.
[12/05/07 18:34:13.981]:AD-IDM-CORE-AX PT: Action:
do-append-xml-element("operation-data",".").
[12/05/07 18:34:13.982]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Add payload data to password operations'.
[12/05/07 18:34:13.982]:AD-IDM-CORE-AX PT: (if-operation equal
"addPayloadToPassword") = FALSE.
[12/05/07 18:34:13.982]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:13.982]:AD-IDM-CORE-AX PT: (if-operation equal
"modify-password") = FALSE.
[12/05/07 18:34:13.983]:AD-IDM-CORE-AX PT: (if-operation equal
"modify") = TRUE.
[12/05/07 18:34:13.983]:AD-IDM-CORE-AX PT: (if-xpath true
"modify-attr[@attr-name='nspmDistributionPassword']") = TRUE.
[12/05/07 18:34:13.983]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:13.984]:AD-IDM-CORE-AX PT: Applying rule 'Add payload
data to password operations'.
[12/05/07 18:34:13.984]:AD-IDM-CORE-AX PT: Action:
do-append-xml-element("password-publish-status","operation-data").
[12/05/07 18:34:13.984]:AD-IDM-CORE-AX PT: Action:
do-append-xml-element("association","operation-data/password-publish-status").
[12/05/07 18:34:13.985]:AD-IDM-CORE-AX PT: Action:
do-append-xml-text("operation-data/password-publish-status/association",token-association()).
[12/05/07 18:34:13.985]:AD-IDM-CORE-AX PT:
arg-string(token-association())
[12/05/07 18:34:13.985]:AD-IDM-CORE-AX PT: token-association()
[12/05/07 18:34:13.986]:AD-IDM-CORE-AX PT: Token Value:
"104387554f8b9e4f9924f86d579db540".
[12/05/07 18:34:13.986]:AD-IDM-CORE-AX PT: Arg Value:
"104387554f8b9e4f9924f86d579db540".
[12/05/07 18:34:13.986]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:13.987]:AD-IDM-CORE-AX PT:
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="pwd-publish"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="nspmDistributionPassword"
enforce-password-policy="true"><!-- content suppressed -->
</modify-attr>
<operation-data>
<password-publish-status>
<association>104387554f8b9e4f9924f86d579db540</association>
</password-publish-status>
</operation-data>
</modify>
</input>
</nds>
[12/05/07 18:34:13.989]:AD-IDM-CORE-AX PT:Filtering out notification-only
attributes.
[12/05/07 18:34:13.990]:AD-IDM-CORE-AX PT:Pumping XDS to eDirectory.
[12/05/07 18:34:13.990]:AD-IDM-CORE-AX PT:Performing operation modify for
JPxxxKKEmployees1ad00004.
[12/05/07 18:34:13.991]:AD-IDM-CORE-AX PT:Modifying entry
JPxxxKKEmployees1ad00004.
[12/05/07 18:34:14.004]:AD-IDM-CORE-AX PT:Optimize Password determined
operation not needed.
[12/05/07 18:34:14.005]:AD-IDM-CORE-AX PT:
DirXML Log Event -------------------
Driver: xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX
Channel: Publisher
Object:
CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net
(JPxxxKKEmployees1ad00004)
Status: Success
[12/05/07 18:34:14.022]:AD-IDM-CORE-AX ST:Password synchronization event
status recorded.
[12/05/07 18:34:14.022]:AD-IDM-CORE-AX ST:End transaction.
[12/05/07 18:34:14.027]:AD-IDM-CORE-AX PT:Fixing up association references.
[12/05/07 18:34:14.027]:AD-IDM-CORE-AX PT:Applying schema mapping policies
to output.
[12/05/07 18:34:14.028]:AD-IDM-CORE-AX PT:Applying policy:
%+C%14CSchemaMapping%-C.
[12/05/07 18:34:14.028]:AD-IDM-CORE-AX PT:Applying output transformation
policies.
[12/05/07 18:34:14.028]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'Convert
selected attributes to a form most commonly used in Active Directory.'%-C.
[12/05/07 18:34:14.029]:AD-IDM-CORE-AX PT: Applying to status #1.
[12/05/07 18:34:14.029]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Street Address: Convert LF to CR-LF'.
[12/05/07 18:34:14.030]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:14.030]:AD-IDM-CORE-AX PT: Applying rule 'Street
Address: Convert LF to CR-LF'.
[12/05/07 18:34:14.030]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("streetAddress",token-replace-all("[^r]n","rn",token-local-variable("current-value"))).
[12/05/07 18:34:14.031]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'logonHours: Convert to Active Directory form'.
[12/05/07 18:34:14.032]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:14.032]:AD-IDM-CORE-AX PT: Applying rule 'logonHours:
Convert to Active Directory form'.
[12/05/07 18:34:14.032]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
[12/05/07 18:34:14.033]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:14.033]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:14.034]:AD-IDM-CORE-AX PT: Applying rule
'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:14.034]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:14.035]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'lockoutTime: Convert to Active Directory form'.
[12/05/07 18:34:14.035]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:14.036]:AD-IDM-CORE-AX PT: Applying rule 'lockoutTime:
Convert to Active Directory form'.
[12/05/07 18:34:14.036]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("lockoutTime",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:14.037]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Add: User - convert multi-valued Telephone to single
value'.
[12/05/07 18:34:14.038]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:14.038]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:14.038]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'update Active Directory logon name'.
[12/05/07 18:34:14.039]:AD-IDM-CORE-AX PT: (if-xpath true
"self::status[@level = 'success']/operation-data/windows-2000-logon-name")
= FALSE.
[12/05/07 18:34:14.039]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:14.039]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'User: Modify Login Expiration Time - Clear strips Login
Expiration Time and sets destination attribute to
9223372036854775807'.
[12/05/07 18:34:14.040]:AD-IDM-CORE-AX PT: (if-class-name equal
"User") = FALSE.
[12/05/07 18:34:14.041]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:14.041]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:14.042]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="pwd-publish" level="success"><operation-data>
<password-publish-status>
<association>104387554f8b9e4f9924f86d579db540</association>
</password-publish-status>
</operation-data>
<application>DirXML</application>
<module>AD-IDM-CORE-AX</module>

<object-dn>CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net
(JPxxxKKEmployees1ad00004)</object-dn>
<component>Publisher</component>
</status>
</output>
</nds>
[12/05/07 18:34:14.044]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'Email
notifications for failed password publications'%-C.
[12/05/07 18:34:14.049]:AD-IDM-CORE-AX PT: Applying to status #1.
[12/05/07 18:34:14.049]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Send e-mail for a failed publish password operation'.
[12/05/07 18:34:14.049]:AD-IDM-CORE-AX PT: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:14.050]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:14.050]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:14.050]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="pwd-publish" level="success"><operation-data>
<password-publish-status>
<association>104387554f8b9e4f9924f86d579db540</association>
</password-publish-status>
</operation-data>
<application>DirXML</application>
<module>AD-IDM-CORE-AX</module>

<object-dn>CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net
(JPxxxKKEmployees1ad00004)</object-dn>
<component>Publisher</component>
</status>
</output>
</nds>
[12/05/07 18:34:14.053]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="pwd-publish" level="success"><operation-data>
<password-publish-status>
<association>104387554f8b9e4f9924f86d579db540</association>
</password-publish-status>
</operation-data>
<application>DirXML</application>
<module>AD-IDM-CORE-AX</module>

<object-dn>CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net
(JPxxxKKEmployees1ad00004)</object-dn>
<component>Publisher</component>
</status>
</output>
</nds>
[12/05/07 18:34:14.055]:AD-IDM-CORE-AX PT:Remote Interface Driver:
Sending...
[12/05/07 18:34:14.055]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="pwd-publish" level="success"><operation-data>
<password-publish-status>
<association>104387554f8b9e4f9924f86d579db540</association>
</password-publish-status>
</operation-data>
<application>DirXML</application>
<module>AD-IDM-CORE-AX</module>

<object-dn>CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net
(JPxxxKKEmployees1ad00004)</object-dn>
<component>Publisher</component>
</status>
</output>
</nds>
[12/05/07 18:34:14.058]:AD-IDM-CORE-AX PT:Remote Interface Driver:
Document sent.
[12/05/07 18:34:27.062]:AD-IDM-CORE-AX :Remote Interface Driver: Received.
[12/05/07 18:34:27.062]:AD-IDM-CORE-AX :
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="user" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<add-attr attr-name="displayName">
<value naming="false" type="string">g1ad00004 s1ad00004</value>
</add-attr>
<add-attr attr-name="objectSid">
<value naming="false"
type="octet">AQUAAAAAAAUVAAAAe3RfdLe+eR+TTrOSfwQAA A==</value>
</add-attr>
<add-attr attr-name="sAMAccountName">
<value naming="false" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="whenCreated">
<value naming="false" type="string">20071205093403.0Z</value>
</add-attr>
</add>
</input>
</nds>
[12/05/07 18:34:27.066]:AD-IDM-CORE-AX :Remote Interface Driver: Received
document for publisher channel
[12/05/07 18:34:27.066]:AD-IDM-CORE-AX :Remote Interface Driver: Waiting
for receive...
[12/05/07 18:34:27.067]:AD-IDM-CORE-AX PT:Receiving DOM document from
application.
[12/05/07 18:34:27.067]:AD-IDM-CORE-AX PT:
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="user" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<add-attr attr-name="displayName">
<value naming="false" type="string">g1ad00004 s1ad00004</value>
</add-attr>
<add-attr attr-name="objectSid">
<value naming="false"
type="octet">AQUAAAAAAAUVAAAAe3RfdLe+eR+TTrOSfwQAA A==</value>
</add-attr>
<add-attr attr-name="sAMAccountName">
<value naming="false" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="whenCreated">
<value naming="false" type="string">20071205093403.0Z</value>
</add-attr>
</add>
</input>
</nds>
[12/05/07 18:34:27.074]:AD-IDM-CORE-AX PT:Applying input transformation
policies.
[12/05/07 18:34:27.075]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'Convert
selected attributes to a form most commonly used in the Identity
Vault.'%-C.
[12/05/07 18:34:27.075]:AD-IDM-CORE-AX PT: Applying to add #1.
[12/05/07 18:34:27.075]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:27.076]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:27.076]:AD-IDM-CORE-AX PT: Applying rule
'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:27.076]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("streetAddress",token-replace-all("rn","r",token-local-variable("current-value"))).
[12/05/07 18:34:27.077]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'logonHours: Convert to Login Allowed Time Map form'.
[12/05/07 18:34:27.077]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:27.077]:AD-IDM-CORE-AX PT: Applying rule 'logonHours:
Convert to Login Allowed Time Map form'.
[12/05/07 18:34:27.078]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2eDir($current-value)")).
[12/05/07 18:34:27.078]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:27.079]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:27.079]:AD-IDM-CORE-AX PT: Applying rule
'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:27.079]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateFileTime2Epoch($current-value)")).
[12/05/07 18:34:27.080]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'AX trace whenchanged'.
[12/05/07 18:34:27.080]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:27.080]:AD-IDM-CORE-AX PT: Applying rule 'AX trace
whenchanged'.
[12/05/07 18:34:27.081]:AD-IDM-CORE-AX PT: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:27.081]:AD-IDM-CORE-AX PT:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:27.082]:AD-IDM-CORE-AX PT:
token-op-attr("whenChanged")
[12/05/07 18:34:27.082]:AD-IDM-CORE-AX PT: Token Value: "".
[12/05/07 18:34:27.082]:AD-IDM-CORE-AX PT: Arg Value: "".
[12/05/07 18:34:27.083]:AD-IDM-CORE-AX PT:
[12/05/07 18:34:27.083]:AD-IDM-CORE-AX PT: Action:
do-trace-message(level="3",token-src-attr("whenChanged")).
[12/05/07 18:34:27.083]:AD-IDM-CORE-AX PT:
arg-string(token-src-attr("whenChanged"))
[12/05/07 18:34:27.084]:AD-IDM-CORE-AX PT:
token-src-attr("whenChanged")
[12/05/07 18:34:27.084]:AD-IDM-CORE-AX PT: Query from policy
[12/05/07 18:34:27.085]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="user"
dest-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net"
scope="entry">
<association>104387554f8b9e4f9924f86d579db540</association>
<read-attr attr-name="whenChanged"/>
</query>
</input>
</nds>
[12/05/07 18:34:27.086]:AD-IDM-CORE-AX PT: Querying publisher
shim.
[12/05/07 18:34:27.086]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="user"
dest-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net"
event-id="0" scope="entry">
<association>104387554f8b9e4f9924f86d579db540</association>
<read-attr attr-name="whenChanged"/>
</query>
</input>
</nds>
[12/05/07 18:34:27.092]:AD-IDM-CORE-AX PT: Remote Interface
Publisher: Querying remote Publisher...
[12/05/07 18:34:27.092]:AD-IDM-CORE-AX PT: Remote Interface
Driver: Sending...
[12/05/07 18:34:27.093]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="user"
dest-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net"
event-id="0" scope="entry">
<association>104387554f8b9e4f9924f86d579db540</association>
<read-attr attr-name="whenChanged"/>
</query>
</input>
</nds>
[12/05/07 18:34:27.095]:AD-IDM-CORE-AX PT: Remote Interface
Driver: Document sent.
[12/05/07 18:34:27.106]:AD-IDM-CORE-AX :Remote Interface Driver: Received.
[12/05/07 18:34:27.106]:AD-IDM-CORE-AX :
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<instance class-name="user" event-id="0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<attr attr-name="whenChanged">
<value naming="true" type="string">20071205093403.0Z</value>
</attr>
</instance>
</output>
</nds>
[12/05/07 18:34:27.109]:AD-IDM-CORE-AX :Remote Interface Driver: Received
document for publisher channel
[12/05/07 18:34:27.109]:AD-IDM-CORE-AX :Remote Interface Driver: Waiting
for receive...
[12/05/07 18:34:27.109]:AD-IDM-CORE-AX PT: Publisher shim
returned:
[12/05/07 18:34:27.110]:AD-IDM-CORE-AX PT:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<instance class-name="user" event-id="0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<attr attr-name="whenChanged">
<value naming="true" type="string">20071205093403.0Z</value>
</attr>
</instance>
</output>
</nds>
[12/05/07 18:34:27.116]:AD-IDM-CORE-AX PT: Query from policy
result
[12/05/07 18:34:27.116]:AD-IDM-CORE-AX PT:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<instance class-name="user" event-id="0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<attr attr-name="whenChanged">
<value naming="true" type="string">20071205093403.0Z</value>
</attr>
</instance>
</output>
</nds>
[12/05/07 18:34:27.118]:AD-IDM-CORE-AX PT: Token Value:
"20071205093403.0Z".
[12/05/07 18:34:27.119]:AD-IDM-CORE-AX PT: Arg Value:
"20071205093403.0Z".
[12/05/07 18:34:27.119]:AD-IDM-CORE-AX PT:20071205093403.0Z
[12/05/07 18:34:27.119]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'AX trace whenchange'.
[12/05/07 18:34:27.120]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:27.120]:AD-IDM-CORE-AX PT: Applying rule 'AX trace
whenchange'.
[12/05/07 18:34:27.120]:AD-IDM-CORE-AX PT: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:27.120]:AD-IDM-CORE-AX PT:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:27.121]:AD-IDM-CORE-AX PT:
token-op-attr("whenChanged")
[12/05/07 18:34:27.121]:AD-IDM-CORE-AX PT: Token Value: "".
[12/05/07 18:34:27.121]:AD-IDM-CORE-AX PT: Arg Value: "".
[12/05/07 18:34:27.121]:AD-IDM-CORE-AX PT:
[12/05/07 18:34:27.122]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:27.122]:AD-IDM-CORE-AX PT:
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="user" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<add-attr attr-name="displayName">
<value naming="false" type="string">g1ad00004 s1ad00004</value>
</add-attr>
<add-attr attr-name="objectSid">
<value naming="false"
type="octet">AQUAAAAAAAUVAAAAe3RfdLe+eR+TTrOSfwQAA A==</value>
</add-attr>
<add-attr attr-name="sAMAccountName">
<value naming="false" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="whenCreated">
<value naming="false" type="string">20071205093403.0Z</value>
</add-attr>
</add>
</input>
</nds>
[12/05/07 18:34:27.124]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'Email
notifications for failed password subscriptions'%-C.
[12/05/07 18:34:27.125]:AD-IDM-CORE-AX PT: Applying to add #1.
[12/05/07 18:34:27.125]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Send e-mail on a failure when subscribing to passwords'.
[12/05/07 18:34:27.126]:AD-IDM-CORE-AX PT: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:27.126]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.126]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Send e-mail on failure to reset connected system
password using the Identity Manager data store password'.
[12/05/07 18:34:27.127]:AD-IDM-CORE-AX PT: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:27.131]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.132]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:27.132]:AD-IDM-CORE-AX PT:
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="user" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<add-attr attr-name="displayName">
<value naming="false" type="string">g1ad00004 s1ad00004</value>
</add-attr>
<add-attr attr-name="objectSid">
<value naming="false"
type="octet">AQUAAAAAAAUVAAAAe3RfdLe+eR+TTrOSfwQAA A==</value>
</add-attr>
<add-attr attr-name="sAMAccountName">
<value naming="false" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="whenCreated">
<value naming="false" type="string">20071205093403.0Z</value>
</add-attr>
</add>
</input>
</nds>
[12/05/07 18:34:27.135]:AD-IDM-CORE-AX PT:Applying schema mapping policies
to input.
[12/05/07 18:34:27.136]:AD-IDM-CORE-AX PT:Applying policy:
%+C%14CSchemaMapping%-C.
[12/05/07 18:34:27.136]:AD-IDM-CORE-AX PT: Mapping class-name 'user' to
'User'.
[12/05/07 18:34:27.136]:AD-IDM-CORE-AX PT: Mapping attr-name
'displayName' to 'xxxAXADDisplayName'.
[12/05/07 18:34:27.137]:AD-IDM-CORE-AX PT: Mapping attr-name 'objectSid'
to 'xxxADSID'.
[12/05/07 18:34:27.137]:AD-IDM-CORE-AX PT: Mapping attr-name
'sAMAccountName' to 'DirXML-ADAliasName'.
[12/05/07 18:34:27.137]:AD-IDM-CORE-AX PT: Mapping attr-name
'whenCreated' to 'xxxAXADAddDate'.
[12/05/07 18:34:27.138]:AD-IDM-CORE-AX PT:Resolving association references.
[12/05/07 18:34:27.138]:AD-IDM-CORE-AX PT:Applying event transformation
policies.
[12/05/07 18:34:27.138]:AD-IDM-CORE-AX PT:Applying policy: %+C%14CEvent
Transform%-C.
[12/05/07 18:34:27.139]:AD-IDM-CORE-AX PT: Applying to add #1.
[12/05/07 18:34:27.139]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'AX OAK add'.
[12/05/07 18:34:27.143]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= TRUE.
[12/05/07 18:34:27.144]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:27.144]:AD-IDM-CORE-AX PT: Applying rule 'AX OAK add'.
[12/05/07 18:34:27.144]:AD-IDM-CORE-AX PT: Action:
do-add-dest-attr-value("description",class-name="User",arg-dn("cn=mytest,ou=employees,ou=xxxKK,u=JP"),"test
add").
[12/05/07 18:34:27.145]:AD-IDM-CORE-AX PT:
arg-dn("cn=mytest,ou=employees,ou=xxxKK,u=JP")
[12/05/07 18:34:27.145]:AD-IDM-CORE-AX PT:
token-text("cn=mytest,ou=employees,ou=xxxKK,u=JP")
[12/05/07 18:34:27.145]:AD-IDM-CORE-AX PT: Arg Value:
"cn=mytest,ou=employees,ou=xxxKK,u=JP".
[12/05/07 18:34:27.146]:AD-IDM-CORE-AX PT: arg-string("test add")
[12/05/07 18:34:27.146]:AD-IDM-CORE-AX PT: token-text("test add")
[12/05/07 18:34:27.146]:AD-IDM-CORE-AX PT: Arg Value: "test add".
[12/05/07 18:34:27.146]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'setup for move validation'.
[12/05/07 18:34:27.147]:AD-IDM-CORE-AX PT: (if-operation equal
"move") = FALSE.
[12/05/07 18:34:27.147]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.147]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'setup for rename validation'.
[12/05/07 18:34:27.148]:AD-IDM-CORE-AX PT: (if-operation equal
"rename") = FALSE.
[12/05/07 18:34:27.148]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.148]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'move or rename validation'.
[12/05/07 18:34:27.149]:AD-IDM-CORE-AX PT: (if-local-variable
'cached-object-value' match ".*") = FALSE.
[12/05/07 18:34:27.149]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.150]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'move or rename cached context update'.
[12/05/07 18:34:27.150]:AD-IDM-CORE-AX PT: (if-local-variable
'cached-object-value' match ".*") = FALSE.
[12/05/07 18:34:27.150]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.150]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'veto move'.
[12/05/07 18:34:27.151]:AD-IDM-CORE-AX PT: (if-operation equal
"move") = FALSE.
[12/05/07 18:34:27.151]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.151]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:27.152]:AD-IDM-CORE-AX PT:
<nds dtdversion="2.2">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<add class-name="User" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<add-attr attr-name="xxxAXADDisplayName">
<value naming="false" type="string">g1ad00004 s1ad00004</value>
</add-attr>
<add-attr attr-name="xxxADSID">
<value naming="false"
type="octet">AQUAAAAAAAUVAAAAe3RfdLe+eR+TTrOSfwQAA A==</value>
</add-attr>
<add-attr attr-name="DirXML-ADAliasName">
<value naming="false" type="string">1ad00004</value>
</add-attr>
<add-attr attr-name="xxxAXADAddDate">
<value naming="false" type="string">20071205093403.0Z</value>
</add-attr>
</add>
<modify class-name="User"
dest-dn="cn=mytest,ou=employees,ou=xxxKK,u=JP"
event-id="AD-IDM-CORE-AX##116a9a7d20d##0">
<modify-attr attr-name="description">
<add-value>
<value>test add</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.157]:AD-IDM-CORE-AX PT:Applying publisher filter.
[12/05/07 18:34:27.158]:AD-IDM-CORE-AX PT:Publisher processing add for
CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net.
[12/05/07 18:34:27.158]:AD-IDM-CORE-AX PT:Found an associated object.
[12/05/07 18:34:27.159]:AD-IDM-CORE-AX PT:Merging eDirectory and
application values.
[12/05/07 18:34:27.159]:AD-IDM-CORE-AX PT:Reading relevant attributes from
JPxxxKKEmployees1ad00004.
[12/05/07 18:34:27.160]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" scope="entry">
<read-attr attr-name="xxxAXADDescription"/>
<read-attr attr-name="xxxAXADDisplayName"/>
<read-attr attr-name="Internet EMail Address"/>
<read-attr attr-name="Login Disabled"/>
<read-attr attr-name="Login Expiration Time"/>
</query>
</input>
</nds>
[12/05/07 18:34:27.161]:AD-IDM-CORE-AX PT:Pumping XDS to eDirectory.
[12/05/07 18:34:27.162]:AD-IDM-CORE-AX PT:Performing operation query for
JPxxxKKEmployees1ad00004.
[12/05/07 18:34:27.164]:AD-IDM-CORE-AX PT:Read result:
[12/05/07 18:34:27.164]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<instance class-name="User" event-id="0"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<association
state="associated">104387554f8b9e4f9924f86d579db54 0</association>
<attr attr-name="xxxAXADDescription">
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</attr>
<attr attr-name="xxxAXADDisplayName">
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</attr>
<attr attr-name="Internet EMail Address">
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</attr>
<attr attr-name="Login Disabled">
<value timestamp="1196847252#11" type="state">false</value>
</attr>
</instance>
<status event-id="0" level="success"></status>
</output>
</nds>
[12/05/07 18:34:27.173]:AD-IDM-CORE-AX PT:Reading relevant attributes from
JPxxxKKEmployees1ad00004.
[12/05/07 18:34:27.173]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" scope="entry">
<read-attr attr-name="xxxADAccountName"/>
<read-attr attr-name="xxxADSID"/>
<read-attr attr-name="xxxAXADAddDate"/>
<read-attr attr-name="xxxAXADDeleteDate"/>
<read-attr attr-name="xxxAXADModifyDate"/>
<read-attr attr-name="DirXML-ADAliasName"/>
<read-attr attr-name="DirXML-ADContext"/>
<read-attr attr-name="Object Class"/>
</query>
</input>
</nds>
[12/05/07 18:34:27.175]:AD-IDM-CORE-AX PT:Pumping XDS to eDirectory.
[12/05/07 18:34:27.176]:AD-IDM-CORE-AX PT:Performing operation query for
JPxxxKKEmployees1ad00004.
[12/05/07 18:34:27.179]:AD-IDM-CORE-AX PT:Read result:
[12/05/07 18:34:27.179]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<instance class-name="User" event-id="0"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<association
state="associated">104387554f8b9e4f9924f86d579db54 0</association>
<attr attr-name="DirXML-ADAliasName">
<value timestamp="1196847252#83" type="string">1ad00004</value>
</attr>
<attr attr-name="Object Class">
<value timestamp="1196847252#26" type="string">User</value>
<value timestamp="1196847252#27" type="string">xxxApprover</value>
<value timestamp="1196847252#28" type="string">xxxAXUser</value>
<value timestamp="1196847252#29" type="string">xxxWorker</value>
<value timestamp="1196847252#30" type="string">xxxEmployee</value>
<value timestamp="1196847252#81"
type="string">DirXML-ApplicationAttrs</value>
<value timestamp="1196847252#32"
type="string">DirXML-PasswordSyncStatusUser</value>
<value timestamp="1196847252#33" type="string">Organizational
Person</value>
<value timestamp="1196847252#34" type="string">Person</value>
<value timestamp="1196847252#35"
type="string">ndsLoginProperties</value>
<value timestamp="1196847252#36" type="string">Top</value>
</attr>
</instance>
<status event-id="0" level="success"></status>
</output>
</nds>
[12/05/07 18:34:27.187]:AD-IDM-CORE-AX PT:Found non-class attribute
xxxADSID.
[12/05/07 18:34:27.187]:AD-IDM-CORE-AX PT:Updating eDirectory with
application values.
[12/05/07 18:34:27.187]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="xxxAXADAddDate">
<remove-all-values/>
<add-value>
<value naming="false" type="string">20071205093403.0Z</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxADSID">
<remove-all-values/>
<add-value>
<value naming="false"
type="octet">AQUAAAAAAAUVAAAAe3RfdLe+eR+TTrOSfwQAA A==</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.190]:AD-IDM-CORE-AX PT:Applying command transformation
policies.
[12/05/07 18:34:27.191]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'A set
of rules that implement the user name mapping options'%-C.
[12/05/07 18:34:27.191]:AD-IDM-CORE-AX PT: Applying to modify #1.
[12/05/07 18:34:27.195]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'consider user objects when name mapping is enabled'.
[12/05/07 18:34:27.196]:AD-IDM-CORE-AX PT: (if-class-name not-equal
"User") = FALSE.
[12/05/07 18:34:27.197]:AD-IDM-CORE-AX PT: (if-global-variable
'FullNameMap' equal "false") = TRUE.
[12/05/07 18:34:27.197]:AD-IDM-CORE-AX PT: (if-global-variable
'LogonNameMap' equal "false") = TRUE.
[12/05/07 18:34:27.197]:AD-IDM-CORE-AX PT: (if-global-variable
'UpnMap' equal "none") = FALSE.
[12/05/07 18:34:27.198]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.198]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'full name mapping: discard unwanted renames'.
[12/05/07 18:34:27.199]:AD-IDM-CORE-AX PT: (if-global-variable
'FullNameMap' equal "true") = FALSE.
[12/05/07 18:34:27.199]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.200]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'logon name mapping: map NT logon name to Identity Vault
object name'.
[12/05/07 18:34:27.200]:AD-IDM-CORE-AX PT: (if-global-variable
'LogonNameMap' equal "true") = FALSE.
[12/05/07 18:34:27.201]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.201]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'map e-mail address to Active Directory logon name'.
[12/05/07 18:34:27.201]:AD-IDM-CORE-AX PT: (if-global-variable
'UpnMap' equal "ad-mail-auth") = FALSE.
[12/05/07 18:34:27.202]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.202]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'unmap e-mail address from Active Directory logon name'.
[12/05/07 18:34:27.202]:AD-IDM-CORE-AX PT: (if-global-variable
'UpnMap' equal "ad-mail-auth") = FALSE.
[12/05/07 18:34:27.203]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.203]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:27.203]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="xxxAXADAddDate">
<remove-all-values/>
<add-value>
<value naming="false" type="string">20071205093403.0Z</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxADSID">
<remove-all-values/>
<add-value>
<value naming="false"
type="octet">AQUAAAAAAAUVAAAAe3RfdLe+eR+TTrOSfwQAA A==</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.206]:AD-IDM-CORE-AX PT:Applying policy: %+C%14CCommand
Transform%-C.
[12/05/07 18:34:27.207]:AD-IDM-CORE-AX PT: Applying to modify #1.
[12/05/07 18:34:27.207]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'set cached context value on merge'.
[12/05/07 18:34:27.211]:AD-IDM-CORE-AX PT: (if-operation equal
"modify") = TRUE.
[12/05/07 18:34:27.212]:AD-IDM-CORE-AX PT: (if-xpath not-true
"@from-merge='true'") = FALSE.
[12/05/07 18:34:27.212]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.212]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Set Equivalent To Me when adding object to a group'.
[12/05/07 18:34:27.213]:AD-IDM-CORE-AX PT: (if-class-name equal
"Group") = FALSE.
[12/05/07 18:34:27.213]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.213]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Remove Equivalent To Me when removing object from a
group'.
[12/05/07 18:34:27.214]:AD-IDM-CORE-AX PT: (if-class-name equal
"Group") = FALSE.
[12/05/07 18:34:27.214]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.214]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'remove managed attributes when object disassociated'.
[12/05/07 18:34:27.215]:AD-IDM-CORE-AX PT: (if-operation equal
"remove-association") = FALSE.
[12/05/07 18:34:27.215]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.215]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Prevent unassociated users from being removed from
groups'.
[12/05/07 18:34:27.216]:AD-IDM-CORE-AX PT: (if-operation equal
"modify") = TRUE.
[12/05/07 18:34:27.217]:AD-IDM-CORE-AX PT: (if-class-name equal
"Group") = FALSE.
[12/05/07 18:34:27.217]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.217]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:27.217]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="xxxAXADAddDate">
<remove-all-values/>
<add-value>
<value naming="false" type="string">20071205093403.0Z</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxADSID">
<remove-all-values/>
<add-value>
<value naming="false"
type="octet">AQUAAAAAAAUVAAAAe3RfdLe+eR+TTrOSfwQAA A==</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.220]:AD-IDM-CORE-AX PT:Applying XSLT policy:
%+C%14CCommand+Transform+SS%-C.
[12/05/07 18:34:27.221]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:27.221]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="xxxAXADAddDate">
<remove-all-values/>
<add-value>
<value naming="false" type="string">20071205093403.0Z</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxADSID">
<remove-all-values/>
<add-value>
<value naming="false"
type="octet">AQUAAAAAAAUVAAAAe3RfdLe+eR+TTrOSfwQAA A==</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.224]:AD-IDM-CORE-AX PT:Applying policy:
%+C%14CPassword(Pub)-Default Password Policy%-C.
[12/05/07 18:34:27.225]:AD-IDM-CORE-AX PT: Applying to modify #1.
[12/05/07 18:34:27.225]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'On User add, provide default password of @Dirxml1 if no
password exists'.
[12/05/07 18:34:27.226]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:27.226]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.226]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:27.226]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="xxxAXADAddDate">
<remove-all-values/>
<add-value>
<value naming="false" type="string">20071205093403.0Z</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxADSID">
<remove-all-values/>
<add-value>
<value naming="false"
type="octet">AQUAAAAAAAUVAAAAe3RfdLe+eR+TTrOSfwQAA A==</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.229]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'Publish
Passwords'%-C.
[12/05/07 18:34:27.230]:AD-IDM-CORE-AX PT: Applying to modify #1.
[12/05/07 18:34:27.230]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Block publishing passwords to Identity Manager data
store when adding a object'.
[12/05/07 18:34:27.230]:AD-IDM-CORE-AX PT: (if-global-variable
'enable-password-publish' equal "false") = FALSE.
[12/05/07 18:34:27.231]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.231]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Block sending modify-password changes to the Identity
Manager data store'.
[12/05/07 18:34:27.235]:AD-IDM-CORE-AX PT: (if-global-variable
'enable-password-publish' equal "false") = FALSE.
[12/05/07 18:34:27.236]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.237]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:27.237]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="xxxAXADAddDate">
<remove-all-values/>
<add-value>
<value naming="false" type="string">20071205093403.0Z</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxADSID">
<remove-all-values/>
<add-value>
<value naming="false"
type="octet">AQUAAAAAAAUVAAAAe3RfdLe+eR+TTrOSfwQAA A==</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.240]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'Publish
passwords to NMAS distribution password'%-C.
[12/05/07 18:34:27.241]:AD-IDM-CORE-AX PT: Applying to modify #1.
[12/05/07 18:34:27.241]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Add nspmDistributionAttribute attribute to add
operation'.
[12/05/07 18:34:27.241]:AD-IDM-CORE-AX PT: (if-global-variable
'publish-password-to-dp' equal "true") = TRUE.
[12/05/07 18:34:27.242]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:27.242]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.242]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Change modify-password operations to a modify'.
[12/05/07 18:34:27.242]:AD-IDM-CORE-AX PT: (if-global-variable
'publish-password-to-dp' equal "true") = TRUE.
[12/05/07 18:34:27.243]:AD-IDM-CORE-AX PT: (if-operation equal
"modify-password") = FALSE.
[12/05/07 18:34:27.243]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.243]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:27.244]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="xxxAXADAddDate">
<remove-all-values/>
<add-value>
<value naming="false" type="string">20071205093403.0Z</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxADSID">
<remove-all-values/>
<add-value>
<value naming="false"
type="octet">AQUAAAAAAAUVAAAAe3RfdLe+eR+TTrOSfwQAA A==</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.246]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'Publish
passwords to NDS password.'%-C.
[12/05/07 18:34:27.247]:AD-IDM-CORE-AX PT: Applying to modify #1.
[12/05/07 18:34:27.247]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Block publishing passwords to NDS password'.
[12/05/07 18:34:27.247]:AD-IDM-CORE-AX PT: (if-global-variable
'publish-password-to-nds' equal "false") = TRUE.
[12/05/07 18:34:27.248]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:27.249]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.249]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Block sending modify-password changes to the NDS
password'.
[12/05/07 18:34:27.250]:AD-IDM-CORE-AX PT: (if-global-variable
'publish-password-to-nds' equal "false") = TRUE.
[12/05/07 18:34:27.250]:AD-IDM-CORE-AX PT: (if-operation equal
"modify-password") = FALSE.
[12/05/07 18:34:27.250]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.250]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:27.251]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="xxxAXADAddDate">
<remove-all-values/>
<add-value>
<value naming="false" type="string">20071205093403.0Z</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxADSID">
<remove-all-values/>
<add-value>
<value naming="false"
type="octet">AQUAAAAAAAUVAAAAe3RfdLe+eR+TTrOSfwQAA A==</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.255]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'Publish
password payloads'%-C.
[12/05/07 18:34:27.259]:AD-IDM-CORE-AX PT: Applying to modify #1.
[12/05/07 18:34:27.260]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Add operation-data element to password operations'.
[12/05/07 18:34:27.260]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:27.260]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:27.261]:AD-IDM-CORE-AX PT: (if-operation equal
"modify-password") = FALSE.
[12/05/07 18:34:27.261]:AD-IDM-CORE-AX PT: (if-operation equal
"modify") = TRUE.
[12/05/07 18:34:27.261]:AD-IDM-CORE-AX PT: (if-xpath true
"modify-attr[@attr-name='nspmDistributionPassword']") = FALSE.
[12/05/07 18:34:27.262]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.262]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Add payload data to password operations'.
[12/05/07 18:34:27.262]:AD-IDM-CORE-AX PT: (if-operation equal
"addPayloadToPassword") = FALSE.
[12/05/07 18:34:27.263]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:27.263]:AD-IDM-CORE-AX PT: (if-operation equal
"modify-password") = FALSE.
[12/05/07 18:34:27.263]:AD-IDM-CORE-AX PT: (if-operation equal
"modify") = TRUE.
[12/05/07 18:34:27.263]:AD-IDM-CORE-AX PT: (if-xpath true
"modify-attr[@attr-name='nspmDistributionPassword']") = FALSE.
[12/05/07 18:34:27.264]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.264]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:27.264]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true"
src-dn="CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="xxxAXADAddDate">
<remove-all-values/>
<add-value>
<value naming="false" type="string">20071205093403.0Z</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxADSID">
<remove-all-values/>
<add-value>
<value naming="false"
type="octet">AQUAAAAAAAUVAAAAe3RfdLe+eR+TTrOSfwQAA A==</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.268]:AD-IDM-CORE-AX PT:Filtering out notification-only
attributes.
[12/05/07 18:34:27.268]:AD-IDM-CORE-AX PT:Pumping XDS to eDirectory.
[12/05/07 18:34:27.268]:AD-IDM-CORE-AX PT:Performing operation modify for
JPxxxKKEmployees1ad00004.
[12/05/07 18:34:27.270]:AD-IDM-CORE-AX PT:Modifying entry
JPxxxKKEmployees1ad00004.
[12/05/07 18:34:27.276]:AD-IDM-CORE-AX PT:Scheduling update of application
with eDirectory values.
[12/05/07 18:34:27.277]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true" qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="JPxxxKKEmployees1ad00004" src-entry-id="34003">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="Login Expiration Time">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<add-value>
<value timestamp="1196847252#11" type="state">false</value>
</add-value>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<add-value>
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<add-value>
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<add-value>
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.296]:AD-IDM-CORE-AX ST:Applying command transformation
policies.
[12/05/07 18:34:27.296]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CSubCommandP01-AD Password Options%-C.
[12/05/07 18:34:27.296]:AD-IDM-CORE-AX ST: Applying to modify #1.
[12/05/07 18:34:27.297]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Force user to change password at next logon'.
[12/05/07 18:34:27.297]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:27.298]:AD-IDM-CORE-AX ST: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:27.298]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.298]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:27.298]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true" qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="JPxxxKKEmployees1ad00004" src-entry-id="34003">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="Login Expiration Time">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<add-value>
<value timestamp="1196847252#11" type="state">false</value>
</add-value>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<add-value>
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<add-value>
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<add-value>
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.309]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CCommand%-C.
[12/05/07 18:34:27.309]:AD-IDM-CORE-AX ST: Applying to modify #1.
[12/05/07 18:34:27.310]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'default Exchange assignment'.
[12/05/07 18:34:27.310]:AD-IDM-CORE-AX ST: (if-global-variable
'ExchMailboxPolicy' equal "policy") = FALSE.
[12/05/07 18:34:27.310]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.311]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:27.311]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true" qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="JPxxxKKEmployees1ad00004" src-entry-id="34003">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="Login Expiration Time">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<add-value>
<value timestamp="1196847252#11" type="state">false</value>
</add-value>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<add-value>
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<add-value>
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<add-value>
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.316]:AD-IDM-CORE-AX ST:Applying policy: %+C%14C'A set
of rules that are executed when any one of the user name mapping options
are selected.'%-C.
[12/05/07 18:34:27.317]:AD-IDM-CORE-AX ST: Applying to modify #1.
[12/05/07 18:34:27.317]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'consider user objects when name mapping is enabled'.
[12/05/07 18:34:27.319]:AD-IDM-CORE-AX PT:
DirXML Log Event -------------------
Driver: xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX
Channel: Publisher
Object:
CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net
(JPxxxKKEmployees1ad00004)
Status: Success
[12/05/07 18:34:27.317]:AD-IDM-CORE-AX ST: (if-class-name not-equal
"User") = FALSE.
[12/05/07 18:34:27.322]:AD-IDM-CORE-AX ST: (if-global-variable
'FullNameMap' equal "false") = TRUE.
[12/05/07 18:34:27.323]:AD-IDM-CORE-AX ST: (if-global-variable
'LogonNameMap' equal "false") = TRUE.
[12/05/07 18:34:27.323]:AD-IDM-CORE-AX ST: (if-global-variable
'UpnMap' equal "none") = FALSE.
[12/05/07 18:34:27.323]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.323]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'generate full name on merge'.
[12/05/07 18:34:27.324]:AD-IDM-CORE-AX ST: (if-global-variable
'FullNameMap' equal "true") = FALSE.
[12/05/07 18:34:27.324]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.324]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'map full name to destination object name'.
[12/05/07 18:34:27.325]:AD-IDM-CORE-AX ST: (if-global-variable
'FullNameMap' equal "true") = FALSE.
[12/05/07 18:34:27.325]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.325]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'escape source object name'.
[12/05/07 18:34:27.326]:AD-IDM-CORE-AX ST: (if-operation equal
"rename") = FALSE.
[12/05/07 18:34:27.326]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.326]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'map rename to NT logon name'.
[12/05/07 18:34:27.327]:AD-IDM-CORE-AX ST: (if-global-variable
'LogonNameMap' equal "true") = FALSE.
[12/05/07 18:34:27.327]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.332]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'map rename to Active Directory logon name'.
[12/05/07 18:34:27.332]:AD-IDM-CORE-AX ST: (if-global-variable
'UpnMap' equal "edir-name-auth") = TRUE.
[12/05/07 18:34:27.333]:AD-IDM-CORE-AX ST: (if-operation equal
"rename") = FALSE.
[12/05/07 18:34:27.333]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.333]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'map e-mail address to Active Directory logon name'.
[12/05/07 18:34:27.334]:AD-IDM-CORE-AX ST: (if-global-variable
'UpnMap' equal "edir-mail-auth") = FALSE.
[12/05/07 18:34:27.334]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.334]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'unmap e-mail address from Active Directory logon name'.
[12/05/07 18:34:27.335]:AD-IDM-CORE-AX ST: (if-global-variable
'UpnMap' equal "edir-mail-auth") = FALSE.
[12/05/07 18:34:27.335]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.335]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'map e-mail address to Active Directory logon name on
merge'.
[12/05/07 18:34:27.336]:AD-IDM-CORE-AX ST: (if-global-variable
'UpnMap' equal "edir-mail-auth") = FALSE.
[12/05/07 18:34:27.336]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.336]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'unmap e-mail address from Active Directory logon name
on merge'.
[12/05/07 18:34:27.337]:AD-IDM-CORE-AX ST: (if-global-variable
'UpnMap' equal "edir-mail-auth") = FALSE.
[12/05/07 18:34:27.337]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.337]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'discard unwanted renames'.
[12/05/07 18:34:27.338]:AD-IDM-CORE-AX ST: (if-global-variable
'FullNameMap' equal "true") = FALSE.
[12/05/07 18:34:27.339]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.339]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:27.339]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true" qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="JPxxxKKEmployees1ad00004" src-entry-id="34003">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="Login Expiration Time">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<add-value>
<value timestamp="1196847252#11" type="state">false</value>
</add-value>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<add-value>
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<add-value>
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<add-value>
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.348]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14C'Transform NMAS attribute to password elements'%-C.
[12/05/07 18:34:27.348]:AD-IDM-CORE-AX ST: Applying to modify #1.
[12/05/07 18:34:27.349]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Convert adds of the nspmDistributionPassword attribute
to password elements'.
[12/05/07 18:34:27.349]:AD-IDM-CORE-AX ST: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:27.349]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.350]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Block modifies for failed password publish operations
if reset password is false'.
[12/05/07 18:34:27.350]:AD-IDM-CORE-AX ST: (if-global-variable
'reset-external-password-on-failure' equal "false") = FALSE.
[12/05/07 18:34:27.351]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.351]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Convert modifies of a nspmDistributionPassword
attribute to a modify password operation'.
[12/05/07 18:34:27.355]:AD-IDM-CORE-AX ST: (if-operation equal
"modify") = TRUE.
[12/05/07 18:34:27.356]:AD-IDM-CORE-AX ST: (if-op-attr
'nspmDistributionPassword' available) = FALSE.
[12/05/07 18:34:27.357]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.357]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Block empty modify operations'.
[12/05/07 18:34:27.357]:AD-IDM-CORE-AX ST: (if-operation equal
"modify") = TRUE.
[12/05/07 18:34:27.358]:AD-IDM-CORE-AX ST: (if-xpath not-true
"modify-attr") = FALSE.
[12/05/07 18:34:27.358]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.359]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:27.359]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true" qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="JPxxxKKEmployees1ad00004" src-entry-id="34003">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="Login Expiration Time">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<add-value>
<value timestamp="1196847252#11" type="state">false</value>
</add-value>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<add-value>
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<add-value>
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<add-value>
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.367]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CPassword(Sub)-Default Password Policy%-C.
[12/05/07 18:34:27.367]:AD-IDM-CORE-AX ST: Applying to modify #1.
[12/05/07 18:34:27.372]:AD-IDM-CORE-AX PT:Applying publisher filter.
[12/05/07 18:34:27.372]:AD-IDM-CORE-AX PT: Filtered out <modify-attr
attr-name='description'>.
[12/05/07 18:34:27.372]:AD-IDM-CORE-AX PT: Filtered out <modify
class-name='User'>.
[12/05/07 18:34:27.373]:AD-IDM-CORE-AX PT:Fixing up association references.
[12/05/07 18:34:27.373]:AD-IDM-CORE-AX PT:Applying schema mapping policies
to output.
[12/05/07 18:34:27.373]:AD-IDM-CORE-AX PT:Applying policy:
%+C%14CSchemaMapping%-C.
[12/05/07 18:34:27.374]:AD-IDM-CORE-AX PT:Applying output transformation
policies.
[12/05/07 18:34:27.374]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'Convert
selected attributes to a form most commonly used in Active Directory.'%-C.
[12/05/07 18:34:27.375]:AD-IDM-CORE-AX PT: Applying to status #1.
[12/05/07 18:34:27.375]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Street Address: Convert LF to CR-LF'.
[12/05/07 18:34:27.375]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:27.371]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'On User add, provide default password of Surname if no
password exists'.
[12/05/07 18:34:27.376]:AD-IDM-CORE-AX ST: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:27.377]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.377]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:27.377]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true" qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="JPxxxKKEmployees1ad00004" src-entry-id="34003">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="Login Expiration Time">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<add-value>
<value timestamp="1196847252#11" type="state">false</value>
</add-value>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<add-value>
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<add-value>
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<add-value>
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.383]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14C'Subscribe to password changes'%-C.
[12/05/07 18:34:27.383]:AD-IDM-CORE-AX ST: Applying to modify #1.
[12/05/07 18:34:27.375]:AD-IDM-CORE-AX PT: Applying rule 'Street
Address: Convert LF to CR-LF'.
[12/05/07 18:34:27.384]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("streetAddress",token-replace-all("[^r]n","rn",token-local-variable("current-value"))).
[12/05/07 18:34:27.384]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'logonHours: Convert to Active Directory form'.
[12/05/07 18:34:27.385]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:27.385]:AD-IDM-CORE-AX PT: Applying rule 'logonHours:
Convert to Active Directory form'.
[12/05/07 18:34:27.385]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
[12/05/07 18:34:27.386]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:27.386]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:27.386]:AD-IDM-CORE-AX PT: Applying rule
'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:27.387]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:27.387]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'lockoutTime: Convert to Active Directory form'.
[12/05/07 18:34:27.388]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:27.388]:AD-IDM-CORE-AX PT: Applying rule 'lockoutTime:
Convert to Active Directory form'.
[12/05/07 18:34:27.388]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("lockoutTime",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:27.389]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Add: User - convert multi-valued Telephone to single
value'.
[12/05/07 18:34:27.389]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:27.389]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.389]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'update Active Directory logon name'.
[12/05/07 18:34:27.390]:AD-IDM-CORE-AX PT: (if-xpath true
"self::status[@level = 'success']/operation-data/windows-2000-logon-name")
= FALSE.
[12/05/07 18:34:27.390]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.390]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'User: Modify Login Expiration Time - Clear strips Login
Expiration Time and sets destination attribute to
9223372036854775807'.
[12/05/07 18:34:27.391]:AD-IDM-CORE-AX PT: (if-class-name equal
"User") = FALSE.
[12/05/07 18:34:27.395]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.396]:AD-IDM-CORE-AX PT: Applying to status #2.
[12/05/07 18:34:27.396]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Street Address: Convert LF to CR-LF'.
[12/05/07 18:34:27.396]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:27.397]:AD-IDM-CORE-AX PT: Applying rule 'Street
Address: Convert LF to CR-LF'.
[12/05/07 18:34:27.397]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("streetAddress",token-replace-all("[^r]n","rn",token-local-variable("current-value"))).
[12/05/07 18:34:27.398]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'logonHours: Convert to Active Directory form'.
[12/05/07 18:34:27.398]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:27.398]:AD-IDM-CORE-AX PT: Applying rule 'logonHours:
Convert to Active Directory form'.
[12/05/07 18:34:27.398]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
[12/05/07 18:34:27.399]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:27.383]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Block subscribing to passwords when objects are added'.
[12/05/07 18:34:27.400]:AD-IDM-CORE-AX ST: (if-global-variable
'enable-password-subscribe' equal "false") = FALSE.
[12/05/07 18:34:27.400]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.400]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Block subscribing to password modifications'.
[12/05/07 18:34:27.401]:AD-IDM-CORE-AX ST: (if-global-variable
'enable-password-subscribe' equal "false") = FALSE.
[12/05/07 18:34:27.401]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.401]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:27.402]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true" qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="JPxxxKKEmployees1ad00004" src-entry-id="34003">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="Login Expiration Time">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<add-value>
<value timestamp="1196847252#11" type="state">false</value>
</add-value>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<add-value>
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<add-value>
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<add-value>
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.399]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:27.408]:AD-IDM-CORE-AX PT: Applying rule
'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:27.408]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:27.409]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'lockoutTime: Convert to Active Directory form'.
[12/05/07 18:34:27.409]:AD-IDM-CORE-AX PT: Rule selected.
[12/05/07 18:34:27.409]:AD-IDM-CORE-AX PT: Applying rule 'lockoutTime:
Convert to Active Directory form'.
[12/05/07 18:34:27.409]:AD-IDM-CORE-AX PT: Action:
do-reformat-op-attr("lockoutTime",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:27.410]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Add: User - convert multi-valued Telephone to single
value'.
[12/05/07 18:34:27.410]:AD-IDM-CORE-AX PT: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:27.411]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.411]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'update Active Directory logon name'.
[12/05/07 18:34:27.416]:AD-IDM-CORE-AX PT: (if-xpath true
"self::status[@level = 'success']/operation-data/windows-2000-logon-name")
= FALSE.
[12/05/07 18:34:27.416]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.416]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'User: Modify Login Expiration Time - Clear strips Login
Expiration Time and sets destination attribute to
9223372036854775807'.
[12/05/07 18:34:27.417]:AD-IDM-CORE-AX PT: (if-class-name equal
"User") = FALSE.
[12/05/07 18:34:27.417]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.417]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:27.418]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
level="success"><application>DirXML</application>
<module>AD-IDM-CORE-AX</module>

<object-dn>CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net
(JPxxxKKEmployees1ad00004)</object-dn>
<component>Publisher</component>
</status>
<status event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
level="warning">Code(-8015) Operation vetoed by filter.</status>
</output>
</nds>
[12/05/07 18:34:27.420]:AD-IDM-CORE-AX PT:Applying policy: %+C%14C'Email
notifications for failed password publications'%-C.
[12/05/07 18:34:27.420]:AD-IDM-CORE-AX PT: Applying to status #1.
[12/05/07 18:34:27.421]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Send e-mail for a failed publish password operation'.
[12/05/07 18:34:27.421]:AD-IDM-CORE-AX PT: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:27.421]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.422]:AD-IDM-CORE-AX PT: Applying to status #2.
[12/05/07 18:34:27.422]:AD-IDM-CORE-AX PT: Evaluating selection
criteria for rule 'Send e-mail for a failed publish password operation'.
[12/05/07 18:34:27.422]:AD-IDM-CORE-AX PT: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:27.423]:AD-IDM-CORE-AX PT: Rule rejected.
[12/05/07 18:34:27.423]:AD-IDM-CORE-AX PT:Policy returned:
[12/05/07 18:34:27.423]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
level="success"><application>DirXML</application>
<module>AD-IDM-CORE-AX</module>

<object-dn>CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net
(JPxxxKKEmployees1ad00004)</object-dn>
<component>Publisher</component>
</status>
<status event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
level="warning">Code(-8015) Operation vetoed by filter.</status>
</output>
</nds>
[12/05/07 18:34:27.425]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
level="success"><application>DirXML</application>
<module>AD-IDM-CORE-AX</module>

<object-dn>CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net
(JPxxxKKEmployees1ad00004)</object-dn>
<component>Publisher</component>
</status>
<status event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
level="warning">Code(-8015) Operation vetoed by filter.</status>
</output>
</nds>
[12/05/07 18:34:27.427]:AD-IDM-CORE-AX PT:Remote Interface Driver:
Sending...
[12/05/07 18:34:27.428]:AD-IDM-CORE-AX PT:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
level="success"><application>DirXML</application>
<module>AD-IDM-CORE-AX</module>

<object-dn>CN=1ad00004,OU=GP1,OU=Users,OU=xxxKK,DC=idm6-qa,DC=test-qa,DC=xxx,DC=net
(JPxxxKKEmployees1ad00004)</object-dn>
<component>Publisher</component>
</status>
<status event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
level="warning">Code(-8015) Operation vetoed by filter.</status>
</output>
</nds>
[12/05/07 18:34:27.430]:AD-IDM-CORE-AX PT:Remote Interface Driver:
Document sent.
[12/05/07 18:34:27.407]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14C'Payloads for subscribe to password changes'%-C.
[12/05/07 18:34:27.431]:AD-IDM-CORE-AX ST: Applying to modify #1.
[12/05/07 18:34:27.432]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Add operation-data element to password subscribe
operations'.
[12/05/07 18:34:27.432]:AD-IDM-CORE-AX ST: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:27.433]:AD-IDM-CORE-AX ST: (if-operation equal
"modify-password") = FALSE.
[12/05/07 18:34:27.433]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.433]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Add payload data to a reset password from a failed
password publish operation'.
[12/05/07 18:34:27.434]:AD-IDM-CORE-AX ST: (if-operation equal
"modify-password") = FALSE.
[12/05/07 18:34:27.434]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.434]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Add payload data to password subscribe operations'.
[12/05/07 18:34:27.435]:AD-IDM-CORE-AX ST: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:27.435]:AD-IDM-CORE-AX ST: (if-operation equal
"modify-password") = FALSE.
[12/05/07 18:34:27.435]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.439]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:27.440]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true" qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="JPxxxKKEmployees1ad00004" src-entry-id="34003">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="Login Expiration Time">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<add-value>
<value timestamp="1196847252#11" type="state">false</value>
</add-value>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<add-value>
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<add-value>
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<add-value>
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.445]:AD-IDM-CORE-AX ST:Applying policy: %+C%14C'Resolve
group memberships on an add user'%-C.
[12/05/07 18:34:27.445]:AD-IDM-CORE-AX ST: Applying to modify #1.
[12/05/07 18:34:27.446]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Add new user to associated groups'.
[12/05/07 18:34:27.446]:AD-IDM-CORE-AX ST: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:27.446]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.447]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX Assign user to INTERNET group'.
[12/05/07 18:34:27.447]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:27.447]:AD-IDM-CORE-AX ST: (if-op-attr
'xxxAXADInternetFlag' equal "1") = FALSE.
[12/05/07 18:34:27.448]:AD-IDM-CORE-AX ST: Query from policy
[12/05/07 18:34:27.448]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<query class-name="User" dest-dn="JPxxxKKEmployees1ad00004"
dest-entry-id="34003" scope="entry">
<read-attr attr-name="xxxAXADInternetFlag"/>
</query>
</input>
</nds>
[12/05/07 18:34:27.449]:AD-IDM-CORE-AX ST: Pumping XDS to eDirectory.
[12/05/07 18:34:27.449]:AD-IDM-CORE-AX ST: Performing operation query
for JPxxxKKEmployees1ad00004.
[12/05/07 18:34:27.452]:AD-IDM-CORE-AX ST: Query from policy result
[12/05/07 18:34:27.452]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<instance class-name="User"
qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="xxx-IDV-AX-DEVJPxxxKKEmployees1ad00004" src-entry-id="34003">
<association
state="associated">104387554f8b9e4f9924f86d579db54 0</association>
<attr attr-name="xxxAXADInternetFlag">
<value timestamp="1196847252#5" type="string">1</value>
</attr>
</instance>
<status level="success"></status>
</output>
</nds>
[12/05/07 18:34:27.454]:AD-IDM-CORE-AX ST: (if-attr
'xxxAXADInternetFlag' equal "1") = TRUE.
[12/05/07 18:34:27.454]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.455]:AD-IDM-CORE-AX ST: Applying rule 'AX Assign
user to INTERNET group'.
[12/05/07 18:34:27.455]:AD-IDM-CORE-AX ST: Action:
do-add-dest-attr-value("Member",class-name="Group",arg-dn("cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net"),"cn=xxxsi001,cn=users,d c=idm6-qa,dc=test-qa,dc=xxx,dc=net").
[12/05/07 18:34:27.456]:AD-IDM-CORE-AX ST:
arg-dn("cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net")
[12/05/07 18:34:27.456]:AD-IDM-CORE-AX ST:
token-text("cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net")
[12/05/07 18:34:27.456]:AD-IDM-CORE-AX ST: Arg Value:
"cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net".
[12/05/07 18:34:27.457]:AD-IDM-CORE-AX ST:
arg-string("cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net")
[12/05/07 18:34:27.457]:AD-IDM-CORE-AX ST:
token-text("cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net")
[12/05/07 18:34:27.458]:AD-IDM-CORE-AX ST: Arg Value:
"cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net".
[12/05/07 18:34:27.458]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:27.458]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true" qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="JPxxxKKEmployees1ad00004" src-entry-id="34003">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="Login Expiration Time">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<add-value>
<value timestamp="1196847252#11" type="state">false</value>
</add-value>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<add-value>
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<add-value>
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<add-value>
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-value>
</modify-attr>
</modify>
<modify class-name="Group"
dest-dn="cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net"
event-id="AD-IDM-CORE-AX##116a9a7d20d##0">
<modify-attr attr-name="Member">
<add-value>
<value
type="string">cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.465]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CSubCommandP02-Set Destination Attributes Values%-C.
[12/05/07 18:34:27.465]:AD-IDM-CORE-AX ST: Applying to modify #1.
[12/05/07 18:34:27.465]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Set displayName'.
[12/05/07 18:34:27.466]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:27.466]:AD-IDM-CORE-AX ST: (if-operation equal
"modify") = TRUE.
[12/05/07 18:34:27.466]:AD-IDM-CORE-AX ST: (if-op-attr 'Surname'
changing) = FALSE.
[12/05/07 18:34:27.467]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.467]:AD-IDM-CORE-AX ST: Applying to modify #2.
[12/05/07 18:34:27.471]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Set displayName'.
[12/05/07 18:34:27.472]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = FALSE.
[12/05/07 18:34:27.472]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.472]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:27.473]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true" qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="JPxxxKKEmployees1ad00004" src-entry-id="34003">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="Login Expiration Time">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<add-value>
<value timestamp="1196847252#11" type="state">false</value>
</add-value>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<add-value>
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<add-value>
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<add-value>
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-value>
</modify-attr>
</modify>
<modify class-name="Group"
dest-dn="cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net"
event-id="AD-IDM-CORE-AX##116a9a7d20d##0">
<modify-attr attr-name="Member">
<add-value>
<value
type="string">cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.484]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CSubCommandP03-Delete User%-C.
[12/05/07 18:34:27.484]:AD-IDM-CORE-AX ST: Applying to modify #1.
[12/05/07 18:34:27.484]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Delete AD account'.
[12/05/07 18:34:27.485]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:27.485]:AD-IDM-CORE-AX ST: (if-op-attr 'xxxAXADFlag'
changing-to "0") = FALSE.
[12/05/07 18:34:27.485]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.486]:AD-IDM-CORE-AX ST: Applying to modify #2.
[12/05/07 18:34:27.486]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Delete AD account'.
[12/05/07 18:34:27.486]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = FALSE.
[12/05/07 18:34:27.486]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.487]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:27.487]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="User" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true" qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="JPxxxKKEmployees1ad00004" src-entry-id="34003">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="Login Expiration Time">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="Login Disabled">
<add-value>
<value timestamp="1196847252#11" type="state">false</value>
</add-value>
</modify-attr>
<modify-attr attr-name="Internet EMail Address">
<add-value>
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDisplayName">
<add-value>
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-value>
</modify-attr>
<modify-attr attr-name="xxxAXADDescription">
<add-value>
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-value>
</modify-attr>
</modify>
<modify class-name="Group"
dest-dn="cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net"
event-id="AD-IDM-CORE-AX##116a9a7d20d##0">
<modify-attr attr-name="Member">
<add-value>
<value
type="string">cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.496]:AD-IDM-CORE-AX ST:Filtering out notification-only
attributes.
[12/05/07 18:34:27.497]:AD-IDM-CORE-AX ST:Fixing up association references.
[12/05/07 18:34:27.497]:AD-IDM-CORE-AX ST:Applying schema mapping policies
to output.
[12/05/07 18:34:27.497]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CSchemaMapping%-C.
[12/05/07 18:34:27.498]:AD-IDM-CORE-AX ST: Mapping attr-name 'Login
Expiration Time' to 'accountExpires'.
[12/05/07 18:34:27.498]:AD-IDM-CORE-AX ST: Mapping attr-name 'Login
Disabled' to 'dirxml-uACAccountDisable'.
[12/05/07 18:34:27.498]:AD-IDM-CORE-AX ST: Mapping attr-name 'Internet
EMail Address' to 'mail'.
[12/05/07 18:34:27.499]:AD-IDM-CORE-AX ST: Mapping attr-name
'xxxAXADDisplayName' to 'displayName'.
[12/05/07 18:34:27.499]:AD-IDM-CORE-AX ST: Mapping attr-name
'xxxAXADDescription' to 'description'.
[12/05/07 18:34:27.500]:AD-IDM-CORE-AX ST: Mapping attr-name 'Login
Disabled' to 'dirxml-uACAccountDisable'.
[12/05/07 18:34:27.500]:AD-IDM-CORE-AX ST: Mapping attr-name 'Internet
EMail Address' to 'mail'.
[12/05/07 18:34:27.501]:AD-IDM-CORE-AX ST: Mapping attr-name
'xxxAXADDisplayName' to 'displayName'.
[12/05/07 18:34:27.501]:AD-IDM-CORE-AX ST: Mapping attr-name
'xxxAXADDescription' to 'description'.
[12/05/07 18:34:27.501]:AD-IDM-CORE-AX ST: Mapping attr-name 'Member' to
'member'.
[12/05/07 18:34:27.502]:AD-IDM-CORE-AX ST: Mapping class-name 'User' to
'user'.
[12/05/07 18:34:27.502]:AD-IDM-CORE-AX ST: No mapping for class-name
'Group'.
[12/05/07 18:34:27.502]:AD-IDM-CORE-AX ST:Applying output transformation
policies.
[12/05/07 18:34:27.503]:AD-IDM-CORE-AX ST:Applying policy: %+C%14C'Convert
selected attributes to a form most commonly used in Active Directory.'%-C.
[12/05/07 18:34:27.503]:AD-IDM-CORE-AX ST: Applying to modify #1.
[12/05/07 18:34:27.503]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Street Address: Convert LF to CR-LF'.
[12/05/07 18:34:27.504]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.504]:AD-IDM-CORE-AX ST: Applying rule 'Street
Address: Convert LF to CR-LF'.
[12/05/07 18:34:27.504]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("[^r]n","rn",token-local-variable("current-value"))).
[12/05/07 18:34:27.505]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'logonHours: Convert to Active Directory form'.
[12/05/07 18:34:27.505]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.505]:AD-IDM-CORE-AX ST: Applying rule 'logonHours:
Convert to Active Directory form'.
[12/05/07 18:34:27.506]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
[12/05/07 18:34:27.506]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:27.507]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.507]:AD-IDM-CORE-AX ST: Applying rule
'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:27.511]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:27.512]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'lockoutTime: Convert to Active Directory form'.
[12/05/07 18:34:27.512]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.512]:AD-IDM-CORE-AX ST: Applying rule 'lockoutTime:
Convert to Active Directory form'.
[12/05/07 18:34:27.513]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("lockoutTime",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:27.513]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Add: User - convert multi-valued Telephone to single
value'.
[12/05/07 18:34:27.514]:AD-IDM-CORE-AX ST: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:27.514]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.514]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'update Active Directory logon name'.
[12/05/07 18:34:27.515]:AD-IDM-CORE-AX ST: (if-xpath true
"self::status[@level = 'success']/operation-data/windows-2000-logon-name")
= FALSE.
[12/05/07 18:34:27.515]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.515]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'User: Modify Login Expiration Time - Clear strips Login
Expiration Time and sets destination attribute to
9223372036854775807'.
[12/05/07 18:34:27.515]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = TRUE.
[12/05/07 18:34:27.517]:AD-IDM-CORE-AX ST: (if-op-attr
'accountExpires' not-available) = TRUE.
[12/05/07 18:34:27.517]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.517]:AD-IDM-CORE-AX ST: Applying rule 'User: Modify
Login Expiration Time - Clear strips Login
Expiration Time and sets destination attribute to
9223372036854775807'.
[12/05/07 18:34:27.518]:AD-IDM-CORE-AX ST: Action:
do-strip-xpath("./modify-attr[@attr-name='accountExpires']").
[12/05/07 18:34:27.518]:AD-IDM-CORE-AX ST: Action:
do-set-dest-attr-value("accountExpires","9223372036854775807").
[12/05/07 18:34:27.519]:AD-IDM-CORE-AX ST:
arg-string("9223372036854775807")
[12/05/07 18:34:27.519]:AD-IDM-CORE-AX ST:
token-text("9223372036854775807")
[12/05/07 18:34:27.519]:AD-IDM-CORE-AX ST: Arg Value:
"9223372036854775807".
[12/05/07 18:34:27.520]:AD-IDM-CORE-AX ST: Applying to modify #2.
[12/05/07 18:34:27.520]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Street Address: Convert LF to CR-LF'.
[12/05/07 18:34:27.520]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.521]:AD-IDM-CORE-AX ST: Applying rule 'Street
Address: Convert LF to CR-LF'.
[12/05/07 18:34:27.521]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("[^r]n","rn",token-local-variable("current-value"))).
[12/05/07 18:34:27.521]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'logonHours: Convert to Active Directory form'.
[12/05/07 18:34:27.522]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.522]:AD-IDM-CORE-AX ST: Applying rule 'logonHours:
Convert to Active Directory form'.
[12/05/07 18:34:27.522]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2ADLenient($current-value)")).
[12/05/07 18:34:27.523]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:27.523]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.524]:AD-IDM-CORE-AX ST: Applying rule
'accountExpires: Convert to Active Directory form'.
[12/05/07 18:34:27.524]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:27.524]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'lockoutTime: Convert to Active Directory form'.
[12/05/07 18:34:27.525]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.525]:AD-IDM-CORE-AX ST: Applying rule 'lockoutTime:
Convert to Active Directory form'.
[12/05/07 18:34:27.525]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("lockoutTime",token-xpath("jadutil:translateEpoch2FileTime($current-value)")).
[12/05/07 18:34:27.526]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Add: User - convert multi-valued Telephone to single
value'.
[12/05/07 18:34:27.526]:AD-IDM-CORE-AX ST: (if-operation equal "add")
= FALSE.
[12/05/07 18:34:27.527]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.527]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'update Active Directory logon name'.
[12/05/07 18:34:27.531]:AD-IDM-CORE-AX ST: (if-xpath true
"self::status[@level = 'success']/operation-data/windows-2000-logon-name")
= FALSE.
[12/05/07 18:34:27.532]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.532]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'User: Modify Login Expiration Time - Clear strips Login
Expiration Time and sets destination attribute to
9223372036854775807'.
[12/05/07 18:34:27.533]:AD-IDM-CORE-AX ST: (if-class-name equal
"User") = FALSE.
[12/05/07 18:34:27.533]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.533]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:27.534]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="user" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true" qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="JPxxxKKEmployees1ad00004" src-entry-id="34003">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="dirxml-uACAccountDisable">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="mail">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="displayName">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="description">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="dirxml-uACAccountDisable">
<add-value>
<value timestamp="1196847252#11" type="state">false</value>
</add-value>
</modify-attr>
<modify-attr attr-name="mail">
<add-value>
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-value>
</modify-attr>
<modify-attr attr-name="displayName">
<add-value>
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-value>
</modify-attr>
<modify-attr attr-name="description">
<add-value>
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-value>
</modify-attr>
<modify-attr attr-name="accountExpires">
<remove-all-values/>
<add-value>
<value type="string">9223372036854775807</value>
</add-value>
</modify-attr>
</modify>
<modify class-name="Group"
dest-dn="cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net"
event-id="AD-IDM-CORE-AX##116a9a7d20d##0">
<modify-attr attr-name="member">
<add-value>
<value
type="string">cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.541]:AD-IDM-CORE-AX ST:Applying policy: %+C%14C'Email
notifications for failed password publications'%-C.
[12/05/07 18:34:27.541]:AD-IDM-CORE-AX ST: Applying to modify #1.
[12/05/07 18:34:27.542]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail for a failed publish password operation'.
[12/05/07 18:34:27.542]:AD-IDM-CORE-AX ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:27.542]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.543]:AD-IDM-CORE-AX ST: Applying to modify #2.
[12/05/07 18:34:27.543]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail for a failed publish password operation'.
[12/05/07 18:34:27.544]:AD-IDM-CORE-AX ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:27.544]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.544]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:27.545]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="user" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true" qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="JPxxxKKEmployees1ad00004" src-entry-id="34003">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="dirxml-uACAccountDisable">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="mail">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="displayName">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="description">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="dirxml-uACAccountDisable">
<add-value>
<value timestamp="1196847252#11" type="state">false</value>
</add-value>
</modify-attr>
<modify-attr attr-name="mail">
<add-value>
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-value>
</modify-attr>
<modify-attr attr-name="displayName">
<add-value>
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-value>
</modify-attr>
<modify-attr attr-name="description">
<add-value>
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-value>
</modify-attr>
<modify-attr attr-name="accountExpires">
<remove-all-values/>
<add-value>
<value type="string">9223372036854775807</value>
</add-value>
</modify-attr>
</modify>
<modify class-name="Group"
dest-dn="cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net"
event-id="AD-IDM-CORE-AX##116a9a7d20d##0">
<modify-attr attr-name="member">
<add-value>
<value
type="string">cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.552]:AD-IDM-CORE-AX ST:Submitting document to
subscriber shim:
[12/05/07 18:34:27.552]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="user" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true" qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="JPxxxKKEmployees1ad00004" src-entry-id="34003">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="dirxml-uACAccountDisable">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="mail">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="displayName">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="description">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="dirxml-uACAccountDisable">
<add-value>
<value timestamp="1196847252#11" type="state">false</value>
</add-value>
</modify-attr>
<modify-attr attr-name="mail">
<add-value>
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-value>
</modify-attr>
<modify-attr attr-name="displayName">
<add-value>
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-value>
</modify-attr>
<modify-attr attr-name="description">
<add-value>
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-value>
</modify-attr>
<modify-attr attr-name="accountExpires">
<remove-all-values/>
<add-value>
<value type="string">9223372036854775807</value>
</add-value>
</modify-attr>
</modify>
<modify class-name="Group"
dest-dn="cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net"
event-id="AD-IDM-CORE-AX##116a9a7d20d##0">
<modify-attr attr-name="member">
<add-value>
<value
type="string">cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.559]:AD-IDM-CORE-AX ST:Remote Interface Driver:
Sending...
[12/05/07 18:34:27.560]:AD-IDM-CORE-AX ST:
<nds dtdversion="3.5" ndsversion="8.x">
<source>
<product version="3.5.1.20070411 ">DirXML</product>
<contact>Novell, Inc.</contact>
</source>
<input>
<modify class-name="user" event-id="AD-IDM-CORE-AX##116a9a7d20d##0"
from-merge="true" qualified-src-dn="O=JPOU=xxxKKOU=EmployeesCN=1ad00004"
src-dn="JPxxxKKEmployees1ad00004" src-entry-id="34003">
<association>104387554f8b9e4f9924f86d579db540</association>
<modify-attr attr-name="dirxml-uACAccountDisable">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="mail">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="displayName">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="description">
<remove-all-values/>
</modify-attr>
<modify-attr attr-name="dirxml-uACAccountDisable">
<add-value>
<value timestamp="1196847252#11" type="state">false</value>
</add-value>
</modify-attr>
<modify-attr attr-name="mail">
<add-value>
<value timestamp="1196847252#10"
type="string">1ad00004@AX-core.AX.xxx.net</value>
</add-value>
</modify-attr>
<modify-attr attr-name="displayName">
<add-value>
<value timestamp="1196847252#3" type="string">g1ad00004
s1ad00004</value>
</add-value>
</modify-attr>
<modify-attr attr-name="description">
<add-value>
<value timestamp="1196847252#2" type="string">A04 xxxKK</value>
</add-value>
</modify-attr>
<modify-attr attr-name="accountExpires">
<remove-all-values/>
<add-value>
<value type="string">9223372036854775807</value>
</add-value>
</modify-attr>
</modify>
<modify class-name="Group"
dest-dn="cn=internet,ou=commongroups,dc=AX-core,dc=AX,dc=xxx,dc=net"
event-id="AD-IDM-CORE-AX##116a9a7d20d##0_opData1">
<modify-attr attr-name="member">
<add-value>
<value
type="string">cn=xxxsi001,cn=users,dc=idm6-qa,dc=test-qa,dc=xxx,dc=net</value>
</add-value>
</modify-attr>
</modify>
</input>
</nds>
[12/05/07 18:34:27.572]:AD-IDM-CORE-AX ST:Remote Interface Driver:
Document sent.
[12/05/07 18:34:27.602]:AD-IDM-CORE-AX :Remote Interface Driver: Received.
[12/05/07 18:34:27.603]:AD-IDM-CORE-AX :
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="AD-IDM-CORE-AX##116a9a7d20d##0" level="success"/>
<status event-id="AD-IDM-CORE-AX##116a9a7d20d##0_opData1"
level="success"/>
</output>
</nds>
[12/05/07 18:34:27.604]:AD-IDM-CORE-AX :Remote Interface Driver: Received
document for subscriber channel
[12/05/07 18:34:27.605]:AD-IDM-CORE-AX :Remote Interface Driver: Waiting
for receive...
[12/05/07 18:34:27.605]:AD-IDM-CORE-AX ST:SubscriptionShim.execute()
returned:
[12/05/07 18:34:27.606]:AD-IDM-CORE-AX ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="AD-IDM-CORE-AX##116a9a7d20d##0" level="success"/>
<status event-id="AD-IDM-CORE-AX##116a9a7d20d##0" level="success"/>
</output>
</nds>
[12/05/07 18:34:27.608]:AD-IDM-CORE-AX ST:Applying input transformation
policies.
[12/05/07 18:34:27.608]:AD-IDM-CORE-AX ST:Applying policy: %+C%14C'Convert
selected attributes to a form most commonly used in the Identity
Vault.'%-C.
[12/05/07 18:34:27.609]:AD-IDM-CORE-AX ST: Applying to status #1.
[12/05/07 18:34:27.609]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:27.609]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.609]:AD-IDM-CORE-AX ST: Applying rule
'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:27.610]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("rn","r",token-local-variable("current-value"))).
[12/05/07 18:34:27.610]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'logonHours: Convert to Login Allowed Time Map form'.
[12/05/07 18:34:27.611]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.611]:AD-IDM-CORE-AX ST: Applying rule 'logonHours:
Convert to Login Allowed Time Map form'.
[12/05/07 18:34:27.615]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2eDir($current-value)")).
[12/05/07 18:34:27.616]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:27.616]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.616]:AD-IDM-CORE-AX ST: Applying rule
'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:27.617]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateFileTime2Epoch($current-value)")).
[12/05/07 18:34:27.618]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchanged'.
[12/05/07 18:34:27.618]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.618]:AD-IDM-CORE-AX ST: Applying rule 'AX trace
whenchanged'.
[12/05/07 18:34:27.619]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:27.619]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:27.620]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:27.620]:AD-IDM-CORE-AX ST: Token Value: "".
[12/05/07 18:34:27.620]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:27.620]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:27.620]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-src-attr("whenChanged")).
[12/05/07 18:34:27.621]:AD-IDM-CORE-AX ST:
arg-string(token-src-attr("whenChanged"))
[12/05/07 18:34:27.621]:AD-IDM-CORE-AX ST:
token-src-attr("whenChanged")
[12/05/07 18:34:27.621]:AD-IDM-CORE-AX ST: Token Value: "".
[12/05/07 18:34:27.622]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:27.622]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:27.622]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchange'.
[12/05/07 18:34:27.622]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.622]:AD-IDM-CORE-AX ST: Applying rule 'AX trace
whenchange'.
[12/05/07 18:34:27.623]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:27.627]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:27.628]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:27.628]:AD-IDM-CORE-AX ST: Token Value: "".
[12/05/07 18:34:27.628]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:27.628]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:27.629]:AD-IDM-CORE-AX ST: Applying to status #2.
[12/05/07 18:34:27.629]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:27.629]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.630]:AD-IDM-CORE-AX ST: Applying rule
'streetAddress: Convert CR-LF to LF'.
[12/05/07 18:34:27.630]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("streetAddress",token-replace-all("rn","r",token-local-variable("current-value"))).
[12/05/07 18:34:27.630]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'logonHours: Convert to Login Allowed Time Map form'.
[12/05/07 18:34:27.631]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.631]:AD-IDM-CORE-AX ST: Applying rule 'logonHours:
Convert to Login Allowed Time Map form'.
[12/05/07 18:34:27.631]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("logonHours",token-xpath("jadutil:translateTimeMap2eDir($current-value)")).
[12/05/07 18:34:27.632]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:27.633]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.633]:AD-IDM-CORE-AX ST: Applying rule
'accountExpires: Convert to Identity Vault time format'.
[12/05/07 18:34:27.633]:AD-IDM-CORE-AX ST: Action:
do-reformat-op-attr("accountExpires",token-xpath("jadutil:translateFileTime2Epoch($current-value)")).
[12/05/07 18:34:27.634]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchanged'.
[12/05/07 18:34:27.634]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.634]:AD-IDM-CORE-AX ST: Applying rule 'AX trace
whenchanged'.
[12/05/07 18:34:27.635]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:27.635]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:27.639]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:27.639]:AD-IDM-CORE-AX ST: Token Value: "".
[12/05/07 18:34:27.640]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:27.640]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:27.640]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-src-attr("whenChanged")).
[12/05/07 18:34:27.641]:AD-IDM-CORE-AX ST:
arg-string(token-src-attr("whenChanged"))
[12/05/07 18:34:27.641]:AD-IDM-CORE-AX ST:
token-src-attr("whenChanged")
[12/05/07 18:34:27.642]:AD-IDM-CORE-AX ST: Token Value: "".
[12/05/07 18:34:27.642]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:27.642]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:27.642]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'AX trace whenchange'.
[12/05/07 18:34:27.643]:AD-IDM-CORE-AX ST: Rule selected.
[12/05/07 18:34:27.643]:AD-IDM-CORE-AX ST: Applying rule 'AX trace
whenchange'.
[12/05/07 18:34:27.643]:AD-IDM-CORE-AX ST: Action:
do-trace-message(level="3",token-op-attr("whenChanged")).
[12/05/07 18:34:27.643]:AD-IDM-CORE-AX ST:
arg-string(token-op-attr("whenChanged"))
[12/05/07 18:34:27.644]:AD-IDM-CORE-AX ST:
token-op-attr("whenChanged")
[12/05/07 18:34:27.644]:AD-IDM-CORE-AX ST: Token Value: "".
[12/05/07 18:34:27.644]:AD-IDM-CORE-AX ST: Arg Value: "".
[12/05/07 18:34:27.644]:AD-IDM-CORE-AX ST:
[12/05/07 18:34:27.644]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:27.645]:AD-IDM-CORE-AX ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="AD-IDM-CORE-AX##116a9a7d20d##0" level="success"/>
<status event-id="AD-IDM-CORE-AX##116a9a7d20d##0" level="success"/>
</output>
</nds>
[12/05/07 18:34:27.646]:AD-IDM-CORE-AX ST:Applying policy: %+C%14C'Email
notifications for failed password subscriptions'%-C.
[12/05/07 18:34:27.647]:AD-IDM-CORE-AX ST: Applying to status #1.
[12/05/07 18:34:27.647]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on a failure when subscribing to passwords'.
[12/05/07 18:34:27.647]:AD-IDM-CORE-AX ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:27.648]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.648]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on failure to reset connected system
password using the Identity Manager data store password'.
[12/05/07 18:34:27.649]:AD-IDM-CORE-AX ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:27.649]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.649]:AD-IDM-CORE-AX ST: Applying to status #2.
[12/05/07 18:34:27.649]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on a failure when subscribing to passwords'.
[12/05/07 18:34:27.650]:AD-IDM-CORE-AX ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:27.650]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.650]:AD-IDM-CORE-AX ST: Evaluating selection
criteria for rule 'Send e-mail on failure to reset connected system
password using the Identity Manager data store password'.
[12/05/07 18:34:27.651]:AD-IDM-CORE-AX ST: (if-global-variable
'notify-user-on-password-dist-failure' equal "true") = FALSE.
[12/05/07 18:34:27.651]:AD-IDM-CORE-AX ST: Rule rejected.
[12/05/07 18:34:27.652]:AD-IDM-CORE-AX ST:Policy returned:
[12/05/07 18:34:27.652]:AD-IDM-CORE-AX ST:
<nds dtdversion="1.1" ndsversion="8.7">
<source>
<product asn1id="" build="20070531_104500"
instance="xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX"
version="3.5.1">AD</product>
<contact>Novell, Inc.</contact>
</source>
<output>
<status event-id="AD-IDM-CORE-AX##116a9a7d20d##0" level="success"/>
<status event-id="AD-IDM-CORE-AX##116a9a7d20d##0" level="success"/>
</output>
</nds>
[12/05/07 18:34:27.654]:AD-IDM-CORE-AX ST:Applying schema mapping policies
to input.
[12/05/07 18:34:27.654]:AD-IDM-CORE-AX ST:Applying policy:
%+C%14CSchemaMapping%-C.
[12/05/07 18:34:27.654]:AD-IDM-CORE-AX ST:Resolving association references.
[12/05/07 18:34:27.655]:AD-IDM-CORE-AX ST:Processing returned document.
[12/05/07 18:34:27.655]:AD-IDM-CORE-AX ST:Processing operation <status>
for .
[12/05/07 18:34:27.655]:AD-IDM-CORE-AX ST:
DirXML Log Event -------------------
Driver: xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX
Channel: Subscriber
Status: Success
[12/05/07 18:34:27.668]:AD-IDM-CORE-AX ST:Processing operation <status>
for .
[12/05/07 18:34:27.669]:AD-IDM-CORE-AX ST:
DirXML Log Event -------------------
Driver: xxx-IDV-AX-DEVServicesIDM DriverSetAD-IDM-CORE-AX
Channel: Subscriber
Status: Success