Hello,

I'm using the Active Directory, now I need to do a rule that disables
the user ( in AD ) when the user is marked with intruder lockout...

then I tried something easier, when the user changes the surname that
same user must be disabled, well, that didnt happen.

I used the two actions in a rule for the test, one "set source
attribute value" to make "loginDisabled" true and another to replace
"sn"within a rule placed in Input Transformation Policies of Publisher's
Channel


Code:
--------------------
<rule>
<description>setSourceLoginDisabled</description>
<conditions>
<and>
<if-class-name op="equal">User</if-class-name>
</and>
</conditions>
<actions>
<do-set-src-attr-value name="sn">
<arg-value type="string">
<token-text xml:space="preserve">TESTING</token-text>
</arg-value>
</do-set-src-attr-value>
<do-set-src-attr-value name="loginDisabled">
<arg-value type="string">
<token-text xml:space="preserve">TRUE</token-text>
</arg-value>
</do-set-src-attr-value>
</actions>
</rule>
--------------------


setting the sn worked, but disabling the user didn't
how could I disable the user in AD using the Publisher Channel since
the event started in AD

Thanks in advance


--
dps006
------------------------------------------------------------------------
dps006's Profile: http://forums.novell.com/member.php?userid=33804
View this thread: http://forums.novell.com/showthread.php?t=351769