Release 4.2.2

The log below describes the changes in v4.2.2. More on some of the features in 4.2.2 version of OpenIAM can be found in What's new section.

Issue keySummary
OE-3517Access Certification: Dashboard-> Campaign list: Not listing more than 50 campaigns
OE-3486Make "Name" Column Clickable to Open Item Details
OE-3478UI Page rewrite: /webconsole/mngsystemlist
OE-3468UI Page rewrite: /webconsole/authenticationProviders
OE-3467UI Page rewrite: /webconsole/contentProviders
OE-3466UI Page rewrite: /webconsole/organizations
OE-3453Table search: Autocomplete filter state inconsistent with applied filter
OE-3452Fix Property Source Order
OE-3442UI Page rewrite: /webconsole/resources
OE-3441UI Page rewrite: /webconsole/groups
OE-3440UI Page rewrite: /webconsole/roles
OE-3438Access Control → Resource and Organization pages throw 500 error
OE-3435Duo Authentication: Path needs to be updated
OE-3431Administration->Log Viewer-> Date field is not displaying Audit log records table
OE-3430Optimize Autocomplete Component Data Loading
OE-3429Documentation links page is broken
OE-3426Edit auth provider menu is broken
OE-3425Administration->Mail configuration-> SMTP Username is not getting removed when user tries to delete and save
OE-3424Synchronization : Error on deselecting uploaded csv file
OE-3423Layout issue with dynamic record count - Extra space below pagination when changing page size
OE-3416Synchronization search is not working properly
OE-3415Administration: Page templates-> Proper validation needs to be displayed when user click on save button without mandatory fields
OE-3414System Configuration : Organization : Screen goes blank on deselecting the 'Organization Hierarchy used by the UI Templating Engine' dropdown
OE-34134.2.2 upgrade failure-> Due to NullPointerException could not able to start application
OE-3411Color of buttons in 'Select access' should be aligned
OE-3410cannot save row after editing access duration
OE-3409Mailbox configuration — sensitive fields are shown as plain text
OE-3408[Selfservice] My Groups shows empty page
OE-3407'My identities' and 'out of office assistant' options seen on Selfservice my info page, irrespective of the selection from sys config
OE-3406[Selfservice] Revoke Access for user - request gets created for the logged in user
OE-3404Parent resource entitlement gets added as a child resource entitlement
OE-3402Access certification: Self service-> User Access Review-> Pagination Dropdown Value Mismatch on User Tab
OE-3400Not possible to add new custom field from connector configuration page
OE-3399Not possible to save custom attribute value options
OE-3397'New Group' view request has empty approver details
OE-3396[Create Group Request] On Submitting a group request - user gets redirected to Edit Group blank page with error message
OE-3395It is not possible to copy full groove script pass from groovy manager
OE-3394new edition of groovy script doesn't take place immediately
OE-3392User search dropdown doesn't allow to input login
OE-3387Dropdown change value bug
OE-3382Disable action buttons on dashboard based on campaign status
OE-3381REST API /rest/api/user/admin/get/{id} does not return user entitlements
OE-3377Remember Me text is missing on login page
OE-3375Audit log: Extend_Access_certification_campaign-> Description as Expire Access certification campaign
OE-3374[Direct Reports - Manage Identities] Search User identity API gets executed twice every time on the manage Identity table
OE-3373[Direct Reports - Manage Identities] Refresh button missing in Action column
OE-3372Provisioning : Leave with Pay : UI of description text field requires space
OE-3369Prevent force reload of the page after groovy script is saved
OE-3368Cannot use just created groovy script, error is "Groovy Script does not exist"
OE-3367Groovy script editor - cannot create new script
OE-33664.2.2 upgrade failure - Fix Cassandra reference in the docker compose
OE-3362Audit log: IT_POLICY_RESET_BY_USER-> Need to update the info with consent configuration name
OE-3361Consent configuration: When Consent name is too long system needs to show proper error
OE-3360Selfservice - End user is not able to change password from selfservice
OE-3358UAR - Use new endpoint to fill Entitlement details
OE-3357Access certification: Application Admin-> Not able to view the access needs to be reviewed
OE-3356Access certification: Reviewer's Manager-> Not able to view the access needs to be reviewed
OE-3355Increase USER_TYPE_IND length
OE-3351Access certification: Dashboard-> Dropdown Selection in Dashboard Causes Infinite Loading When More Than 20 Campaigns Exist
OE-3347Impossible to track escalation of UAR request from audit log
OE-3342Access certification: Progress state is not updated in Self service & Dashboard
OE-3337[Direct Reports] get user subordinates endpoint '/api/users/subordinaries/<userID>' executes twice on Direct Reports page
OE-3336[Direct Reports] Unable to Reset Password
OE-3330Edit Managed Sys functionality shows blank screen after navigating from Policy Map Scripts
OE-3329Groovy Manager : Edit Script-> Many scripts is failing compilation error when user tries to save it
OE-3328expose java applications metrics for prometheus
OE-3327Web Console Shows null in Language Fields in Metadata Type create screen
OE-3325The description is marked as a mandatory field, but user is able to proceed without it.
OE-3321Scripts in the view should be ordered in alphabetic order
OE-3320404 Error when clicking on Policy Map in Managed System
OE-3316Remove 'Participate in Access Certification'
OE-3308[Select Rights from Profile] Unable to delete Access Profile
OE-3307Saving Groovy script without changes erases entire script
OE-3303Access certification: Reminder and Escalation email templates
OE-3293Access Certification: cannot save config with Scheduled interval set
OE-3292Initiate and Cancel Bulk Request actions trigger an endless loop of repeated API calls
OE-3291Access certification: Manager of Access review-> Entitlement view shows duplicate/irrelevant records
OE-3288Exception in Connector status after adding test connector script in Groovy Manager
OE-3287Error page appears on clicking 'edit provider' from 'edit URI pattarn' page
OE-3283[User Search] 'Department' and 'Start Date' appear empty in Search Results table
OE-3282Sys Config - Full Name Ordering table does not have display name
OE-3281[User Search] Configured Additional Criteria (Application, Group, Role, Organisation) not visible on search page
OE-3279[User Search] Unable to add search criteria 'Application' and 'Extended Attributes'
OE-3278[User Search] Issues in User search by ROLE, GROUP and ORG
OE-3276UI UAR: Polling issue
OE-3275Unable to drop nodes on Auth Rule Screen.
OE-3273Enable TLS encryption for Redis in an RPM installations
OE-3264Access Certification-> Campaign executes without data when user has no roles/groups assigned, resulting in missing pie chart and log errors
OE-3263Access Certification: Reviewers-> Supervisor-> Campaign execution fails when reviewer is User Supervisor with supervisor type assigned
OE-3262Access Certification: Reviewers-> Group->Entitlement review progress not synchronized in main entitlement view across group members
OE-3260Access Certification: Extend Campaign - cascade extension
OE-3259Access Certification: Expire Selected Campaign->Expired campaign review screen shows all entitlements under each entitlement instead of individual record view
OE-3258Access certification: User Access Certification-> Incorrect expiration mail triggered to user and reviewer after Access Review completion in Self Service
OE-3257[Selfservice Create Request] Unable to delegate request
OE-3256Change to bitnamilegacy etcd version for docker
OE-3255community images not working with openiam-docker-compose
OE-3253Drag and Drop doesn't work on Auth Rule
OE-3250Access certification: Application Certification-> Application Certification allows saving without Application after execution – validation missing
OE-3249Access certification: Application Certification-> Issues with Select/Exclude Entitlements (Not retained, Duplicate selection allowed, Exclusions not applied in Self Service)
OE-3247Unable to delete user in template view
OE-3245Access certification: Application Certification->Application name not displayed in Applications tab after saving selected/excluded entitlements in Application Certification
OE-3240Synchronization : Unable to select previous version of csv file from dropdown
OE-3239Access certification: Access Certification execution fails silently when no reviewers are assigned –> user-friendly error not displayed
OE-3238Access certification: Popup misaligned due to dynamic page scroll across tabs – requires scroll adjustment
OE-3237Selfservice 'My Info' appears blank for the user when Out Of Office assistance assigned
OE-3236Editing a user by updating attributes to null is not reflecting the changes
OE-3235Access certification: Risk Event Driven Certification->Type of Certification name needs to be updated
OE-3234Groups : User is not able to delete a group
OE-3233UI Access certification: Report-> When user tries to generate report we are getting error
OE-3232Access certification: Delete Campaign-> Logs Failure record when user tries to delete campaign
OE-3231Access certification: Expiration Policy-> Extend Expiraiton for (days) throws unknown error when entering more than 10 digits – show user-friendly validation
OE-3228Synchronization : CSV preview after uploading does not contain vertical scroll while synchronization
OE-3225Organization doesn't appear in user search results
OE-3224[Create New Group] 'Is Visible' flag default value false, but appear as true after save
OE-3223[Selfservice Create Request] Update session API called for every character entered in Reason For Request field
OE-3222[Selfservice Create Request] "ADD TO CART" button is present on the select access page for the empty line (managed sys with no access)
OE-3221[Selfservice Create Request] Application description missing on selecting the service catalog select category page
OE-3220[Selfservice Create Request] Double API calls in catalog
OE-3219[Selfservice Create Request] Unable to submit request using 'Select Rights From Profile'
OE-3217[Selfservice Create Request] cannot select access rights in catalog
OE-3216[Selfservice Create Request] page scrolls into infinite
OE-3215Access certification: Reviewer-> Remove Reviewer option enabled when only one reviewer is present
OE-3214Access certification-> New/Edit Access certification-> Select users-> Pagination issues
OE-3212Access certification-> Error message not user-friendly when Access Certification Name exceeds 50 characters
OE-3211Access certification-> Pagination change shows “No Records Found” on pages other than first
OE-3210Access certification: Search Access certification-> Search works only on first page – not functional on other pages
OE-3206[certification] UI improvements
OE-3205[certification] UI allows to submit review twice
OE-3204UI [certification] execute campaign many times by instant click
OE-3203Business Rules : User is getting error while adding groovy script in business rules
OE-3201Business Rules : Users are able to create action groups with duplicate names
OE-3200Business Rules : Screen throws error when user searches using '#'
OE-3199[certification] Small UI improvements
OE-3198[certification] user preview by risk API doesn't work
OE-3197Business Rules : User should not be able to save business rule until all mandatory fields are filled
OE-3196[certification] submit all select even approved items
OE-3195Unable to create new Authentication Provider
OE-3193Authentication provider: In Edit screen when user click on Create new provider opens Edit page
OE-3192Certification UAR: not possible to add more users into selected user after cert was saved
OE-3191Business Rules : Unable to terminate a user
OE-3188Handle situation when campaign step fells into more the one step
OE-3186[Certification] Null value issue with 'send reminder after days' and 'number times to send a reminder' fields on Reviewer page.
OE-3185[Certification] change UI label for days of Campaign
OE-3180Access certification: UAR Count needs to be udpated
OE-3178Access certification: Manager of access reviewer is not getting notified through mail
OE-3177UI Access Certification-> Screen is dynamic and infinite scrolling
OE-3176Access certification: Reviewer-> Mandatory should be true for Reviewer 1 by default
OE-3172Groovy Manager : User is unable to create a groovy script - Compilation Error
OE-3171UI multiseelct dropdown needs to display selected values properly
OE-3170Access certification: Mail template issues
OE-3168Access certification-> Self service->Entitlement View: show actual status of step approveness
OE-3167Synchronization page UI is distorted for CSV
OE-3166Null dropdown while adding new resources in Role Entitlements
OE-3165Business rule: able to save the rule without mandatory field
OE-3163Success safe message appears for only one moment
OE-3160Get rid of synchronous connector type in synchronization
OE-3159Access certification: Updating Selectiontype without value is not displaying proper validation
OE-3158Create Access Request does not provide entitlement to the user after successful approval.
OE-3155Sync history should show only events related the sync config
OE-3153Merge 4.2.1.15 into 4.2.2
OE-3152User admin: Issues
OE-3151Migrate to Sonarcloud
OE-3150User Activation via email link is not working
OE-3146If a parameter is configured to be a securestring but is not a one it is shown in logs in the error message
OE-3145Create Garbage collection job to delete old non-prod images in our docker registry
OE-3144Rework api on getting entitlement details to include data for graphical chart
OE-3141cannot add action for BR, screen became blank after selection
OE-3140Field content is overlapped on edit URL pattern
OE-3139Synchronization : When clicking 'Sync now' there is no success message about sync started
OE-3136Wrong message on clicking 'View Direct Reports' from Selfservice
OE-3135[Selfservice] Create Request for others - request gets created for the logged in user
OE-3133Administrative actions is not working
OE-3132Repeatable call of validate API on change password screen
OE-3131Administration->Mail configuration-> Issues
OE-3130User admin: Create new user->Not able to create user in template view
OE-3128Fido/ Web authenticaiton: Throws error
OE-3126BeanSearchAutoComplete not correctly initialised
OE-3125re-write approval API by access review item
OE-3124Connectors: Connector Configuration-> System throws 500 & 400 error when user click on Connector configuration
OE-3123Provisioning: Managed system->Edit-> Attributes Issue
OE-3122[Selfservice Create Request] Unable to select user while creating request by cloning user rights
OE-3121UAR: Entitlements User list view REST API
OE-3119[Selfservice] Pages from Approval Dashboard are not loading (except View in-box)
OE-3118Create Auth Provider page appears blank
OE-3117Administration: About OpenIAM-> 404 error
OE-3116Provisioning-> Synchronization-> Issues
OE-3112TextInputComponent does not honour type=number
OE-3109Left menus for re-written in react pages is not working
OE-3108Problems on managed system config page
OE-3106Export User : The exported CSV does not contain the proper columns
OE-3104Edit user in webconsole is blank page
OE-3102Save groovy script from UI of batch tasks erases the content.
OE-3101Sync config page issues
OE-3100Dropdown issues
OE-3099fix openiam installation on rhel9.5/9.6
OE-3096create new sync config page hangs
OE-3095SoD violation : On selecting the violation the screen freezes
OE-3092Edit user: Not able to remove the non mandatory field related to user information
OE-3090UI Page rewrite: /webconsole/users
OE-3089Cannot save changes in System Configuration on tab Organization
OE-3088URI Pattern create page is broken
OE-3086Administration->Mail configuration-> Screen gets freezed when user select dropdown value
OE-3084Change password action is prohibited due to blinking on the screen
OE-3083Policy-> Delete Authentication rule-> Needs to be updated
OE-3082Self service: Access management-> New user-> Not able to create user
OE-3080UI Page rewrite: /webconsole/access-certifications
OE-3079Issues on UAR landing page
OE-3076Self service-> View my requests-> System throws error for API
OE-3072Administration: System configuration-> Organization-> Placeholder needs to be updated
OE-3071Administration: System configuration-> UI-> Empty toggle button is present without value
OE-3070Administration: System configuration: Page size is dynamic
OE-3069Page retains previous height and scroll position after navigation
OE-3068Organization: Organization type is not getting listed in UI
OE-3064Authentication Policy-> Edit-> Not able to update Auth policy
OE-3063Def Questions Auth Rule: Continuous re-direction to the default page
OE-3060Authentication Provider->Edit-> Authentication is not listing properly
OE-3059Authentication Provider-> Provider type is not getting listed in UI
OE-3058Authentication Provider-> Auth type is not getting listed in UI
OE-3057Authentication grouping-> When user edit/ Save system throws error
OE-3053Def Challenge Response Que: Successful submission does not authorise user to proceed
OE-3052Create New Challenge Response Que, Metadata Type and Language pages have display language name labelled as null.
OE-3050UAR: Entitlements view REST API
OE-3049Webbased Auth rule: Continuous page redirection
OE-3045TOTP Auth rule: Continuous page redirection
OE-3044Authentication rule: Throws error when user click on save button
OE-3042Resources: Edit resource-> Navigating to Create Resource page when user click on Edit Resource
OE-3041Resources: Approver Association-> Throws error when user click on Approver Associations
OE-3038Messages properties cleanup
OE-3032Selfservice: Get My Devices page throws unknown error
OE-3030Selfservice > MyInfo: Duplicate entry for IT Policy Status
OE-3029Handle click event gracefully for GATEWAY SMTP click on System Configuration tab
OE-3026Captcha Auth Rule: Captcha not loading on any browser
OE-3024Migrate code of UAR reporting from UI to backend
OE-3020dropdown elements should allow typing
OE-3018Cannot add field to a user template, when save error is "Phone number is a required field"
OE-3015Access control: Organization-> Proper validation needs to be displayed
OE-3014Access control: Organization-> Organization Entitlements-> Date format needs to be udpated
OE-3012Access control: Organization-> Organization membership-> Date format needs to be udpated
OE-3011Access control: Organization-> Organization membership-> Role-> Not allowed to update
OE-3010Access control: Organization-> Organization membership-> Not allowed to delete
OE-3009Access control: Organization-> Not listing the Resources in organization entitlements
OE-3005RPM installation testing without internet access: Getting error when user install MariaDB RDBMS locally
OE-3004Introduce event-driven UAR
OE-3003Unable to create new managed system
OE-3002My gorups menu under incorrect root
OE-3001/webconsole/supSub.html: can't add supervisor/subordinate
OE-2999[Login page] Add validation for 'Login Id as a required field'
OE-2997Python build failing
OE-2994Access control: Business rules-> Target-> Number of days field should not allow alphabetical character
OE-2987Access control: Entitlement bulk operation: Select all should work when user manually select all rows in column
OE-2986Access control: Entitlement bulk operation: Systen throw 404 error when user add bulk operation
OE-2985Add footer to Login/IDP pages
OE-2983User admin: Add identity-> Save-> System throws error
OE-2981Administration: System configuration-> Save button throws mandatory field error only after click on Workflow tab
OE-2980Mail configuration: Create new mail configuration: Asterik symbol needs to be removed for non mandatory fields
OE-2978User admin: Create/Edit user-> User status is not getting updated for disable and Leave with pay
OE-2975Orphan management->grid pagination is not working
OE-2967Web console: Login-> Displaying inactive language
OE-2966Web console: Administration-> Page template-> System throws error
OE-2965Web console: Mailbox configuration-> Create mail configuration template->Clicking on save throws error
OE-2964Web console: System configuration-> UI-> Show Profile picture section on My Info page: Profile picture section is displayed
OE-2963Web console: System configuration-> UI-> Self registration->Self registration is enabled in login page
OE-2962Webconsole URL is updating to Selfservice URL on refresh
OE-2960esb depends on groovy-manager
OE-2959approver association UI modification issue
OE-2958Web console-> Administration: Consent configuration page needs to be updated
OE-2955Web console-> Group: Throwing 404 when user save identity
OE-2953Web console-> User search-> Clear-> Does not clear selected values
OE-2952Web console-> User search-> Need to update query search text
OE-2951Web console-> User admin: Validation error on user creation
OE-2948Web console-> User admin: Orphan management-> System throws internal server error
OE-2947Web console-> Access control: Group entitlements-> Throws 404 error
OE-2946Selfservice:Application-> Throws 404 error
OE-2944Webconsole: User Admin-> User devices throws internal server error
OE-2942List of API issues in 4.2.2
OE-2939Add Password Visibility toggle on login and change password Screen
OE-2938No eviction policy on redis (kubernetes)
OE-2935Error when save password policy
OE-2933Migrate UAR Entitlement view page to React
OE-2932Migrate UAR landing page to React
OE-2931Unable to Create New Group
OE-2929removal of duplicate network definition for curator
OE-2928Openiam does not work over rproxy+nginx in RPM
OE-2927Fix CVE-2025-29087
OE-2926Migrate UI from Webpack to VIte
OE-2922OpenIAM SSL private/public key has been exposed
OE-2907Add automated docker scanning into our pipeline
OE-2906webconsole and reportviewer wars not publishing correctly to jfrog
OE-2905Create Orderable List Component
OE-2904SoD violated users view per policy
OE-2902SoD violation exception functionality
OE-2900fix mariadb migrations
OE-2889Teams bot deployment scripts
OE-2887To fix the verbose messaging(HTTP status 404? not found) for UI
OE-2884Prototype of an end framework consumer - based on AD
OE-2881Log module - basic implementation
OE-2879RabbitMQ plugin - basic implementation
OE-2878Prototype of v6 connector core
OE-2868httpd upgrade from 2.4.61 to 2.4.63
OE-2867Unable to Save Self Registration Configuration
OE-2866Selfservice > 'Edit Profile' throws Internal Server error
OE-2863Multiple UI issues on 'Consent Configuration'
OE-2862'Forgot Password' functionality is broken in 4.2.2
OE-2861'Self Registration' functionality is broken in 4.2.2
OE-2859Unable to delete newly created resource - user, role, group etc.
OE-2858PostgreSQL products must be a version supported by the vendor.
OE-2855Not possible to load policy map list page
OE-2853merge createRequest.jsp from 4.2.1.13 into 4.2.2
OE-2850kubenretes and swarm: merge 4.2.1.13 into 4.2.2
OE-2849openiam-documentation: merge 4.2.1.13 into 4.2.2
OE-2846apache-modules: merge 4.2.1.13 into 4.2.2
OE-2845conf: merge 4.2.1.13 into 4.2.2
OE-2844iam-ui: cherry pick 4.2.1.11-4.2.1.13 into 4.2.2
OE-2843iam-services: Cherry pick 4.2.1.11-4.2.1.13 into 4.2.2
OE-2842java-connectors; Cherry pick 4.2.1.11-4.2.1.13 into 4.2.2
OE-2841Cherry-pick 4.2.1.11-4.2.1.13 commits into 4.2.2
OE-2839Fix CVE-2023-46118 RabbitMQ
OE-2837call getscores instead of getstatus
OE-2836Incode: improvements for user verification
OE-2834Unknown error appears on the page on creating new user
OE-2828merge 4.2.1.12 rproxy into 4.2.2
OE-2827Display System level notifications to end users.
OE-2826OIDC .wellknown endpoint should contain a reference to certification information
OE-2822Trim Audit Storage
OE-2819Document migration steps on our openiam docs
OE-2817Remove all non-sysadmin users from dockerhub, so we don't get charged for that.
OE-2816Modify all docker compose and kuberentes scritps (4.2.1.12 and 4.2.2) to pull from container-registry
OE-2815Migrate scripts to push to both dockerhub and container registry
OE-2813Migrate to new container registry
OE-2811Identify Verification: Phase 1: initial user verification integration
OE-2810Federation With Authentication Levels
OE-2809Openiam should work in IE11 :)
OE-2808URI Federation Groovy Scripts must know about the users approved auth levels
OE-2806Machine Learning Module does not work
OE-2805Make timezone configurable in pods
OE-2803Remove Forgot login link from the login page
OE-2800Using consul as the vault backend instead of etcd on rpm
OE-2798Fix Vulnerabilities (Java and httpd)
OE-2797SoD Policy violations detection (review and handle) v1
OE-2796UI implementation of SoD configuration
OE-2793DateRange component enchancement
OE-2792Revisit reminders/escalations of UAR
OE-2791rProxy Buffer Overflow with CentOS version > 8 as docker host
OE-2783Workflow - updated audits for create, accept, reject, complete flows
OE-2779Implement User Preferred Language in Email Notifications
OE-2774Use soft de-provisioning approach
OE-2773Incorrect default splitter char in sync configs when using not mariaDB
OE-2771TOTP not work if user have not phone number
OE-2770UAR summary count when approver is a group both 2 levels
OE-2765Selfservice: 'Unknown error' on view my current access page
OE-2764Webconsole - 'Direct Reports' table for a user has a missing information
OE-2763Create new Organization Type, Resource Type, Access Right has display language name labelled as null.
OE-2762'is-conflict' API endpoint returns 404 error
OE-2761Incorrect end date gets saved for the user while adding Organization entitlement
OE-2760Unknown error after successful creation of new Organization
OE-2758Issues with add/remove parent groups
OE-2757Custom date range calendar picker with shortcuts
OE-2756User gets redirected to 404 page after saving newly created group
OE-2755Error around select-auth page and rproxy.
OE-2753Implement test connection in AD connector
OE-2751Request history takes long to load
OE-2748Improve UI for existing access in catalog
OE-2747Issues with add/remove parent role
OE-2746Unable to edit update 'Out of office assistance' from Selfservice portal
OE-2740Unable to view/edit/delete created mailbox configuration.
OE-2739Error displayed after saving mailbox configuration with missing required fields should be specific to the missing fields.
OE-2737SMTP Password field on Mailbox Configuration page should be encrypted.
OE-2736Required field mark (*) mismatch on 'Mailbox Configuration' page
OE-2735OR Logic does not work with rproxy
OE-2730Migrate editGroup page and create re-useable component
OE-2729Create core page, menus, and skelleton with backend calls
OE-2728UI improvements for review UAR interface
OE-2726Create API for get clientId for teams-plugin
OE-2722Group reconciliation
OE-2720Refactor campaign concept
OE-2719ES connection exceptions interrupt user save process and it became saved but not provisioned
OE-2716Fix slow SQL query to count UAR tasks
OE-2714Deploy 4.2.2 to a known location
OE-2710Merge Release 4.2.1.10 to 4.2.2
OE-2706Cannot search field by name
OE-2694Access Certification is restricted to a maximum of 20 users
OE-2692Synchronization script and configuration to import Azure MFA assignments
OE-2691Synchronization script and configuration to import O365 license usage
OE-2690Synch script and configuration to import AD privileged accounts
OE-2689Provide a script that can reset the OpenIAM database
OE-2688Add a read-only system ID field to admin forms for primary objects
OE-2687Criipto authentication don't see postbackUrl after callback redirect
OE-2686Auth Cookie Level Parsing Logic updated in 4.2.2
OE-2685PUSH authentication does not correctly set the Auth Cookie
OE-2683Device manager doesn't work without internet connection on server
OE-2682Add ResponseCode to API that validates token sent by email
OE-2681Introduce new policy for min answer length
OE-2680Administration page is loading very slowly
OE-2678Incorrect user message when giving not enough answers to security questions
OE-2677Reject button is disabled on task details page
OE-2676Typo error in Message/Warning
OE-2675Add ability to fill up audit log in connector listener script
OE-2674Investigate the feasibility of protecting 3rd party apps and doing 2FA with the rproxy
OE-2673TOTP/Challenge Response/SMS/Captcha step-up auth doesn't work with proxy
OE-2670UAR is not getting completed with 2 level approves and last is a group
OE-2669Issue with REST API /webconsole/rest/api/resources/search
OE-2668Direct reports screen in selfservice has several issues related to performance, sorting and navigation
OE-2667Improve access request (inbox) performance
OE-2666Sap fiori connector
OE-2665Introduce support for identity center in AWS connector
OE-2663NPE at Abena in Test ENV during Rabbitmq
OE-2662Redirect to specific url when user choose the email secure link
OE-2659Limit the frequency of OTP tokens that can be sent over SMS and EMAIL
OE-2658add support to proxying Twilio SMS and Voice OTP
OE-2657Allow to disable automatic organization hierarchy assignment
OE-2655My info page in selfservice is missing info
OE-2654'requested for' is empty/incorrect in inbox for new hire and self reg requests
OE-2653User search by employeeID is not 'starts with' as label says
OE-2652Selfservice > Password change history - UI issues
OE-2650Custom redirect is not being triggered when password reset is completed
OE-2649Extend the time that the message is shown on Reset password and forgot password
OE-2648Make the OTP resend code time configurable
OE-2647REJECT button is disabled on task details page
OE-2645Save approver assocision escalation list erases Notify on approve/on reject
OE-2644Selfservice -> change password extended - error 404
OE-2642Business rule page is broken
OE-2641Provision menus items are broken
OE-2640Broken pages 4.2.2
OE-2639Self service access review page is broken.
OE-2635Cannot upload profile picture
OE-2634Improve change password to support TOTP from the OpenIAM mobile app
OE-2633Test Email functionality from Mailbox configuration doesn't work.
OE-2632Introducing a null check in PolicyServiceImpl class for policyPostProcessor Method to avoid potential Null Pointer Exception.
OE-2629When request is delegated by group member new approver has wrong button panel on task details view
OE-2628Add the ability to define if a user has been authenticated using SAML SSO
OE-2626Add password history screen in self service
OE-2625Improve change password, Self-service password reset, and helpdesk identity verification to support TOTP and challenge questions.
OE-2623Reset password in selfservice is not async process
OE-2621Error on start webconsole, selfservice, idp from console
OE-2620Email Approval/Rejection via email doesn’t works for New Hire With Approval Request.
OE-2619Custom Redirect defined in the system configuration doesn't redirect user to a custom URL after reset password
OE-2618Redirect in loop after calling post-login metadata endpoint
OE-2617UAR count tasks issue
OE-2616Mariadb - Flyway errors on initial install
OE-2615First time login and first time password reset issue for AD Managed System Authentication
OE-2614PostgresDB: request history and request administration pages are not loading data
OE-2613Role Type appears “null” in the response of “get roles by Id” api
OE-2612searchManagedSystems fails with [Index connectorreply] not found
OE-2611Need to add script to override approvers for revoke request
OE-2608java-connectors: security scanning
OE-2607iam-ui and iam-services: security scanning
OE-2606Mapstruct tests: openiam-ui-intf
OE-2605Mapstruct tests: all UI projects EXCEPT openiam-ui-intf
OE-2603Cannot create content provider
OE-2600Password validation on reset password page
OE-2599Password history rule is ignored when reset password in Active Directory using password filter
OE-2598Fix typos described below
OE-25964.2.2 Docker Installation: Unable to proceed as save default content provider setup is failing on first login.
OE-2595Users being returned as only the reportees instead of the entire tree, with collapse/uncollapse functionality breaking for Active/InActive sesion
OE-2594MsSQL DB. User task history has incorrect table data
OE-2593Mapstruct tests: "PolicyAttributeMapper" to "UserToUserMembershipXrefMapper" (inclusive)
OE-2592Mapstruct tests: "GroupAttributeMapper" to "PhoneMapper" (inclusive)
OE-2591Mapstruct tests: from the first one until "FidoAuthenticatorMapper" (inclusive)
OE-2589Add Related account via API
OE-2588EBS Connection Connection Closed Error
OE-2587Wrong behavior for Criipto and Duo authentication if used "Select auth type" page
OE-2586RPROXY Auth Types NOT working
OE-2585Improvements into helpdesk functionality
OE-2584Mail Box configuration password is visible as plain text.
OE-2583Bug adding more search criteria
OE-2579Improve upgrade script (rpm) to work correctly without Internet connection in a box
OE-2578[DevOps]Add support for MacOS using the M1/M2 chips
OE-2577IDOR vulnerability In Task screen
OE-2576When manager/admin resets password for a user, expiry date/grace period are not updated
OE-2574Introduce security vulnerability scanning for jars
OE-2573Prevent end user clicks save button right after performing administrative action on edit user page template
OE-2572Just created user was added to role by BR but identity wasn't generated
OE-2567Vulnerability related to handling of consecutive forward slashes in URL validation in postBackUrl parameter
OE-2566Device Reistration leads to invalid error dialog
OE-2565[DevOps]Create rpm-utils for 4.2.2
OE-2564Enable dropdown for metadata in webconsole edit user
OE-2562Session cookie vulnerability
OE-2561Postback url parameters get turncated in login page.
OE-2560Oauth token Refresh is not returing token
OE-2559Refactor ServiceNowIncidentRequest. toJsonObject
OE-2558Error when saving user multiple times in short period of time
OE-2557Modify CSF rulesin proxy
OE-2555Include the Conduent vulnerabilities fixes into openiam
OE-2554Handle DUO_AUTH in rproxy
OE-2553vulnerability: Apache Commons Text - need to Upgrade
OE-2552OpenIAM Vulnerabilites
OE-2551User cannot approve access request in some cases
OE-2550Upgrade to the latest version of janusgraph
OE-2549Optimize API calls on direct report page
OE-2548Cannot override null attribute value by saving user via teplate
OE-2547Bug when submit new hire request with auto-approved step and requester has lots of direct reports
OE-2546Terminating users via SelfService Admin Actions should trigger a workflow but remain compatible to process requests without invoking the workflow.
OE-2545Alphabetical Search(intern)
OE-2543Add error messages for criipto authentication
OE-2541Fixes for batch tasks on schedule
OE-2540Update OpenIAM services to support multiple queues
OE-2539Update the Active Directory connector to support multiple queues
OE-2538Separating queues for password changes and synchronization
OE-2537Add groovy for generate callback url for criipto authentication
OE-2536Cache-control header should be better set for static content
OE-2535Show proper comments to the delegatee user if the actual approver is out of office
OE-2534Encrypt password type attr while saving simulation req
OE-2533Unable to upgrade Azure via Terraform
OE-2525Rewrite mailbox-configuration/edit.jsp
OE-2524Rewrite /revoke-bulk-access
OE-2523Rewrite /revoke-access
OE-2522Rewrite /create-bulk-request-select
OE-2521Rewrite /selfservice/createRequestSelect
OE-2520Create Request Pages (Selfservice)
OE-2519The /selfservice/myInfo page needs o be fixed
OE-2518Oauth PKCE Grant flow disable client secret check
OE-2516Organization Type when has a number in its name doesnt appear in the search results.
OE-2515Develop procedure of archiving indexes in ES
OE-2511Give janusgraph (rpm) 1Gb RAM
OE-2509Remove SimpleDialog in favour of ConfirmDialog
OE-2508Group management in self-service
OE-2505Update the OpenIAM mobile app for iOS and publish to the app store
OE-2503Customer reported vulnerabilities
OE-2501Edit role worflow request is not properly working
OE-2500when direct report page is in bulk mode need to hide action buttons
OE-2497Cannot do cert authentication in ESB
OE-2496Update Redis helm to the latest 17.7.x chart
OE-2490Configure staging.openiam.com to use certificate authentication
OE-2489Add mysql8 support
OE-2486Rewrite existing security-keys page into react
OE-2485Yubikey integration
OE-2484Refactor request & form templates
OE-2483Disable Redis snapshot
OE-2481Group management in selfservice portal
OE-2478Add ability to have more than one edit user page in selfservice
OE-2474Add support for RHEL 9 and Rocky Linux 9
OE-2471[Connectors]Google workspace
OE-2470[Connectors] FreeIPA
OE-2460Include oauth2 authorization endpoint in consent scope
OE-2458Password validation error if user has different logins for openiam and other system
OE-2455use multiselect in user Access Report criteria
OE-2454User's access is not displayed in the table
OE-2453Validation not working for Select supervisor field on user template in Selfservice.
OE-2449Select user on conversion page must work as normal user drop down search but among direct reports
OE-2448Inactive and Terminated users are not appearing on the Direct Reports table.
OE-2446Implement Custom Logout Redirect in OpenIAM
OE-2445Button of conversion is not appearing
OE-2444Need a confirmation pop up when clicking on save button on New Hire Form from Self service
OE-2443Edit user workflow error is not displayed to end user
OE-2436Wordkay Synchronization is throwing exception in Connector Logs
OE-2435Security vulnerabilities in 4.2.1.8 (Self Service) Content security policy not implemented properly
OE-2425Revoke access request - unable to complete
OE-2422Expand list of user statuses which can't be found in selfservice if flag is enabled in system properties
OE-2419Add/remove supervisor in selfservice using workflow engine
OE-2418Can't reset password for user right after it was synced from AD
OE-2417WEB AUTHENTICATION don't work correct, if used managed system login module
OE-2411Consent Management: Issues found while testing
OE-2410Introduce new option 'conversion' in direct report page
OE-2406add a "description" column of in view of access request
OE-2405Not able to open page 'direct reports' when one of direct report has lots of sub reports
OE-2404Add ability to limit metadata type list in dropdown when creating user object
OE-2402Description given upon user's termination is not saved in audit logs
OE-2400Disable/enable of identity is skiped due to man system was not found in cache
OE-2399Add in audit log group provisioning info
OE-2398add email notification for admins when manual task is created
OE-2397improvement for manual access assignment
OE-2395Can't instantiate group pre/post processors
OE-2394User must be able to apply a custom message when applying cart validation for self-service catalog
OE-2390Update OpenIAM workflows to allow integration with ticket system
OE-2386Add support for Organization level filtering for the Webconsole -> User manager
OE-2384User synch from source (AD for ex) without provisioning throws lock exception on MsSql DB
OE-2383Business Rule calculation doesn't take in to account whether the user's entitlements are end dated or not
OE-2382Update RPM deployment on RHEL with STIG security template
OE-2381refresh identity button should be avaliable only for active identities
OE-2380Identities of direct report must contain only active identities
OE-2376Monitor RabbitMQ
OE-2375Infrastructure monitoring for RPM deployments
OE-2374Prometheus monitoring for RPM Deployment including HA
OE-2372Automate Tanzu deployment using Terraform
OE-2370Deploy OpenIAM to Tanzu (non-ha)
OE-2369Analyze requirements for deploying to Tanzu
OE-2367Improve httpd updating
OE-2366In Self-Service Password Reset extended unable to select multiple man systems
OE-2365after BR service restart no rules are applied to user
OE-2362add column identity into table of supervisor/subordinates and related/primary accounts
OE-2361Bulk password Reset Admin panel
OE-2351Deleting a Business rule produces the message "undefined"
OE-2350Unable to delete a target that has defined targets
OE-2342When you save a business rule and there is an error, you are not given an option to correct
OE-2341Migrate from ES -> Opensearch: java code
OE-2340Migrate from ES -> Opensearch: documentation
OE-2338Migrate from ES -> Opensearch: swarm
OE-2337Migrate from ES -> Opensearch: kubernetes
OE-2332Business rules improvements
OE-2331Save user with entitlements - did not update user info in entitlemens ES doc
OE-2330LDAP connector: if group is not assigned to a user return warn message back
OE-2325Improve audit log message for account being locked due to failed authentication attempts
OE-2322Forgot username email template should be improved
OE-2319access_token format should be configurable
OE-2318OAuth: PKCE FLow requires JWT parameter
OE-2314Improve user recon performance
OE-2313Can't create user with lastName Null
OE-2312fix cassandra configuration in ha installation
OE-2311Consent history for end user
OE-2309Improve the no-internet RPM install
OE-2308Upgrade the apache version in both docker and rpm to 2.4.57 to add security vulernabilities
OE-2307DevOps Tasks (4.2.1.6 and 4.2.1.7)
OE-2306when number of role/group is big (>10K) UAR may not contain needed user's access
OE-2302janusgraph get rid of the root user
OE-2298Bulk password reset in Self-service
OE-2296Validate that the user has changed a certain number of characters in their password from the previous iteration
OE-2292Add ability to skip policy map performing white setPassword operation
OE-2290Groovy script for relay state
OE-2289URI pattern - add ID field
OE-2288Batch task can't be scheduled when using mssql DB
OE-2287add support of Twillio new API path
OE-2284Can't select language on login page
OE-2282Group entitlement end date not getting saved from admin console.
OE-2281Introduce sonarcube in our build process
OE-2280Migrate from Elasticsearch to OpenSearch
OE-2279UI Page Rewrite: Resource Questionaire
OE-2278UI Page Rewrite: Adaptive Risk
OE-2277Groovy elasticsearch: groovy-manager elasticsearch Connections stop working after a while
OE-2276Incorrect helm versions in our kuberntes project
OE-2274Support Openiam docker scenario on Ubuntu 22.04
OE-2273[UAR] Only one Campaign record appears on the User Access Reviews page.
OE-2272Escalation of the request didn't change assignee of the task
OE-2271Admin interface to view users consents
OE-2270check infra
OE-2269DaysToComplete for campaign is not counted correctly
OE-2268Consent agreement feature implementation
OE-2267User interaction with consent agreement
OE-2266Account unlock fails when the status of the openiam identity is different than selected managed systems
OE-2265Upgrade the apache webserver in the RPM and Docker distributions to resolve vulnerabilities
OE-2264Manager name in MyInfo should include the full name
OE-2263User name in the self-service portal header should be updated to show the full name
OE-2262Implement drag and drop for mui Table
OE-2257User self-service direct reports is not rendering completely
OE-2256RPM installation log
OE-2255Consent management
OE-2254Resolve vulnerabilities
OE-2253Incremental user synch has lock exceptions
OE-2251Redis K8 contianer has critical vulnerabilities
OE-2250Lock exceptions when we synch groups from AD to OpenIAM using sql server
OE-2249Access certification reminders are not being sent.
OE-2246Azure K8 deployment with Cassandra
OE-2245Docker deployment on RHEL 8.8
OE-2244RPM deployments on RHEL 8.8
OE-2243Deployment targets (4.2.1.6)
OE-2242Access request report improvements
OE-2241Workday Sync fails when there is JSON Array in the JSON document
OE-2240UAR refactoring for big data
OE-2236selfservice top menu buttons must be rbac controlled
OE-2233Cover by unit test feature of OE-2220
OE-2230Access certification review page (mssqlDB) : no paging on summary /pivot view/ admin tab
OE-2229add refresh button for identities in webconsole
OE-2228Introduce SonarCube into our CI pipelin
OE-2227set sendEmail /sendNotification auditEvent under primary audit action
OE-2226scope report is not getting generated
OE-2225add button to return to campaign layout page
OE-2221Wrong total count of tasks on UAR campaign stat page
OE-2220delete certification tasks if certification config is deleted
OE-2219Can't save certification when added escalation to a review step
OE-2218Fix misconfiguration of the HA cluster
OE-2217Edit user from selfservice should be auto-approved of requester is an approver
OE-2216Left menu is not working 'edit user' in webconsole
OE-2215Conduent second day roll out
OE-22144.2.1.6 Customer priorities
OE-2213User reconciliation fix for 'do nothing and report' use case
OE-2212business rule services goes down when one of rabbitmq node goes down
OE-2211SERGEY - move 4.2.1.5 PRs into 4.2.2
OE-2210SLAVA - move 4.2.1.5 PRs into 4.2.2
OE-2207ANTON - move 4.2.1.5 PRs into 4.2.2
OE-2206LEV - move 4.2.1.5 PRs into 4.2.2
OE-2202Initiate Bulk Request DirectReportee selection issue
OE-2201when user's access get end-dated the identity should become not active and vs when end-date erased
OE-2199when using MSSQL database API search tasks doesnt support paging
OE-2198Add batch task to provision future and deprovision expired access - [Built-in solution for 4.2.2]
OE-2197if user has request in simulation, openiam doesn't allow to delete user.
OE-2196New hire form submitted without accesses selected throws error when approve approves the request
OE-2195Create request API submits start/end dates in requester timezone
OE-2194Page of user entitlements improvement
OE-2193Enabling System Property : Revoke roles and groups after employee termination leads user into a provisioning loop.
OE-2191User access report should only include the entitlements that are included in the search filter
OE-2190Unable to update workday attribute-user_name with current SOAP API
OE-2189retry provisioning feature
OE-2188External link (API) called on every react page
OE-2187Can't generate identity for managed system w/o policy map with 'password' type
OE-2186call syncpostprocessor ones after all sync_threads will be completed
OE-2183Add ability to send header information for SMTP
OE-2181PROVISIONING_ADD / MODIFY shows a warning related to Business rules.
OE-2180extend direct report page with option of 100 and 250 users per page, add option to select all presented on the page
OE-2178view simulation request must have header with user name
OE-2177Delete All simulation reqs not working
OE-2175Support Comment attribute for AD users out of the box
OE-2174Parent group attributes are lost after connecting a child group
OE-2173Add option to skip writing search results even in debug mode for .NET/PS connectors
OE-2172Searching for users with an accent fails
OE-2171Add ability to unlock user account for AD connector
OE-2170Return DN from AD if Path was requested during the search
OE-2169Remove openiam identity from manage identites (selfservice)
OE-2167Enable Contractor Ops, Initiate Bulk Req buttons should be Access Driven
OE-2166Saving Managed System removes all simulation requests
OE-2165Column search for direct reports in self-service does not work correctly
OE-2164Webconsole - Advanced Search for users can only list first 500 users
OE-2163Provision failure requests report is not working on dev
OE-2157Resolve vulnerabilities in containers used for K8 deployments
OE-21564.2.1.5 - Release tasks
OE-2154Carried forward tasks (4.2.1.6)
OE-21534.2.1.5 - DevOps Release Tasks
OE-2152Introduce Graph DB to prevent cycling issue in fetching Supervisors and Subordinate.
OE-2151Compare button access certification doesn't work
OE-2150Implement connector response cusomt groovy handler
OE-2149Synchronize Group and User Relationships between OpenIAM and Active Directory (AD) and AD Group synchronization for nested groups for AD Group Sync.
OE-2148RHEL 8.7 deployment on Azure
OE-2147RHEL 8.7 on AWS
OE-2146RPM Deployment targets
OE-2141AWS: TF module with MS SQL Server
OE-2140AWS: TF Module with Postgres and Redis (PaaS)
OE-2139AWS: TF module with MariaDB and Redis (PaaS)
OE-2138AWS: Helm deployment
OE-2137Azure: Azure TF module for Cassandra
OE-2136Azure: Azure TF module for Elasticsearch
OE-2135Azure: Helm deployment
OE-2134Azure: Azure TF module with Postgres and Redis (PaaS)
OE-2133Azure: Azure TF module with MariaDB and Redis (PaaS)
OE-2132K8 1.25.6 support on major cloud providers
OE-2130Inconsistency in Data (selfservice)
OE-2129Add return code for Skip record but with sucess
OE-2125Managed systems dashboard shows 'no active connector found' for Rexx and Salesforce MS
OE-2124Revoke Access Request email notification contains ACCEPT REJECT buttons for auto approved request.
OE-2123some Unicode chars can't be send over email
OE-2122Auto Generate Password throwing error -> Only 4 repetitive characters allowed
OE-2121do not generate provision request if no changes has been done to user
OE-2118Logo on logout page is always default openiam logo
OE-2117Bug on filter AUDIT_ACTION for export audit logs to syslogs.
OE-2116Clone managed system - do not clone policy map correctly
OE-2115fix changePassword vulnerabilities
OE-2114dispaly name of objects in audit instead of IDs
OE-2113Managed system clone is broken - OU mappings are not cloned.
OE-2112Email notifications are being sent to cc and bcc participants of mail even though Mailbox configuration is in Simulation Mode.(When email is sent through post processor)
OE-2111Document changes regarding max tried for password validation
OE-2110Terminating error code improvements
OE-2102Managed system credentials should be maintained in the vault
OE-2100Design
OE-2071Podman support
OE-2069Docker support for Ubuntu 24
OE-2068Rancher
OE-2066Deploy to GCP Kubernetes 1.27
OE-2065Deploy to AWS Kubernetes 1.32
OE-2064Deploy to Azure Kubernetes 1.32
OE-2036Validate AD service account password presence before connecting
OE-2034Error on rproxy. Incorrect approvedAuthLevels value.
OE-2033Hide terminated users in self service
OE-2032Introduce auto approval for access revocation request
OE-2031Self Service-During user creation if custom attribute is left empty later if user tries to modify custom attribute then it is not changed in user profile
OE-2030Value for custom attribute is not getting updated when end user is modifying through self service
OE-2029Add filtering options for direct reports in self-service
OE-2028Business Rule Screen remains editable for user which has read only role
OE-2027GraphID Cache not refreshed if RabbitMQ messages failed to deliver
OE-2026When custom Attribute value is changed for a user from SelfService form; assigned roles are getting removed from the user
OE-2025UI becomes unresponsive when changing the User Status using Administrative Actions
OE-2024add audit log into sendEmail method
OE-2023When user tries to validate a custom attribute using custom validator script, it throws internal error on UI on selfservice but it doesn't display which attribute is it related to.
OE-2018Add ability to expire campaigns
OE-2016Self-service forgot password - should always show the MFA options
OE-2011Revoke access workflow does not remove entitlements in the target system
OE-2010Create user from orphan doesn't set metadata type even if one was selected
OE-2009Performed actions are not stored in audit for add/modify user
OE-2008Stop logging in audit of provisioning_modify/provisioning_add Business rules that were not applied
OE-2006Add a configurable option where entitlements can be removed if a reviewer does not complete the review
OE-2004Enable/disable contractor operations button is absent from the direct reports page
OE-2003Introduce column Lock marger into popup for manage identities of direct reprots
OE-2002The user table cannot be populated if there are direct reports without an email address.
OE-2001Policy map - custom user attribute limit
OE-2000Revoke access request - revoke all user's access
OE-1999Troubleshooting utilities for all .NET/PS connectors
OE-1998Users are not able to checkout from the cart
OE-1997Selfregistration failes due to wrong code, even if no code has been asked
OE-1996UI Page rewrite: all authentication provider pages
OE-1995UI Page rewrite: /webconsole/patternEdit
OE-1992UI Page rewrite: /webconsole/br
OE-1991UI Page rewrite: /webconsole/ip-location-manage
OE-1990UI Page rewrite: /webconsole/synchronization
OE-1989Can't open history of my submitted requests
OE-1988Deep link to create requests doesnt always lead to tab #3
OE-1987Redis sentinel - Replace Redis with Sentinel for RPM installations
OE-1986Webconsole - user administration - improve the identities section
OE-1985Failure reporting for provisioning / de-provisioning operations by managed systems
OE-1983Webconsole - Approver association screen is cut off on lower resolutions.
OE-1982Webconsole - User admin is missing menu options when logging into /webconsole
OE-1981Direct reports - Identity operations - should pull the identity status information from the managed system
OE-1980Direct reports - Operations (Create request, Review access, disable, reset password, identity operations) should be enabled based on role.
OE-1979Customer based priorities - 4.2.1.5
OE-1978If Manager not having Super Security Role, he gets forbidden page on clicking reset password for his reporter's
OE-1977Catalog search is broken when searching using top search bar
OE-1976Direct Reports - User should not be able to perform Disable User, Restpassword ,and Manage identities for their own account.
OE-1975Provide otp validation on reset password through direct report
OE-1974Add description column into access cart table
OE-1972Password generated by policy map is not saved into openiam DB for non-default managed systems
OE-1971Bulk entitlement request by managers
OE-1970Orphan Management report is not generated
OE-1969Allow to keep only essential audit logs and rotate others
OE-1968Field description in user-role/user-group etc relation objects (XREFs) should be indicator about how access arrived to user
OE-1967Integration of EU EID by using Criipto solution
OE-1959AD path validation for user operations
OE-1957When adding group as a child/parent to another group then group attributes/admin/owner got erased
OE-1953fix csv file preview using selected delimiter
OE-1952[Entitlement Bulk Operations] "Participate in Access Certification" common field is missing
OE-1951[Entitlement Bulk Operations] Entitlement Objects pagination is not working as expected
OE-1950[Entitlement Bulk Operations] Internal Error when clicked Next button without selecting common fields
OE-1949Direct reports should allow enable, disable, unlock, password reset for a selected application
OE-1948Change password - extended should not require that the user knows their current password
OE-1947Allow AD Connector to add user with empty/null 'Manager' attribute
OE-1945Role and Group with false "is Visible" flag is visible on Webconsole and Selfservice portal
OE-1943add 4.2.1.4 version in doc
OE-1941[Entitlements Bulk Operations] Difficult to perform type and search user as Admin and Owner for edit common fields of entitlement
OE-1940[Entitlements Bulk Operations] "Select All" should consider the filtered entitlements and not all displayed on the page
OE-1939[Entitlements Bulk Operations] Sort Role name in ascending and descending order is not working
OE-1938[Entitlements Bulk Operations] Entitlement Type select drop-down content disappears on clicking down arrow
OE-1929Application vulnerabilities
OE-1926fix error which reflect on export user page on payload
OE-1925child event's timestamp in the audit log table is not adjusted to brower's time zone
OE-1922some java connectors are loggin password into log file. it must be masked
OE-1921.NET connector core - dependencies update all connectors
OE-1920Update Exchange connector libraries dependencies
OE-1919Test Exchange connector against latest version
OE-1918Improve handling password sync in AD connector
OE-1916menu 'About' is missing in Db mssql
OE-1898Enable operation can't be simulated
OE-1897Fix log rotation of janusgraph
OE-1896Simulation request table, date must be with time
OE-1895Audit for editing system configuration is poor
OE-1894Multipart responses sender ability for MSSQL connector
OE-1893Multipart responses sender ability for Generic connector
OE-1892Work with Kate to document Entitlement Bulk Operation features.
OE-1891Move 4.2.1.3 to CE docker tag
OE-1887API Usage - Entitlements
OE-1884Branding customizations for the Self-service portal
OE-1883Branding and UI Customization - Login/logout/Change password screens
OE-1881Merge 4.2.1.4 to 4.2.2
OE-1873Password policy priority is ignored
OE-1869Add/Delete Attributes for Roles/Groups on Entitlement Bulk Operation Screen
OE-1858Connectors status notifications (in 4.2.1.5)
OE-1856Simulation mode improvements
OE-1850Logging of simulation requests is weak
OE-1849Bug in access right when linked managed system is deleted
OE-1848Internal error on save content provider with empty authentication rule
OE-1847Cassandra does not get started during openiam-cli init
OE-1846uninstall script (rpm) does not remove redis data
OE-1845provide httpd_update "without internet" install scenario
OE-1844Directory Lookup - View User Info - High response times
OE-1843Add ability to hide items on login page
OE-1842"404 Page not found" on clicking URI pattern of a page template
OE-1839Notifications on Synchronization and Reconciliation processes
OE-1838systemd dependencies
OE-1837UI Page rewirte: /webconsole/reconciliationEdit
OE-1834Access certification: Delete a campaign
OE-1832UI Page rewrite: /webconsole/poliyMap
OE-1831Selecting Unselecting Menu not reflecting on User Login
OE-1830Scheduled batch tasks wrong order
OE-1829Can not create groups with the same name for different managed systems
OE-1828Fix logo and search bar in openiam documentation-4.2.1.2
OE-1827Set up notification when connectors are down on PROD and DEV.
OE-1824Webconsole user reset password menu throws error "password cannot contain login"
OE-1819Loaded pair or private and public keys is treated as invalid
OE-1818Add new action in target of business rules
OE-1817Curator is a cronjob is not called when deployed OpenIAM for the first time
OE-1816Complete Swagger (missing some APIs)
OE-1813New Hire with approval: Skipping approver levels
OE-1809Disable Rule is not working when trying to disable editing an attribute on the basis of user type in self service edit screen
OE-1808Start and End Date is not getting saved in database when the date format in system configuration is DD/MM/YYYY
OE-1807IS_NEW_xxxxx adaptive risks - incorrect behavior
OE-1806Policy map bugs/questions
OE-1804populate object data for dynamic custom field script
OE-1803recon refactoring
OE-1802Not Able to submit the Self Registration request after providing values for Start and End Date attribute
OE-1800Internal error when a Group member takes action on New Hire With Approval Request
OE-1799Accees Certification request not going to group members
OE-1798Users getting duplicated on Access Certification dahsboard for Oracle
OE-1797validate and get rid of obsolete fileds in metadata type
OE-1796Managed system is not populated on page of group identites
OE-1794non sense in logs after performing action 'deActivate' user from webconsole
OE-1793Clean up batch task schedule table for completed tasks
OE-1791Access Certification Campaign issues on oracle
OE-1790Authentication improvements - Knowledge questions and captcha
OE-1788[Progress Tracker] Issue with static and animated arrow
OE-1787Allow users to request access that is going to be expired soon when using catalog
OE-1786Logo changed but on refresh OpenIAM logo appears for fraction of second
OE-1785Max length should be increased for fields
OE-1784Selfservice > Requests in My Approval history appears blank
OE-1781Selfservice: Access Certification is not shown when using OracleDB
OE-1777Bulk user export
OE-1775The Orphan accounts on every run adds new record
OE-1774Audit logs do not show what has changed on each run (question about the feasibility to run a delta)
OE-1773Synch audit logs do not show the user name for new users during a failure
OE-1772Synchronization audit logs show an incorrect value
OE-1771Customer reported issues
OE-1770Non-admin user should be blocked from performing 'Initiate Transfer' operation.
OE-1769Remove RES_ATTRIBUTE_VALUES it is causing foreign key constraint fails
OE-1768Sync running in circle and never ends
OE-1767Script Connector For CREATEUSER
OE-1766add option to request access from the 'not authorised' page
OE-1765Introduce custom links on 'not authorized page'
OE-1764MS SMTP modern auth
OE-1762Max file upload limit for csv sync needs to be increased from 47 MB
OE-1760Stack Trace in reports should be removed
OE-1757Move code for sending out email to new user from idm to esb
OE-1756Suppress loading module warnings for AD module in connector
OE-1755Disable User from Selfservice doesn't update the Account Status on Selfservice's direct reports table.
OE-1754Access Request table should have 'Request for Access' Task Type as a pre-selected option.
OE-1758Organizations getting assigned to user who is executing the sync job
OE-1753[1199 Funds] Performance Issue on clicking User Access Review from Self Service
OE-1752Column BODY can't store big CSV file content
OE-1751'Select All' doesn't consider all the user contractors present in the Direct Reports table
OE-1750Provision service stops working when alias has more than one index associated with it
OE-1749MSSQL replace IFNULL with COLAESCE in mssql.history.select.mapper.xml
OE-1748Show time as well in Date filter
OE-1747[1199 Funds] Access Certification Reminder Notification is not working on production
OE-1746Log file after rotation remains 0kb
OE-1745Organization Entitlement and deleting functionality
OE-1744Add Test case in react for Initiate transfer component
OE-1743Add Filter in openiam documentation
OE-1742how to setup saml auth using user's email and not principal
OE-1741'Enable Contractor Operations' doesn't consider multi level direct report hierarchy
OE-1737Click operation on email id and phone number should be disabled in direct reports table
OE-1735Use the access control model to limit what users can to their organization
OE-1734Auth provider id should be part of our UI
OE-1733Provide an API to get all Scopes for ClientID in a single request
OE-1732introduce upgrade util for openiam-cli
OE-1731Search sort issues with 'View My Requests' table
OE-1728New Hire with approval workflow is skipped when initiated from Classic View
OE-1726Develop Sailpoint Script Connector for Tracfone
OE-1725QA Findings [4.2.1.5]
OE-1724Wrong Approver status for New Hire workflow in case of multiple approvers.
OE-1723401 error, when non-admin user clicks Initiate New Hire workflow.
OE-1722Create OpenIAM Doc for this feature
OE-1721Selfregistration setup and usage
OE-1720Rename new feature tile name from "Current Requests Requiring Approval" to "Approval Dashboard"
OE-1719When single option is selected under My Info - Current Requests Requiring Approval section appears blank, all the options appears only after clicking the tile.
OE-1718Current Requests Requiring Approval - "My Approvals" should not appear in the "Access Requests" Section.
OE-1717UI Page rewrite: /webconsole/editAttributePolicy
OE-1716UI Page rewrite: /webconsole/*Policy
OE-1714Create new user via REST API - wrong requestor is set
OE-1711Menu is broken when open Synchronization History page
OE-1710When selecting time on UI when to disable user it may not happen when manager wanted
OE-1707Initiate new hire
OE-1706Expand self-service landing page functionality to support JML processes
OE-1705New Hire User Worflow - initiate access requests for roles/groups
OE-1704add script to have current Access requiring approval menu enabled
OE-1703Add Sorting on View Direct Reports Screen
OE-1702Task progress tracker - take business rules into account
OE-1701Bussines rules - add new target action 'Create access workflow'
OE-1700Edit user workflow - can't add/remove user entitlements
OE-1699New Hire workflow - roles/groups are not presented on task details page
OE-1698openiam-cli autoinit mode is broken
OE-1697Include tar installation during openiam install
OE-1696cassandra and janusgraph services are not enabled
OE-1695Allow to customize login during authentication against managed system module
OE-1694Direct reports have multiple issues
OE-1693Access request count on the dashboard and the detail view are not aligned
OE-1691Apporvers order calculation error after UI configurations
OE-1690Curator: permission denied in rpm
OE-1689Add title to the simulation page
OE-1688When users login to OpenIAM using federation, we do not update the last login date.
OE-1687Audit log is poor for action SEND_OTP_TOKEN: error from OTP provider
OE-1686Pictures are not displayed in doc for OTP
OE-1684Introduce integration of sync and workflow API
OE-1682Update cluster_healthcheck.sh script
OE-1681Ensure default TLS1.2 usage for .NET/PS connectors
OE-1679PermittedDN should support several locations
OE-1678Introduce bulk operations over role and groups
OE-1677Allow emergency reindex with pagination of Elasticsearch indicies
OE-1676User last_date shown in the webconsole is one day behind the date saved in the DB
OE-1674.NET/PS cleanup tasks should be configurable
OE-1673Multipart responses sender ability for Exchange
OE-1672Multipart responses sender ability for WinLocal connector
OE-1671Multipart responses sender ability for Azure connector
OE-1675[Bug] Spelling mistake in error message for duplicate email id
OE-1669Add upgrade notes to OpenIAM Docs [4.2.1.3]
OE-1664Add checks for minimum PS version on .NET connectors
OE-1663AD connector search should generate warnings if any results were filtered
OE-1660ESB
OE-1659Workflow
OE-1658Idm container
OE-1657Synchronization
OE-1656Email manager
OE-1655Reconciliation contianer
OE-1654Auth manager
OE-1653Device manager
OE-1652Business rules manager
OE-1651Linux connector
OE-1650ldap connector
OE-1649JDBC Connector
OE-1648Workday connector
OE-1647Certificate generator
OE-1646Chown container
OE-1645Elasticsearch container should be updated like we did for Elasticsearch-k8
OE-1644Iamscripts container
OE-1643MariaDB container should be updated like we updated MariaDB-K8
OE-1642New container vulnerabilties
OE-1640vault server should be upgraded from 4.2.x to 4.2.1.3 and higher
OE-1638UI Page rewrite: /webconle/batchTaskEdit
OE-1636Add basic code checks to CI deployment process
OE-1635user entitlements page tab organization not shown dates and access rights
OE-1633Applying simulation requests in sequence
OE-1631Sort, Filter, Pagination On New page
OE-1630Simulation mode for email notifications.
OE-1629Update Docs to describe how customers can update branding.
OE-1627Docs to configure rProxy when a load balancer is being used
OE-1625Not possible to change lang labels for default fields on page templates
OE-1624Issues when calculation BR when request came from web service
OE-16224.2.1.3 vulnerabilities
OE-1621UI container vulnerabilities
OE-1617Unable to Send Attachment with NotificationRequest
OE-1616Unable to Delete Custom User Attributes
OE-1614Addresses Do Not Get Saved on Self-Registration
OE-1613Sponsored Accounts Can Be Sponsors
OE-1611Apply multipart responses sender ability to all .NET/PS connectors
OE-1609Apply protocol changes for provisioning operations on .NET/PS connectors
OE-1608Change SEARCH request parameter in all .NET/PS connector
OE-1607Add integration tests for search operations for .NET/PS connectors
OE-1602Add haproxy service as load balancer
OE-1600After run uinstall and then install again
OE-1598Janusgraph: multilist of cassandra Ips
OE-1597Vulnerabilities in Cassandra and Activiti
OE-1596set Cassandra log level to warn
OE-1595Make changes in conf files behind the scenes
OE-1594flyway base line is printed wrongly during rpm installation
OE-1592Add column of last login into User_report
OE-1591Improve doc for oracle connector
OE-1589Rename label in business rule
OE-1588[Language] Default language selection change not reflecting on the login page
OE-1586Newly created metadata type with 'isActive' flag false appears on page
OE-1583Verify SSO to office365 page was migrated in docs
OE-1582Migrate wiki page about Freshdesk SSO
OE-1581Migrate wiki page about DB migration
OE-1580Documentation
OE-1579Improve the ability to see the progress of workflows for end-users
OE-1578Self-service landing page should have a dashboard which shows the content of the in-box
OE-1577rpm installer can't install pre-released version
OE-1576include sap connector in release/prerelease process
OE-1575Managed system simulation mode
OE-1573Authentication Provider page broken as Scopes not getting searched due to change in BR screen
OE-1572[SysConf] 'Show the Area Code on Phone Numbers' flag status as false is not working
OE-1571[SysConf] Are Challenge Response Questions Secured? flag status change to true does not hide answers on the page
OE-1570Select date calendar UI issue
OE-1568[SysConf] Unable to add roles to the field 'Following roles grant access to see all object (ignoring "is visible" flag)'
OE-1567Handle backend operations based on Front end action.
OE-1566Add new pages for Bulk Operations
OE-1565Add New Columns on Existing screen and handle sorting/filtering
OE-1563Check on log rotation, new files appear to be 0b always
OE-1562Add ability to cluster vault service
OE-1561react.bundle.js is not extracted when upgrading rpm installations
OE-1557Introduce rest API to search oAuth client by client ID
OE-1556RPM cluster type of delivery
OE-1555Support for automated deployments
OE-1554SPS Improvements: RabbitMQ Parallel Booting
OE-1551SPS Improvements: Update stash
OE-1550SPS Improvments: Add ability to configure additional JavaOpts in terraform.tfvars or values.yaml
OE-1549SPS Improvements: Investigate Redis OOM
OE-1547SPS Improvments: Improve default resource limits
OE-1545There is no option to see logs from openiam-cli log util
OE-1544Validate smoothness of openiam-cli init
OE-1543Introduce util for release updates
OE-1542RPM deployments and related tasks
OE-1541Saving the email for a user in workday returns MalformedURLException
OE-1533Update mod_openiam C libs to use openssl 3.0
OE-1532Update lib-ssl to v3.0 in the rProxy
OE-1530Fixing broken umlauts characters for .net connectors.
OE-1529Describe dev CI using
OE-1527ADValidation.groovy classname update
OE-1524Internal Error on saving role with description more that 400 characters
OE-1522Modify RPM Installation for elasticsearch curatation
OE-1520Curate elasticsearch documents which dont need to be kept
OE-1519[SysConf] Internal error while creating new user after changing 'Default Managed System' from Default.
OE-1518Log4j vulnerabilities
OE-1517Resolve security vulnerabilities in Apache and JDK
OE-1516Add support for Rancher deployments
OE-1515Resolve vulnerability in the RabbitMQ-K8 container
OE-1514Accent characters user search issue
OE-1511Fixing memory traffic for SEARCH operation with multipart responses in .net connectors
OE-1509Can't instantiate GroovyScriptEngineIntegration in groovy for script connector
OE-1508Allow reports to be sent over email to requester
OE-1507Fix call of pre/post processor for class DeleteGroupProvisionOperation
OE-1506Problems on authentication policy page
OE-1504Clone Managed system is broken
OE-1503Sync History Error
OE-1502esb get error on start with custom VAULT_SECRET_PATH
OE-1501Set headers as part of default configuration to improve security
OE-1500Upload file extension error in MyRequest page
OE-1498[User Bulk Operations] Search Resource - Search by resource type is not working
OE-1497[User Bulk Operations] Reset Password - For auto generate password selection, checkbox for Send password via email should be disabled and checked
OE-1496[User Bulk Operations] Search Group - Search by managed system is not working
OE-1495[User Bulk Operations] Items displayed per page shouldn't be empty by default
OE-1494Synchronization configuration list is empty in webconsole.
OE-1490Related to the above, that the rules could be sorted by one of the fields.
OE-1489The business rules filter by status does not work.
OE-1488Business rules improvements
OE-1486Internal error occur on self registration
OE-1483Managed systems are not being saved as part of the business rule target
OE-1482Error in the preview of business rules
OE-1480ManSystem attribute table - remove md element dropdown, it's not applicable for ms attributes
OE-1479Merge SOAP and REST Workday connectors
OE-1470User is not added in full tree of organization based on org hierarchy
OE-1468Remove deprecated items in system configuration
OE-1467Can't add child/parent organisation to an organisation
OE-1463Parametrized operation reindexAll (ability to disable reindex by desire)
OE-1450Workday Connector changes for Company Attribute
OE-1445Refine Workday Rest Connector
OE-1444Resolve container vulnerabilities in rProxy and Janus Graph
OE-1442add ability to override email sender
OE-1441Create a workday connector documentation
OE-1437user search doesnt work when search by metadata + user status
OE-1436Implement rest API to create audit logs from third-party systems
OE-1435When sync has error SYNC_CONFIG_ALREADY_RUNNING there is no details about sync config
OE-1432Improve managed system dashboard
OE-1431Improve synchronization configuration list
OE-1430Role manager summary view should also show the description
OE-1429UI Improvements
OE-1428Roles must be unique within a managed system
OE-1427Can't set start/enda dated and access for user-org membership
OE-2128Add janusgraph performance improvements to RPM installation
OE-1426Need a filter query to syncing certain number of records from Workday API Connector instead of all the records
OE-1425CSV sync groovy issues
OE-1422UI Issue: Complete Button text not displayed on User Entitlement screen
OE-1421Issue with role search on Role Screen
OE-1414Notify on approve type is multiselect field but after clicking on save and again check the value it gets deleted in Review All Access Position Change Workflow
OE-1411Error message is displayed on screen if MAILBOX CONFIGURATION template Mandatory fields is left blank
OE-1409UI should be able to work with an available node if the initial node which was contacted is down
OE-1408Update our HA configuration so that its not pinned a single node - especially true for Elasticsearch, Redis, RabbitMQ and Vault
OE-1407Improve default HA configuration
OE-1405user report is blank for supervisor filter
OE-1402Optimize performance for HR feed using CSV to import to OpenIAM
OE-1401Optimize performance and memory when import from target to OpenIAM
OE-1400Optimize performance and memory for synchronization and provisioning when working with large datasets
OE-1398Email to {0} is displayed as action button on Access Certification request
OE-1394Large dataset can't be pulled when using RDBMS sync adapter
OE-1393user termination is not reflecting in AD on moving user form normal Ou to disabled ou
OE-1391User is provisioning to AD with out group as a Member Of
OE-1389self registration navigation between pages has no loader
OE-1388Allow to customize email templates in user workflows
OE-1377Upgrade to JDK 17
OE-1376Stack upgrade
OE-1372revoke access request approval on Administrative actions is not working
OE-1366Change IPC communication between external runner and connector
OE-1352Fixing showing sso application icons for App Launcher macOS version
OE-1350Batch task 'activate by start date' works wrong
OE-1349Group Identities Managed System Column is empty
OE-1348Cannot add authentication provider attrbiutes
OE-1347Synchronisation Page Not loading
OE-1346Login=prompt is not removed when request came from login page
OE-1345Group search does not work if there is "-" hyphen in group name on role entitlement screen
OE-1344Error is displayed on screen if MAILBOX CONFIGURATION template field is left blank
OE-1343Message is not clear on UI when we tried to save MAILBOX CONFIGURATION
OE-1342Business rule: dropdown to select groovy script must be autocompleted with groovy scripts in suggestions
OE-1341Create new UI custom fields - can't select Section type
OE-1339Keele UAT findings/improvements
OE-1338Cant' submit seflreg form
OE-1337Show email/phone on webconsole user search result regardless of published status of these objects
OE-1336Simplify the selection of admin and service accounts
OE-1334Integration access certification with SOD rules
OE-1333Implement UAR reviewer: user view and user's entitlement view
OE-1327Additional User Search Criteria -No result found Issue
OE-1326Password policy is not associated with user
OE-1325Create User Template Supervisor search is not accurate
OE-1324Managed system prop to skip it from password sync is ignored
OE-1323Unable to get access rights associated with a role from our API
OE-1322Gluster alternative for Redhat Linux
OE-1321Add support for pipe deliminated files
OE-1320Mail code text box in user template is not getting saved
OE-1319User superior selection pop up appears while selecting subordinates
OE-1317User history - pagination disappears after closing event details
OE-1316User Entitlement - Items per page display is messed up on Resource entitlement table
OE-1315User History - current date as a start date selection filter is not working
OE-1314Reset password in webconsole doesn't save password for non default managed system in DB
OE-1313[IT Policy] - User unable to login when IT policy is activated
OE-1312Add support of msDS-cloudExtensionAttribute in AD connector
OE-1310Initiate manual task for termination user when terminate from 'administrative actions'
OE-1307Distorted web elements on system sysconfig page
OE-1306User Entitlement - End date gets saved one day prior as of the selected date
OE-1304User 'Email Type' appears blank on Selfservice
OE-1301Docker Security Scan: cassandra
OE-1300Docker Security Scan: vault + bootstrap
OE-1299Docker Security Scan: stash
OE-1298Docker Security Scan: redis + redis-k8 + redis-sentinel
OE-1297Docker Security Scan: rabbitmq-k8
OE-1296Docker Security Scan: prometheus + pushgateway
OE-1295Docker Security Scan: postgres + postgres-k8
OE-1294Docker Security Scan: nfs-provisioner
OE-1292Docker Security Scan: medusa
OE-1291Docker Security Scan: mariadb-k8
OE-1290Docker Security Scan: kube-state-metrics
OE-1289Docker Security Scan: kubectl
OE-1287Docker Security Scan: janusgraph
OE-1286Docker Security Scan: iamscripts
OE-1285Docker Security Scan: flyway
OE-1282Docker Security Scan: curator
OE-1281Docker Security Scan: consul
OE-1280Docker Security Scan: chown
OE-1279Docker Security Scan: certificate generator
OE-1278Docker Security Scan: activiti
OE-1277Docker Security Scan: UI Image
OE-1276Docker Security Scan: Base Docker (Spring Boot) Image
OE-1275Security issues with docker images
OE-1274Uploading file with not supported extension doesn't show an error
OE-1272Select Access from create request in self service is not reflecting with back changes
OE-1271[User Search] Additional User Search 'Role' added from config is NOT reflecting on User search page
OE-1270[User Search][Enhancement] Support to clear individual search criteria selected during user search
OE-1269[User Search][Enhancement] Add 'view items per page' (10,30,50) to User Search results
OE-1267[User Search] Search text appearing as a reference to the search criteria is messed up
OE-1266[User Search] 'Clear' button should clear search results along with search criteria
OE-1265Improve audit logging for sync and upload comments in request
OE-1263Business rules interface - show the managed system for entitlements
OE-1262Improve audit logging for Login action
OE-1260Reset password page redirects to login page
OE-1259[User Admin] Confusing terms - Alternate contact and Out of office assistant
OE-1257[User Admin] Email type resets to null while editing user
OE-1256Not able to provision user and group to AD
OE-1255Issues found during functional testing on 4.2.1.2/ 4.2.1.3
OE-1254[User Admin] User should be blocked from using future date as birth date while creating new user - add validation
OE-1253[User Admin] Can not clear user selection for 'copy existing user accesses' while creating new user
OE-1252[User Admin] Can not clear Supervisor once selected
OE-1250Bug searching names with accents
OE-1249fix tests for related accounts.
OE-1247Allow user to run java connectors without vault
OE-1246Not receiving credentials mail on user sync from AD to openiam
OE-1241RPM Installatio modification: redis connection mode
OE-1238Button Overlap on Delete managed system confirmation pop-up
OE-1237No able to add principal name and employee id in create request self-service portal
OE-1236Long Term add 3rd Party Application registration UI and storage in DB.
OE-1235Short term - Hardcode in SSOController 'TEAMS_PLUGIN'
OE-1234Extend Register Application functionality.
OE-1233[Selfservice] Directory Lookup is missing from the UI
OE-1232Once our search is complete with the user and we proceed further the user name still displays in the search field
OE-1228UI Page rewrite: /webconsole/batchTaskSearch
OE-1227Put validation of verification of email/phone on server side
OE-1226Login again link has 'undefined'
OE-1225[Selfservice] Internal error on 'accept' request
OE-1224User Approver association is not working
OE-1222Self-registration, verify both an email and phonenumber.
OE-1221Contractor management - self-service improvements
OE-1219request reminder NPE
OE-1218disable user from UI (direct reports screen) by manager should not initiate workflow
OE-1216Azure connector code refactoring
OE-1214Update solution default log levels
OE-1212Simulation batch mode should save execution order
OE-1211problem with newly created roles/groups/resources/users and integrity with Graph/Elasticsearch during update
OE-1210add comment in email when auto delegate
OE-1208edit user: UI is not clear what was changed in user.
OE-1207Apply changes on .NET connectors for handling async search requests
OE-1206Batch simulation runner for .NET connectors
OE-1205Suspend/resume operation need to apply policy map on all .NET connectors
OE-1204Update Successfactors connector build
OE-1202principal generation
OE-1201request report manual M issue, no requester. how to open original ?
OE-1200group is not created in AD
OE-1197User access report - allow filter by supervisor
OE-1196Users access report - filtering seems to be doing an "or" operation vs an "and"
OE-1195Entitlement report
OE-1194Improve the USER_REPORT to allow extracting either "all" users and by multiple status'. Additional attributes also need to be added
OE-1186Simulation mode needs to support encrypting passwords
OE-1184Re-hire (Test case #28): user was not re-enabled:
OE-1181Extending MS Exchange Connector to support Exchange Online PowerShell V2 module.
OE-1176Timeout problem of retrieveing data from the Connector
OE-1175MS-SQL server tests for flyway fails w/o showing an error.
OE-1174Hide language dropdown on login page if only one language is active
OE-1173hide of profile picture hides 'my info' section in selfservice
OE-1172Display supervisor on template (edit user in selfservice)
OE-1171Simple email address (simple phone) fields are not display data on user template
OE-1170Improving filtering in SAP
OE-1167Create a report which shows the request which are approved/rejected
OE-1164Access Rights for all the configured applications to be made accessible
OE-1163CC - Email Notification and sending credentials
OE-1162Issues reported by PWC
OE-1161Request escalations are not being sent
OE-1159Test case #24 - Unable to disable user using the direct reports interface
OE-1158Test case #15 Group name in the "New Group Request" email is wrong (see attached). This has been brought up before.
OE-1157Test case #11 No buttons are shown in the email "Revoke Access Request", just links (see attached).
OE-1156Test case #10 A user submitted an access request on behalf of another user. Email was not sent to the user that made the request.
OE-1155Test case #8 When a request was rejected (after the request was delegated), the email was only sent to the end user
OE-1154Test case #7 View details button in the email doesn't work.
OE-1153Test case #5 Accept Request link in the email doesn't work.
OE-1152Test case #4 When a request was rejected by the 1st approver, the email was only sent to the end user. Before it was sent to the end user AND the approver.
OE-1149User access report - add ability to select users based on the supervisor
OE-1147Revert back info that was in sync audit action
OE-1146just created users can't use OTP
OE-1144AD connector may not save custom attributes
OE-1141Flyway fails for MSSSQL script.
OE-1135Problem with business rules
OE-1133Upgrade to the latest version of the Springboot
OE-1132Spring framework vulnerability CVE-2022-22965
OE-1131Password Logging Issue
OE-1130Combining single value collection with multi value collection for Exchange connector.
OE-1129Allow multi select of types to notify on approve/reject in approver association
OE-1126Allow the customer to override the SOD rule
OE-1125Apply new fixes into OpenShift Helm deployment
OE-1124Paging shows up to 10000 elements
OE-1123Regression: Can't clone managed system
OE-1122Role management -> Role entitlements does not show the parent role or the inherited entitlements
OE-1120Self-service direct reports interface - add the username and employee Id to the list of attributes.
OE-1116Workday connector
OE-1114Conditional search parser execution on .NET/PS connectors
OE-1113Exchange connector logs code cleanup
OE-1112Azure connector logs code cleanup
OE-1106Upgrade to Elasticsearch 7.16.3 to get the latest log4J
OE-1105Upgrade Elasticsearch 6.8.23 to get Log4J 2.17.1
OE-1104Upgrade Apache HTTPD server in both docker and RPM
OE-1103Upgrade Apache and ES to mitigate security vulnerabities
OE-1099Manage passwords of related account when primary user changes its own password
OE-1098Business rule causes block of provisioning
OE-1096Create a hook in the request from service catalog process where can customers can add custom SOD rules
OE-1095Terminate user workflow
OE-1089Revoked entitlement is not properly presented in subsequent approvals
OE-1081SafeNet Authentication Service (SAS)
OE-1080Transfer attachments from access request to manual task
OE-1078Entitlements are not being deprovisioned on the end date
OE-1077Entitlements which have a future start date dont work
OE-1076Emails related to "new group creation" have issues with the text and links
OE-1075Links in email notifications related to workflow are not working
OE-1074Regression issue - call to start workflow no longer compiles.
OE-1073Customer / Internal QA Findings
OE-1072Default scripts load configuration related to a specific customer
OE-1071Create default configuration for SAP Successfactors connector
OE-1069Increase container memory for vault
OE-1068Send email notifications for manual task
OE-1066add button to download orphan report from orphan page
OE-1064Create user is forcing user to enter phone number even in the absence of the phone number field on the template
OE-1062Add references of new properties and GroovyScript to dozer mappings
OE-1061Finish up and refactor SearchUserDialog
OE-1059If User has banded symbols(like space) in last /first/name or email or login sync can't save user
OE-1058Hide private key body from the public access from REST API
OE-1057Create DTO class for new Entity GroovyScript and modify DTOs for existing entities
OE-1056Status and operation of business rule is not populated when open rule for edit
OE-1054QA Findings -4.2.1.3
OE-1053ES floods logs with warnnings in idm and other services
OE-1052Add references of GROOVY_FILE to existing entities which hold groovy path to various scripts
OE-1051Business rules Groovy are not running.
OE-1050Fixing WinLocal connector
OE-1049Bug in element displaying on self reg page
OE-1048Script connector has issue when reset password
OE-1047Task to rename existing groovy files
OE-1046Checking error in user synchronization produces blocked window
OE-1044Revoke access workflow should allow you to set the date
OE-1043Request-approval flow does not process the start date
OE-1041Create Table sql scripts for new table GROOVY_FILE
OE-1036Not display emails/phones/address for selfservice -> "Edit Your Profile"
OE-1035User can change phone after validation
OE-1032My Information
OE-1024files for Simple email and simple phone on selfregistration page are not ordered
OE-1019Organization location is not displayed
OE-1018User can change email address after validation
OE-1015error on generation orphan report
OE-1014Managed system configuration ON_DELETE doesnt work
OE-1012Sex can't be changed once selected on user edit template
OE-1009some of user data got lost when selfreg is multistepped
OE-1008Apache webserver vulnerabilities
OE-1006Task that must be claimed can be approved from approve list
OE-1005Change password fails
OE-1004Fix Paginator for page : " Reconciliation and synchronization activities"
OE-1003Update Reconciliation activities CSV report.
OE-1000Create new RabbitMQ Vhost openiam_machine_learning for RPM Installations
OE-999Upgrade Elasticsearch to v7.16.1
OE-998Upgrade Elasticsearch to v6.8.21
OE-997Fix email templates
OE-996User data got truncated after saved in self-reg-doc
OE-994Implementing custom unlock screen for macOS credential provider
OE-993Self Registration NOT working - Internal Error on submission
OE-991Reconciliation failing on start
OE-990dynamic field based on other fields data
OE-989email conformation during selfregistration
OE-988Fix Managed System data collecting
OE-987When doing reset password by email user got 401 error
OE-986Allow user to select manager(sponsor) when doing self registration
OE-985preview users by application throws internal error
OE-982Update documentation about AD connector sync
OE-981Decrease default concurrency of .NET connectors
OE-980Toxic access detection
OE-979Newly created metadata element is displayed by ID not by name
OE-978Task administration throws error when trying to open any task
OE-977Org certified shows as ID instead of display name
OE-976My approvals page improvements
OE-975If the only one option for OTP enabled, end users sees error
OE-974resave of auth provider erases resource properties
OE-973Field "Gender" added to page template display incorrect value
OE-972Simplify logging in Generic connector
OE-971add documentation for recon config
OE-970Re-Check 'User Access Report' extension and data
OE-966Upgrade gatsby to the latest version
OE-964Improve request report to show provision status of after request was approved.
OE-963Increase name and description column of table ROLE and GRP
OE-961AD password checked - Directory searcher case sensitivity
OE-960RPA investigation
OE-959Migrate My sessions selfservice page to React framework
OE-958Popup window with error/success message is attached to top of the frame
OE-957Add connectors to kubernates cluster.
OE-956Position change activiti requests don't appear in list of requests to approve for approver
OE-955Unable to create office 365 mailbox template
OE-953Can't create revoke access reqeust
OE-952Email notificiations doesn't work for revoke access workflow
OE-951Implementing installer package for macOS credential provider.
OE-950Mail Sender - can't send some email (NO_ACTIVE_EMAIL_CONFIGS)
OE-949Update tomcat version
OE-948Group Entitlements changes - doesn't trigger group provision
OE-947Modify user fails and logs show no useful information
OE-944Add ability to delete scripts which are no longer needed.
OE-942Revoke Access Workflow - requestor field is empty
OE-941Access review page should show the account for each managed system as well as the start date/end date of when that account was created
OE-940Access certification campaign fails to run due to issue with scope report
OE-939E-mail notifications sent after a request is approved need to be improved
OE-937In-box task type is wrong
OE-936Inbox filtering by "Request Create Date" does not work
OE-935Term "Default approver" in an approval flow is not intuitive
OE-934Request approval computes the wrong dates if a duration has been selected
OE-932Login page - Clicking next without entering a value does not display any error messages
OE-931[Audit Log] Unable to perform 'Select an Action' by type and search
OE-930[Audit Log] Reindex elasticsearch - No description and Client IP found in the Log Viewer table
OE-929[Audit Log] Sequence Generator - No description found in the Log Viewer table
OE-928'Cancel' on Approver Association page not working as expected
OE-927[Self Registration Config] Issues found with template fields addition
OE-926Migrate Task screen to React framework
OE-925Deployment architecture for 4.2.1.2
OE-924Number of access certs for the approver is not displayed
OE-923can't add login to user using UI interface
OE-922The extra \ in JSON for MetadataFieldTemplateXrefEntity#rules
OE-921Can't save language mapping for Resource with type Application Category
OE-920User Entitlement page - Once collapsed, Resources tree can not be expanded
OE-918Week of Sept 27th
OE-916Update UI issues with the my approvals screen based on details provided
OE-915User access screen in self-service - the space between rows is inconsistent and too broad
OE-913User was created using synch, but user history does not show the create event
OE-911QA Findings [release 4.2.1.1 - 4.2.1.2]
OE-910About OpenIAM page doesn't show build information
OE-908When manual managed system dont have connectors then its entitlements can't be displayed in certification task
OE-905Exchange
OE-904AD
OE-903Azure
OE-902Make fileshare permissions available to be assigned from user perspective in AD PowerShell connector
OE-901[Selfservice] My Approvals inbox counter not decrementing after action taken on the request
OE-900Update documentation describing how to work with DFS publishing
OE-899Merge 4.2.0.9 into 4.2.1.1
OE-898Edit user workflow should follow same model of approver associations
OE-897UI improvements for View Direct reports and My Access screen
OE-896Week of Sept 20th
OE-895The reverse proxy stop working with web sockets.
OE-894Find and fix problem with Reports page on MSSQL DB
OE-893Menu loading is failed with timeout for Super Security Role
OE-892Add DFS support to AD connector
OE-891API getUserBetweenLastDate ignores actual date range
OE-890User template read-only fields still are editable
OE-889Supervisor type disappears after manager user save (1199)
OE-887change from custom ui theme back to default does not happen
OE-886Create new group request - task details page doesn't have useful information
OE-885Delegate Request email - incorrect link in email
OE-884Add UI and some general methods for Counters
OE-883Documentation about D365FO Connector
OE-882Self-registration flow improvements
OE-881Unique series generator impl
OE-880Name of language does not change on login page
OE-879Proxy can't proxifying content for root '/'
OE-878AD connector - add FileShare object type handling depending on Group parameter
OE-877add improvements for support provisioning fileshare in AD connector build.
OE-876add support of AD fileShare provisioning
OE-875Openshift - Deploy, create configuration and document
OE-8741199 - UI improvements
OE-873Support hours when request for access
OE-872Backport AppleID in 4.2.0.9
OE-871Provision / synchronizaion user groups for linux not correct for few groups
OE-870new version of spring has bug in AbstractJackson2HttpMessageConverter (sslRestTemplate )
OE-868Migration from v3 to v4 supposed to erase activiti data
OE-865Introduce Apple ID single sign on
OE-864Migrate View My Access selfservice page to React framework
OE-862Improve review my access page in selfservice
OE-861Dynamic combobox doesn't work as expected
OE-859BCC sending email functionality has error
OE-857Improve service account selection in our access review process
OE-854[Admin] Improve ability to manage identities associated with a user
OE-853Rproxy: change references of responseValue to value
OE-852Login module should check basic user parameters even if password was not sent
OE-847Check reports, new durations should be applied.
OE-846fix UI: force user to select less duration if his request went out of limits
OE-845improvement for access right drop down in catalog
OE-842Migrate View Direct reports selfservice page to React framework
OE-839Update CSP Header to allow inline images loaded by custom UI theme
OE-838Social Login for Apple
OE-832PostbackUrl management for login again after reset account or forgot username and etc..
OE-831request administration is unable to open request if number is duplicated
OE-830Can't reset password by Email for Locked account due to exception
OE-829Unable to login to Selfservice for a new user when multiple auth methods are set
OE-828Implementing installer for credential provider
OE-827Implementing unit tests for credential provider
OE-826Implementing credential provider for windows with supporting OIDC
OE-825Upgrade Infrastructure for 4.2.2
OE-824Add support for passwordless authentication
OE-823Profile switching
OE-821Java client for authentication (office depot Request)
OE-820Kronos - implement add operation
OE-819Business Rules - performedActions are null
OE-818Improve Policy Map for membership attributes
OE-817Business Rules - can't change target for existing business rules
OE-816Provide the option to renew access (via a email notification)
OE-815Revoke access when access expires
OE-814Send notification n days before access is going to expire
OE-813Use the max duration to validate the dates during the request creation process
OE-812Use the default duration to set a default end-date on request when using the cart
OE-811Ability to set both a duration and a maximum allowed time for a request
OE-810Request / approval improvements
OE-809Add admin operations to support: Terminations and deceased
OE-802Search audit logs
OE-801Search / create / modify authentication provider
OE-800Search / create / modify Managed systems
OE-799Search / Create / Modify Organization
OE-798Search / Create / Modify Roles
OE-797Search / Create / Modify Group
OE-796Get My application
OE-793Refresh token
OE-792Get token
OE-791User create
OE-790User search
OE-789logout
OE-787Improve swagger documentation for essential services
OE-786New UI for SelfRegistration Steps management
OE-784Duo
OE-779localization on labels on headers appear to be broken
OE-777Webconsole -> Menu administration is unable to page through results
OE-776Customer reported issues for 4.2.1.1
OE-774Integrate 'default membership duration' with request access functionality
OE-772Add managed system information to connector related events
OE-771Add Client IP to the audit summary view
OE-770Self registration does not work
OE-768Ldap connector doesn't delete membership for Active Directory.
OE-767Change localhost to 127.0.0.1 in healthcheck in rproxy docker container
OE-766Improvements for RBAC model
OE-765Google connector - can't sync user-group memeberships
OE-763Auth Provider Resource URL got erased
OE-762Change password button in selfservice is disabled
OE-760Access Certification - Campaign show wrong counter
OE-759Migrate My approvals selfservice page to React framework
OE-758Log Viewer UI pagination disappears after closing individual event details pop up
OE-757AUDIT_REPORT is not working - 400 Bad Request
OE-756[REPORT] USER ACCESS REPORT/ REQUEST REPORT/ ENTITLEMENTS_MEMBERSHIP_REPORT: 500 Internal Server Error
OE-755Remove redirect to /webconsole/setup after CP was created
OE-75407/08/2021 RELEASE-4.2.1 Test Request
OE-752Add support for behavioral patterns in authentication
OE-750Refactor credential providers to support additional functionality
OE-741social registration does not populate fields of selfreg form
OE-740when error on social login then returned login page is empty
OE-739Cannot create auth provider (with type where supports_otp false)
OE-738User has not cell phone then drop down with OTP is empty
OE-737custom filed type combo box has wrong behaviour
OE-736Labels for custom fields are not properly translated
OE-735Two or more selfreg configurations can stay active for one content provider
OE-734Improve search in WinLocal connector
OE-733Add ability to add domain users to local groups is computer is a member of domain
OE-732[UI Theme] Uploaded Login, Selfregistration and application logo doesn't appear on Chrome and Edge
OE-731[FIDO Authenticators] Unable to register new key
OE-730All static resources are redirected to /idp/login when going through the proxy
OE-729Can't login using rproxy users with special charaters in name
OE-728Unable to proceed Use IT Policy page - Unable to access application
OE-726Message 'Challenge response questions feature has been disabled by your administrator' appears for a moment before user redirection to Challenge Response Question after Password Reset.
OE-725if managed sys has password type fields then need to decrypt them before send to connector
OE-724Update httpd docker image to latest version
OE-722Kronos - implement incremental sync
OE-720add response code to the audit table
OE-719Dynamics F&O connector
OE-718[Audit logs] Reconciliation - refactor
OE-714[Audit logs] Forgot username
OE-713[Audit logs] Forgot password logs incorrect messages
OE-712[Audit logs] Clicking forgot password, on a locked record, produces "UNLOCK_PASSWORD" event
OE-711[Audit logs] Batch task is executed, but from the initial log viewer screen we cannot tell which task was executed.
OE-710[Audit logs] Multiple authentication failures do not show that an account has been locked.
OE-709[Audit logs] Authentication failure event
OE-708[Audit logs] Logout creates multiple events which are not linked together
OE-704[Enhancement] Audit Log records of Self Registration Workflow Config are missing
OE-703unable to add page template when configuring selfregistration
OE-702Expand search filter when adding entitlements to user
OE-701Self Registration Workflow Config: Issues and Enhancements
OE-700Correct button label from 'And new Self Registration Workflow Step' to 'Add new Self Registration Workflow Step'
OE-699Internal Error appears while adding Self Registration Workflow step when only Name field is entered
OE-698Unable to create a Self Registration workflow with the same name as of the deleted one
OE-697add default action - end-date all access
OE-696when saving action in popup window, double click on save leads to duplicate item in action
OE-695Related account page cannot be opened (500 errror)
OE-694operation label should be for add AND update
OE-693Labels for actions are messed up
OE-692Business rules: improvements/bug fixes
OE-691make drop down autocomplete, not just selector
OE-690when editing action need to bring existing actions
OE-689Business rules: put name of the target in title of popup window
OE-688if business rule is modified then un_do target got cleaned up
OE-687Remove business rule immediately if it has no 'un_do'
OE-686[Selfservice] Non admin user unable to create request for himself
OE-685PUT HTTP method used instead of using POST for creating new Business Rule
OE-684Cancel Self Registration Workflow gives 404 error
OE-683Unable to create Self Registration Workflow.
OE-682HTTP PUT method used instead of POST while creating Self-registration Workflow
OE-679SCIM 2 - OpenIAM to act as a SCIM endpoint
OE-678Check on proxy side that URL's below are permanently public.
OE-676Log Viewer - Synchronization user failed logs
OE-675Log Viewer - Synchronization log event doesn't have child logs
OE-674Migrate containers to leverage docker memory limits for heap sizing
OE-673Add proper healthcheck for janusgraph
OE-672send out message to the alternate user only when it is his turn to approve
OE-671[OTP Provider] Unable to delete OTP Provider
OE-670[OTP Provider] Cancel OTP provider gives 404 error
OE-669Cannot run flyway against bechtel
OE-667Misc issues (audit improvements and others)
OE-666[Audit Log] OTP Provider event logs are not captured
OE-665'Browse File for Upload' window opens on clicking text - 'Select Groovy Script For Loading:'
OE-664On deleting Custom Field, relevant resource for the created custom field doesn't get deleted.
OE-663'Challenge response questions feature has been disabled by your administrator.' message on cancelling create CP on setup
OE-662Create User from Webconsole
OE-661SelfRegistration Workflow Configuration UI Fixes/Improvements
OE-660User Bulk Operations issues
OE-658Extend Orphan Management to allow to automated maintenance
OE-657Improve request - approver UI in the self-service portal
OE-656Implementing custom credential provider for Windows using (.Net)
OE-655Improvements audit logs and messages of selfregistration process
OE-653Improve AD connector login module
OE-652Menu Authorization is broken for 4.2.1
OE-650AzureGraph connector login module implementation
OE-649Add the ability to filter by description and type in the service catalog
OE-648Azure connector login module implementation
OE-647401 error when hit /webcosnole or /selfservice
OE-643email otp doesnt work
OE-642when enable email OTP, user cannot login using code from email
OE-639not possible to add supervisor card to the user template
OE-638Skip SearchBaseDN parameter if -SearchBase is specified in request for AD PowerShell sync
OE-637Reports doesn't work
OE-636Approver Association - can't calculate approver
OE-635User see Unauthorized page after /webconsole/setup
OE-634SSH Key Management
OE-633Can't add comment for request approval process
OE-631Fix auto approve functionality
OE-6301199 - UI improvements (requester/approver)
OE-629Reportviewer does not start
OE-628if user approves request using link in mail he might see internal error
OE-627Allow automatic PowerShell connector updates
OE-626if no access right selected during access request then approver got internal error when open task
OE-625org widget is broken on selfreg page
OE-624tab name is missing "webconsole" or "selfservice"
OE-623Incorrect userId in request to ESB
OE-622Create user logins by quarter report
OE-621sap user has to reset password after creation
OE-620main logo is not changed
OE-619Expired cookie should always redirect to login page
OE-618Add ability to rename Users in AD PowerShell connector
OE-617Merge 4207 into 421
OE-616Migrate confirmTwoFactorAuth jsp page to React
OE-615When open drop down to add oauth scopes, resources are not filtered by type
OE-614Handle Vault Bootstrap Errors
OE-613Migrate selectUserType.jsp page to React framework
OE-612Fix style inconsistency for migrated pages
OE-611Integration tests for updated AD connector
OE-610Cannot setup a content provider when going through the proxy
OE-609Migrate my-device jsp page to React
OE-607Remove user entitlements for target system - user still exists in the target system
OE-606Ui label/links small fixes
OE-605core changes in connecotr to support group sync
OE-604Access control model
OE-603Implementing OIDC .Net examples
OE-602after user submits revoke request he cannot track it
OE-597Migrate identityUser jsp page to React framework
OE-595Error when add comments to the create request
OE-594Refactor AD connector code to fit Generic connector structure
OE-593Improve logging on AD connector
OE-592Improve search for AD connector
OE-591Fix issue with possible connector installation path encoding
OE-584Migrate processHelpdeskRequest jsp page to React framework
OE-582Migrate device-registration jsp page to React
OE-581UI branding and customization
OE-580Developer - Getting started with the API
OE-579Flexible view of users in the system
OE-578Unauthorized user can see webconsole search menu instead of unauthorized page.
OE-577[Groovy Manager] Internal Error on Import Groovy script
OE-576Norway/Denmark Localization
OE-575Migrate secretWord jsp page to React framework
OE-574Return claim functionality in workflow
OE-573SAML SLO Exception
OE-572Installing on a remote database
OE-571User administration
OE-570Configure SMTP
OE-569Configure SMS
OE-568Configure HTTPS
OE-567Script connector
OE-566JDBC Connector
OE-565Reconciliation
OE-564Configuring access reviews
OE-563Working with manual systems
OE-562Configuring request / approval
OE-561Automated position change
OE-560Automated provision - terminations
OE-559Automated provisioning - new users
OE-558Import user + entitlement memberships
OE-557Import entitlements
OE-556Improve the isCertified flag requirements for access reviews
OE-554Include in oracle-ebs connector provision user to HRMS module
OE-553Automatic Account Unlock
OE-551CREATE_MANAGED_SYSTEM log details reveal password
OE-550Group creation request by cloning an existing group
OE-548Create connector - Kronos
OE-547Internal Error when delete user who is a UAR manager
OE-546Migrate placeholder improvement for custom fields
OE-545Replacing MSOL to Graph modules in Azure connector
OE-544The resource types are not shown
OE-542Bugs in certification when one or more steps are not mandatory
OE-541Switching to PowerShell Graph module for Azure
OE-540Audit Logs - Add device info
OE-539fix LoginUserCommandExecutor for Ldap connector
OE-538Thales connector
OE-537fix description column in request administration
OE-536AWS connector doesnt sycn groups/roles
OE-534Migrate challengeResponse jsp page to React
OE-533Error when submitting request
OE-532Adding MSSQL connector to TeamCity
OE-531Implementing credential provider for MacOS with OTP field
OE-530Credential provider for MacOS
OE-528Access Certification - User Access Review page broken
OE-527Fix Web authentication on react. Test with different keys.
OE-525Authentication using source system - LDAP / AD
OE-524Authentication using source system - Azure AD
OE-522Expand authentication options
OE-521Device registration
OE-518Adaptive Authentication
OE-517Voice Delivery of OTP using Twilio
OE-516Passwordless authentication/Mobile App (Latest version)-iOS
OE-515Passwordless authentication/Mobile App (Latest version)- Android
OE-514OTP should configurable to 6 or 8 digits
OE-513Automatic Provider Failover with a Primary and Secondary config; - Primary/Secondary support for Out-of-band delivery (OTP - SMS, Mail, Voice etc)
OE-512MFA Improvements
OE-511Mobile OTP app not working on iOS with new xcode
OE-508publicResourceIds in PublicResourceCache sometimes is cleaned up randomly.
OE-506Authentication provider: fix typo in UI label
OE-505Extend Azure connector to include some AAD attributes
OE-504Investigating switching to PowerShell Graph module for Azure
OE-503HTTP 404 Error - Selfservice -> Request Administraiton
OE-502Improve oracle-ebs connector for user sync
OE-501Migrate Functionality from v3 tp v4.2.1
OE-500Check R-rpoxy issue with Web-Socket. During Push authentication
OE-495UI: Migrate IdP UI to React
OE-494OIDC Certification test - related findings
OE-493websockets not working
OE-492[Reports] 404 error on downloading Reports
OE-491[Audit Log] Internal Server Error on Search Audit Logs when From Date is selected
OE-490List of Resource Types appears blank
OE-489Configure SMS from the webconsole
OE-488Remove Fields for Apple Demo
OE-487Check if there is a way not to reset password in SAP after password provisioning
OE-486Migrate usePolicy jsp page to React
OE-484Extend feature of limitation for user search only inside its organization
OE-483Push Auth Rule - NOT WORKING
OE-481AD connector should support setting account expiration date
OE-480Migrate auth-web jsp page to React
OE-479Implementing groovy scripts for MSSQL connector
OE-478Reset password with secure link error handling
OE-477Token expired right after creation
OE-476Integrated windows Authentication
OE-469Add custom redirect after security questions (for Florida)
OE-468Documentations - How to configure google connector
OE-467Implement style changes for login pages
OE-466Migrate auth-select jsp page to React
OE-465Error on call auth-select page
OE-463Investigate Password Filter TLS connection issues
OE-462Warning for some special attrs for id_token
OE-461OIDC certification test - oidcc-max-age-1 test failed
OE-460Create default scopes
OE-459Problems with scopes authorization
OE-458Request / approval – improve UI to support a hierarchical view
OE-457Authorization to public scopes is broken in 4.2.1
OE-456Fix/Improve SMS code verification page
OE-454Security Vulnerability: outdated jquery and select2
OE-453Security Vulnerability: Misconfigured Access-Control-Allow-Origin Header
OE-452Security Vulnerability: Tomcat Version Disclosed
OE-451Security Vulnerability: Set SESSION cookie to be Secure, if using https
OE-450Migrate logout and changePasswordManagedSys jsp pages to React
OE-449Delete from jfrog based on last accessed time, not based on upload time
OE-448Fix WinLocal connector fallback to default user attributes
OE-447Upgrade version of tomcat
OE-446Security Vulnerability: HTTP TRACE / TRACK Methods Allowed
OE-445Security Vulnerability: Remove default Tomcat Files
OE-444Solve memory leaks on .NET connectors
OE-443Password filter TLS 1.2 support
OE-442It is not possible to create new menus from the console
OE-441refactor select-account.jsp page
OE-439rename of sync config duplicates the batch task of it for schedule run
OE-438Skipping certificate validation does not work properly in Password Filter backup service
OE-437Merge 4.2.0.5 -> 4.2.1
OE-436Modify syncPasswordFromSrc endpoint to avoid circular updates
OE-435Security Vulnerability: Update to Latest Tomcat 9
OE-434Security Vulnerability: Session Cookie is insecure
OE-433Fix Security Vulnerabilities in 4.2.1
OE-432add access rights to detail view and pivot
OE-431Cyclical behavior in the AD password filter
OE-428Email notifications doesn't work for - 'Notify on Approval' and/or 'Notify on Rejection'
OE-427Couldn't reset password via 'Forgot your password?' feature
OE-426Migrate auth-push page to React Framework
OE-425Add ability to support EI 11 for React apps
OE-424Search by name on revoke access page doesnt work
OE-423Add feature to create new user from an orphan
OE-422Indexing roles in elastic search take a long time.
OE-421New SelfRegistration Flow - already registred user.
OE-420Security Q&A option is not locked after entering incorrect
OE-419Redirect users after account activation or reset password
OE-416Cannot create new OAuth Client
OE-415Authentication improvements - Phase 1
OE-414WinLocal connector should support account flags
OE-413WinLocal does not handle adding groups on user creation correctly
OE-412oracle-ebs:jar is periodically deleted on Jfrog
OE-411Business rules - Target's actions disappear after saving appropriate business rule
OE-410Create starter script for rproxy with https
OE-408reviewer UI bugs
OE-407Auto-publish swagger json into our gatsby docs
OE-406Implement provisioning for MSSQL PowerShell connector
OE-405OpenIAM Twillio Programmatic Voice API usage
OE-402Custom Windows credential provider
OE-395Allow to use mod_rewrite together with headers set by rProxy.
OE-394fix NPE bug in social login
OE-391[SMS authentication] Internal error on clicking 'Forgot phone?' option
OE-390Can't save any groovy script
OE-389Re-enable running all db-specific tests on CircleCI
OE-388Setup Vulnerability scanning web testing using Tenable
OE-387Write LinkedIn documentation
OE-386Redirect after selfregistration
OE-385SAP Connector doesnt perform search anymore
OE-384FIDO does not work in Oracle and Postgres
OE-383Selfservice: Error loading Access Profiles page
OE-382certification report should support old(before refactoring) campaigns
OE-381No languages listed on the Search Language page
OE-380if user has the access then in catalog then access right is shown as 'nu'
OE-379HTTP 404 error on Metadata Type page
OE-378UESR_ACCESS_REPORT is broken
OE-377Update Credential provider to newer dependencies
OE-376OIDC Spec Compatibility / Certification issues
OE-375Update 4.2.1 with fixes based on observed EI problems
OE-374remove reporting batch task after the campaign was completed
OE-373Select box is broken when MFA is enabled for a pattern
OE-371on detail page view when click 'close' modal of comment it doesnt close and there is an error in browser console
OE-370when user completes tasks on pivot and then clicks on tab summary he still can see loaded task, after refresh they gone
OE-368Revoke of access doesn't revoke it actually
OE-367Reviewer UI - reviewer table on details view must correctly reflect all steps of the process
OE-366Certificate login not working when rproxy used
OE-364While doing Search AD connector should be able to be requested exact datetime format
OE-362Investigate issue with returning time values from AD connector
OE-361Simplify log operations in .NET connectors
OE-360Timeout when creating setting up application first time ( 4.2.1)
OE-359Add ability to use -ce images when executing docker compose
OE-357Send link to to request details in approval notification for self regirstration
OE-356Email of access certification says complete 'anytime' even if there is day limit
OE-355Authentication - Knowledge questions
OE-352BUG. Template USER_RESET_PASSWORD_ACTIVATION_NOTIFICATION doesn't work
OE-351UI component for re-ordering approver association doesn't re-count level properly
OE-350AD connector should check groupBaseDn for group operations
OE-349Make .NET connector max log DB size configurable
OE-348Stress Test 4.2.1: Clearesult data
OE-347Stress Test 4.2.1
OE-346Exchange connector code improvements
OE-345AD connector code improvements
OE-343Password filter code refactoring
OE-342Fix problem with cache encryption of Password filter service backup
OE-341SSO - OIDC
OE-340SSO - oAuth
OE-339SSO-SAML
OE-338Authentication and MFA
OE-336Provisioning configure connnector
OE-335Kubernetes Installation
OE-334Docker installation
OE-333RPM Installation
OE-332Product Documentation
OE-94Linkedin registration
OE-88Facebook registration
OE-87Linkedin Login
OE-107Expand Social Auth and Registration to include the major provider
OE-85Improve UAR report
OE-143Add Authorization Code Flow with Proof Key for Code Exchange (PKCE)
OE-30Login Attributes management in OpenIAM on Oracle does not work
OE-86Update Language packs for French and German
OE-31Fix message for OTP SMS type
OE-106Improve UAR core functionality
OE-105[CLR] Target system integration
OE-83Reviewer UI - Reports Tab
OE-13Reviewer UI - Administration Tab
OE-51Reviewer UI - Pivot view improvements
OE-53Reviewer UI - Review detail view
OE-52Reviewer UI -UAR Summary view (add tabbed view)
OE-54Reviewer UI - Add page to show all UARs for the current user
OE-17Reviewer UI - Add option for User access reviews to the portal landing page
OE-50Admin UI - Add UAR Manager on page 1 the configuration screen
OE-103User Access Review Report Improvements
OE-102[CLR]User Access Review UI Improvements
OE-46Fill email from google to custom field
OE-157Audit for modify managed system has no information about what was modified
OE-125Poor audit action logging
OE-47Update syncPasswordFromSrc web method to allow validate request without save
OE-9Reset Password via challenge response question not working - "Password synchronization is failed!" error
OE-1Unable to create new User
OE-62Access Reviews-Bulk cleanup for pending requests of certification
OE-244Optimize Graph operations for large data sets
OE-23Custom fields with type password are stored as plain text in DB
OE-80Migrate upload storage volume to k8
OE-98Audit report
OE-27Connector configuration page is not loaded
OE-73Documentations - How to upgrade
OE-75add feature to multiple delegate from request administration screen
OE-67Entitlement membership report
OE-69Orphaned account report
OE-281React Refactor: /idp/unlockChallengeResponse
OE-246Fix iam-services race conditions after 4.2.0.4 -> 4.2.1 merge
OE-35Oracle EBS connector doesnt work with 4.2 version
OE-37Change password audit has no requester
OE-36Email approval fixing
OE-39[Access Profile] Unable to create new access profiles
OE-272Implementing SYNC operation for Microsoft Dynamics CRM connector
OE-254Implementing Microsoft Dynamics CRM connector
OE-255Merge 4.2.0.4 -> 4.2.1
OE-280React Reactor: /idp/unlockPassword
OE-279Refactor initial IDP pages into React
OE-101when step of review is broke down into multiple steps then report looks confusing
OE-15Access Certification: make sure that if task was delegated then report will represent it
OE-265Extend OpenIAM endpoint for password filter to be able to run password validation
OE-223Password filter - supporting validating AD passwords against OpenIAM policies
OE-49AbstractMatchObjectRule MATCH_ATTR_MSYS_PRINCIPAL is not supported from UI anymore
OE-48Access Certification: add button to UI to clean up campaign data
OE-235TLS support from connectors side to RabbitMQ
OE-249Refactor UI into React
OE-198AD connector cuts -properties section on custom requests
OE-199Metadata with values from user not working
OE-216Update .NET connectors dependencies
OE-136Simplify error logging on Azure connector
OE-211Azure connector should support syncing group memberships in user request
OE-180Business Rules menu is not showed
OE-242Self-registration flow designer
OE-21Entitlement owner membership: If user B was selected as owner/admin on edit role/grp/res page and then replaced by other user A. B remains as owner in membership.
OE-205Redirect to https from rProxy running at http
OE-144Remove references to smtp username/password in vault-bootstrap
OE-117rProxy - If field value is empty it is not sent to Form Post
OE-56AD connector should be able to get SID
OE-58Connector Dev - LastPass
OE-19Passwords can be exposed in logs in debug mode while running sync
OE-81Bulk permission sync from Azure connector
OE-29Fix page scrolling issue on User Comparison UI
OE-82Introduce relation between users to maintain multiple accounts for a user
OE-42Bulk operations does not was expected
OE-78Only set SMTP Username/password in vault once
OE-68Azure group and role membership sync format changes
OE-71Access Certification - report to show revoke operations
OE-24Need to lock user object when saving, so other parallel user change transaction won't fail
OE-64Ability to sync Azure Roles and role memberships
OE-90Implement Azure DevOps report based on sync
OE-92Enable only HIGH default chipers in apache
OE-91Remove dot from domain name in example configs
OE-100Implementing SYNC operation for SharePoint .net connector
OE-130Vulnerable version of the library 'handlebars.js' found
OE-14[Orphan Management] Email Addresses doesn't appear in the table for the Orphan accounts
OE-12[Orphan Management] Orphan identity search is not working
OE-7[Report] Mandatory field mark is missing on Access Certification Report
OE-8Actions on Search User page doesn't refresh UI to force user to re-login on session expiry
OE-10Problem when create new access right.
OE-22Position change should be triggered by supervisor change + title changed
OE-158[Audit Log] Failed Sychronization shows SUCCESS result in the audit log table
OE-32[Selfservice] Create Group Request should not be present on the UI for non admin users
OE-127Validate deployment against Kubernetes 1.19 (per lev's note)
OE-251Implement certificate based authentication for RabbitMQ
OE-44Account merging functionality for Admins
OE-18Wrong API response of Delete Alternate Contact
OE-219Collect group memberships for group sync in Azure only upon request
OE-221Update jQuery version to 3.5.1
OE-124Update MS SQL Server connector to support import of entitlements and user
OE-212Drop Attribute policy from the internal OpenIAM data model
OE-239Collecting file shares information and usage report based on sync
OE-61Implement reporting for Azure environment based on sync
OE-147Connector queue settings for .NET connectors
OE-266Migrate MSSQL connector to V5 structure
OE-233Implementing powershell MSSQL connector
OE-234Migrate WinLocal connector to connector v5 structure
OE-20SAP Connector error on build
OE-57Password filter documentation
OE-134Fix and enable CreateUserRequestSeparateWorkflowTest.approveWithDefaultResource
OE-137Managed System resources should not be public
OE-245TestAddUserProvisionOperation.testProvisioningStream fails in 4.2.1
OE-38Custom field width adjustment is not reflecting on the page
OE-59ALTERNATE_ID column have to have a FK to USER_ID.
OE-118Ldap connector doesn't work on clean install unless you force to save it from UI
OE-322Implementing unit tests for running extension applications in secure mode
OE-321Implementing ability to restart extension applications.
OE-70Add Elastic Config step to Kubenates docs
OE-97Docs for RPM HA install
OE-120File browser not working on version 4.2.0.1 (Groovy Manager)
OE-110Count "Max. User Number" is not considered when the Role entitlement is added to the user
OE-113Confusing pop up 'Organization Type Search' on organization type membership page
OE-25etcd storage keeps growing and vault fails by timeout when tries to get values
OE-196[Enhancement] Improve new entitlements view.
OE-248Check and update SSL for rpm installation for rProxy
OE-751Credential provider MFA support
OE-320Extending AppLauncher installer project for including RClone encryption dependencies.
OE-253Introduce graph database
OE-252Update stack for 4.2.1
OE-319Implementing App Launcher setting for reset RClone config password settings
OE-318Implementing App Launcher password window
OE-317Implementing App Launcher supporting encrypted RClone config file
OE-224Update all cookies in rProxy and set ‘secured’ and ‘httpOnly’ attributes
OE-226Password filter security
OE-220Create Microsoft Dynamics CRM connector
OE-215Azure connector should be able to work with MailEnabledSecurityGroups
OE-1812FA during SAML SSO problems
OE-177'Is Visible' checkbox resets to true even though set as false on user info save
OE-190Some UI page send a page size less than one.
OE-191.NET connectors should return parameters in case sensitive manner - exactly like OpenIAM requested for search
OE-192AD connector does not properly handle 'Never expire' password when dealing with Login module
OE-241Create batch task to clean up unused csv files uploaded in sync
OE-243AD connector should fallback to default location if both Path and BaseDN are not set
OE-316Implementing unit tests for OneDrive module of App Launcher for macOS version
OE-231Generic connector implementation
OE-228Email notification about completion reconciliation
OE-197Custom field display name disappears after save
OE-114Content Security Policy prevent downloading report
OE-214Audit logs are flooded by GET_SMS_OTP_STATUS
OE-210Encrypt RabbitMQ password in connector configuration file
OE-315Implementing OneDrive authorization window for macOS version
OE-314Implementing OneDrive support for App Launcher for macOS version
OE-262Add ability to sync group membership for Azure connector out of the box
OE-313Implementing windows installation package with supporting OneDrive
OE-312Implementing unit tests for OneDrive interfaces
OE-260Automated TeamCity builds for Azure connector
OE-261Installer implementation for new Azure connector
OE-195Azure v4 connector wrongly detects available parameters for modifying group identities
OE-63Improvements for P3 project
OE-193Errors on groovy compile should show script name
OE-256Increase timeout for rest API calls through rProxy
OE-311Implementing onedrive authorization windows for Windows version
OE-259Extend Exchange connector debug messages coverage
OE-238AD connectors should support setting Co out of the box
OE-104Improve out of the box reports
OE-41[Dh]Extend password policy to include a password dictionary
OE-206Upgrade Springboot and ES to the laest
OE-250Create a downloadable file as part of the release process with jars to enable groovy script development
OE-126rProxy 4.2.1 related tasks and improvements
OE-271Create api call for getCookieKey in common lib
OE-270Create api call for validateToken in common lib
OE-269Create api call for sendCert in common lib
OE-257Exchange Online PowerShell part for a new connector version
OE-213.NET connector documentation
OE-179[Webconsole] Unable to remove already added out of office assistant
OE-176[Webconsole] Unable to save out of office assistants start date and end date
OE-189[Webconsole] System config > UI > Save - throws error if 'New Device Registration' fields kept empty.
OE-188[Webconsole] Fix web-element indentation on create Source Adapter page
OE-187[Webconsole] Log Viewer - Additional Search for Audit Log Records is NOT working
OE-186[Webconsole] Search user by criteria - Nickname is NOT working.
OE-185[Webconsole] Search by Organization Type not working on Organization Search page
OE-184[Webconsole] Not able to add Questionnaire to the Resource
OE-310Implementing unit tests for google drive extension
OE-268Create api call for renewToken in common lib
OE-267Create api call for federateUri in common lib
OE-145Fix json parser in r-proxy
OE-329User can login to ssh with OpenIAM user only from second attempt, if no such user exists locally
OE-328Handle change password in pam module
OE-327Login to ssh with OpenIAM user
OE-326Login to X server (GUI) locally with OpenIAM user
OE-325Login locally with OpenIAM user
OE-324create non-existing user on first login in pam module
OE-323call login api function from pam module
OE-258Rewrite Azure PowerShell connector script to fit new connector version
OE-237Improve group/role edit page to retrieve object from DB only ones.
OE-230PAM module for authenticaion in linux
OE-247Refactor common functions in apache rProxy module
OE-149Add url for Content Security Policy violations reporting
OE-222Add ’secure’ flag to SESSION and JSESSIONID cookies in rProxy
OE-309Implementing one drive support for App Launcher for Window version
OE-151Webconsole -> User manager -> Edit entitlements lets you add or remove entitlements but it does not let you edit the start and end date
OE-156audit log for make decision is weak
OE-217Make 'Propagate Through Proxy' and 'Propagate on Error' disabled by default
OE-182URI Pattern's Meta Data Items have empty 'Type' when editing
OE-183URI Pattern's Meta Data displays old data after edit
OE-203FIDO authentication - Add support for Web FIDO based authentication
OE-264Rule based functionality to enable Automatic Provisioning and de-provisioning
OE-178[Selfservice] Add mandatory field check for 'Token' on the scan QR code for Device Registration.
OE-535Approver of request shouldn't be able to delegate request to requester, this is security leak.
OE-308Adding supporting google drive for App Launcher
OE-307Adding supporting enter key for App launcher registration window (Mac OS version)
OE-306Implementing App Launcher installation package for Mac OS
OE-305Implementing App Launcher status window for Mac OS
OE-304Implementing App Launcher registration window for MacOS
OE-263MobileOTP - Show Notification Alert with data from push notification
OE-303Implementing App Launcher context menu on menu bar for MacOS
OE-302Move App Launcher project to portable library
OE-301App Launcher installer should support adding shortcut on desktop and start menu panel
OE-300Registration form should automatically submit when user presses ‘enter’ key. For App Launcher
OE-299Rename project Launchpad to App Launcher
OE-298Implementing status window for App Launcher
OE-297App launcher tray icon should indicate error if if App Launcher lost connection with OpenIAM
OE-109Issues with challenge response while login to Webconsole - Access denied for new users
OE-296Endpoint in core OpenIAM to get application id and start SSO
OE-295Installer - implementing backend logic
OE-294Installer - implementing UI
OE-293UI - implementing login screen
OE-292Implementing logout action
OE-291UI - implementing managing application's menu
OE-290UI - implementing tray menu flow
OE-289Unit tests for configuration provider
OE-288Configuration provider implementation
OE-287Unit tests for DPAPI implementation
OE-286Implementing secret storage using DPAPI
OE-285Unit tests for OAuth2
OE-284Supporting OAuth2 authentication
OE-283Unit tests for embedded web server
OE-282Embedded web server implementation
OE-202App launcher
OE-122User must not be allowed to select past date while deleting
OE-201Correct error message should be displayed for a login attempt of deactivated user
OE-208Allow to set default value for 'Application Servers' on /webconsole/setup.html page from url agruments
OE-225Connector: AppTable
OE-200My approvals page on self service is not paged
OE-194Org type does not render asian and cyrilic languages correctly
OE-232r-proxy FUTURE related tasks and improvements
OE-171Kerberos authentication in r-proxy v4
OE-204Store Auth Cookie name for specified domain in r-proxy
OE-168Protect RESTful using r-proxy and SAML
OE-172Protect RESTful services using r-proxy and oauth2
OE-166PostbackURL config option in Content Provider settings is ignored
OE-227URL parse functions
OE-218Modify the proxy to take into account new changes: Error Mappings