On Thu, Nov 5, 2015 at 12:45 PM, Gayan Gunawardana <[email protected]> wrote:

>
>
> On Thu, Nov 5, 2015 at 11:26 AM, Chamila Wijayarathna <[email protected]>
> wrote:
>
>> Hi Nadeesha,
>>
>> When creating super admin or tenant admin users, they don't get created
>> with a SCIM ID since they are considered as special users in IS. Because of
>> this when listing users through scim, those users will not get listed.
>> But if you want, you can add a SCIM ID manually by updating the user and
>> then you will be able to list the also as SCIM Users.
>>
>> When listing users of tenants, you need to use credentials of tenant
>> admin users. When sending SCIM request with admin:admin, you will only see
>> users at super tenant. Also for filter, don't use @tenant.com, because
>> if u logged in as tenant admin and list users, there you won't see user
>> name with @tenant.com, so your curl command to filter a user at tenant
>> should be as follows.
>>
>> curl -v -k --user [email protected]:admin123
>> https://localhost:9443/wso2/scim/Users?filter=userNameEqtenant
>> <https://localhost:9443/wso2/scim/[email protected]>
>>
>> Thanks
>>
>> On Wed, Nov 4, 2015 at 8:40 PM, Nadeesha Meegoda <[email protected]>
>> wrote:
>>
>>> Hi Chamila,
>>>
>>> I'm using the embedded ldap which comes default in IS. In that SCIM
>>> comes enabled as default.
>>>
>>> On Wed, Nov 4, 2015 at 6:27 PM, Chamila Wijayarathna <[email protected]>
>>> wrote:
>>>
>>>> Hi Nadeesha,
>>>>
>>>> What is the value of SCIMEnabled configuration in your user-mgt.xml?
>>>>
>>>> Are you using LDAP or JDBC user store manager?
>>>>
>>> @Chamila
>
> admin user is added in very fist server start up by calling
> "addInitialAdminData" in AbstractUserStoreManager. In embedded ldap
> scenario concrete "doAddUser" method will be invoked in
> ReadWriteLDAPUserStoreManager so user will be directly added to user store
> without going through SCIM listener (without going through any listener).
> Since there is no SCIM listener engagement SCIM ID will not be added to
> user store.
>
> I am not sure about we are not getting SCIM ID just because of admin user
> is a special user or kind of implementation we have right now.
>

Chamila checked with me on this and he meant admin user is special due to
the same reason you explained above. Basically admin user is created
through special flow compared to normal users.

Thanks,

>
> Adding Johann.
>
>>
>>>> Thanks
>>>>
>>>> On Wed, Nov 4, 2015 at 6:20 PM, Nadeesha Meegoda <[email protected]>
>>>> wrote:
>>>>
>>>>> Hi IS Team,
>>>>>
>>>>> I was trying to filter and get admin users SCIM ID and failed, even
>>>>> tried for tenant admin and still I couldn't filter and get the SCIM ID
>>>>>
>>>>> Command used :
>>>>> curl -v -k --user admin:admin
>>>>> https://localhost:9443/wso2/scim/Users?filter=userNameEqadmin
>>>>> curl -v -k --user admin:admin
>>>>> https://localhost:9443/wso2/scim/[email protected]
>>>>>
>>>>> Searching through the jira found out that in the past, listing admin
>>>>> users as scim users were removed as per [1]
>>>>>
>>>>> How can we filter and get the admin/tenant admin SCIM ID?
>>>>>
>>>>> [1] - https://wso2.org/jira/browse/IDENTITY-503
>>>>>
>>>>> Thanks
>>>>>
>>>>> --
>>>>> *Nadeesha Meegoda*
>>>>> Software Engineer - QA
>>>>> WSO2 Inc.; http://wso2.com
>>>>> lean.enterprise.middleware
>>>>> email : [email protected]
>>>>> mobile: +94783639540
>>>>> <%2B94%2077%202273555>
>>>>>
>>>>> _______________________________________________
>>>>> Dev mailing list
>>>>> [email protected]
>>>>> http://wso2.org/cgi-bin/mailman/listinfo/dev
>>>>>
>>>>>
>>>>
>>>>
>>>> --
>>>> *Chamila Dilshan Wijayarathna,*
>>>> Software Engineer
>>>> Mobile:(+94)788193620
>>>> WSO2 Inc., http://wso2.com/
>>>>
>>>
>>>
>>>
>>> --
>>> *Nadeesha Meegoda*
>>> Software Engineer - QA
>>> WSO2 Inc.; http://wso2.com
>>> lean.enterprise.middleware
>>> email : [email protected]
>>> mobile: +94783639540
>>> <%2B94%2077%202273555>
>>>
>>
>>
>>
>> --
>> *Chamila Dilshan Wijayarathna,*
>> Software Engineer
>> Mobile:(+94)788193620
>> WSO2 Inc., http://wso2.com/
>>
>
>
>
> --
> Gayan Gunawardana
> Software Engineer; WSO2 Inc.; http://wso2.com/
> Email: [email protected]
> Mobile: +94 (71) 8020933
>



-- 
Regards,


*Darshana Gunawardana*Senior Software Engineer
WSO2 Inc.; http://wso2.com

*E-mail: [email protected] <[email protected]>*
*Mobile: +94718566859*Lean . Enterprise . Middleware
_______________________________________________
Dev mailing list
[email protected]
http://wso2.org/cgi-bin/mailman/listinfo/dev

Reply via email to