How to update an Active Directory Account Attribute to have no value <not set> using an Active Directory AFX Connector in RSA Identity Governance & Lifecycle
Originally Published: 2018-11-06
Article Number
Applies To
RSA Version/Condition: 7.x
Issue
- an actual value
- NULL
- <not set>
Below is an example of the Department Active Directory account attribute having no value (<not set>).
Resolution
- Add a Command Input Parameter to the Update an Account capability in the format of remove_<attribute-name>. In this example, the parameter would be called remove_department.
NOTE: The parameter is case sensitive. Remove must be in lowercase and the attribute name must appear exactly as it does in the Active directory attribute editor.
- Pass the current value of the attribute in the Command Input Parameter. In this example, the current value is Support.
NOTE: You must know the current value as this will only work if you pass the current parameter to AFX.
EXAMPLE:
In the following example, user Rita Book belongs to the Support department and AFX will update her department to <not set>.
- Note the Department is set to Support in Active Directory:
- Modify the Active Directory AFX connector Update an Account capability as follows (AFX > Connectors > {connector name} > Edit > Capabilities tab}
- To clear the value for the department attribute, pass current value of the attribute.which is Support. Note that this connector is in test mode to enable the Test Connector Capabilities button (AFX > Connectors > {connector name} > Edit > General tab > set State to Test.)
- Note the Department attribute has been updated to <not set>
Related Articles
How to update the Active Directory UserAccountConrol (UAC) attribute with the Active Directory AFX Connector in RSA Identi… 240Number of Views How to synchronize user accounts that do not have an email address to the SecurID Access Cloud Authentication Service 128Number of Views Create list of users who have not logged into RSA Authentication Manager 8.x for a specific period of days 123Number of Views AFX fails to create and/or update an Active Directory account with an 'Unparseable date' error in RSA Identity Governance … 296Number of Views Active Directory AFX 'Disable/Enable an Account' connector capabilities do not update added parameters in RSA Identity Gov… 247Number of Views
Trending Articles
RSA Authentication Manager 8.9 Release Notes (January 2026) Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory How to 'Trust' the RSA Authentication Manager Security Console Self-Signed Root CA certificate and prevent Cert warnings. RSA Authentication Manager Upgrade Process How to delete old or pending certificate signing requests for RSA Authentication Manager console or virtual host replaceme…
Don't see what you're looking for?