How to clean up TM1 | server_name | Security | Client/Groups
Posted: Mon Aug 10, 2020 6:15 am
Hi,
in our company we are using Cognos TM1 10.2.2. Security users and user groups are integrated into Cognos BI. TM1 server does not have its own users/groups, it gets users/groups from Cognos BI. Then Cognos BI users and user groups are integrated into using LDAP users and groups.
When I add new user to LDAP and assign it into one LDAP user group it is perfectly well visible in Cognos TM1. I can open "Cognos TM1 Architect" and from tree TM1 click on <server_name>. Then right click on it and select Security | Clients/Groups. On this screen on columns there are LDAP user groups displayed and on rows there are LDAP users displayed. Perfectly fine, working as expected.
In LDAP when I remove user from LDAP group I expect above list to get refreshed. For LDAP users that are removed from all LDAP user groups, I expect to be completely removed from the list. But to my surprise all of the users when ever they existed are listed here. Also users that have left the company like 10 years ago.
I have tried:
Restarted Cognos BI and Cognos TM1, just in case if this list is populated after restart, but it did not work. Users/groups did not change. It is just growing and never shrinks.
Is there a way I can freshly populate users from LDAP, so this list of users and groups is realistically populated?
It would be nice if some solution is found (to clear the list), because we are in IBM license revision process and auditor requested I create print-screens of TM1 | <server_name | Security | Clients/Groups.
P.S. I know I should upgrade TM1 product to newer version, but business decision was made we migrate solution to other vendor, but we have not yet been able to do it so.
Thanks
in our company we are using Cognos TM1 10.2.2. Security users and user groups are integrated into Cognos BI. TM1 server does not have its own users/groups, it gets users/groups from Cognos BI. Then Cognos BI users and user groups are integrated into using LDAP users and groups.
When I add new user to LDAP and assign it into one LDAP user group it is perfectly well visible in Cognos TM1. I can open "Cognos TM1 Architect" and from tree TM1 click on <server_name>. Then right click on it and select Security | Clients/Groups. On this screen on columns there are LDAP user groups displayed and on rows there are LDAP users displayed. Perfectly fine, working as expected.
In LDAP when I remove user from LDAP group I expect above list to get refreshed. For LDAP users that are removed from all LDAP user groups, I expect to be completely removed from the list. But to my surprise all of the users when ever they existed are listed here. Also users that have left the company like 10 years ago.
I have tried:
Restarted Cognos BI and Cognos TM1, just in case if this list is populated after restart, but it did not work. Users/groups did not change. It is just growing and never shrinks.
Is there a way I can freshly populate users from LDAP, so this list of users and groups is realistically populated?
It would be nice if some solution is found (to clear the list), because we are in IBM license revision process and auditor requested I create print-screens of TM1 | <server_name | Security | Clients/Groups.
P.S. I know I should upgrade TM1 product to newer version, but business decision was made we migrate solution to other vendor, but we have not yet been able to do it so.
Thanks