Restoring the system administrator account

Incorrectly modifying a provisioning policy can deprovision all accounts except the built-in system administrator account. If you suspend or deprovision all IBM Verify Identity Governance accounts, including the system administrator account, you can restore the system administrator account through the IBM® Security Directory Server.

The following process restores the itim manager account. You can then restore other accounts using the manager account.
  1. Access the IBM Security Directory Server Administration Console.
  2. Navigate to ou=SystemUser,ou=itim,ou=tim,dc=com.

    The dc=com value was specified for the Identity Manager DN Location field in the Directory Configuration during installation.

  3. Change the eraccountstatus value from 1 to 0.