cancel
Showing results for 
Search instead for 
Did you mean: 

Receiving event id 35 on Discovery Acelerator; need to deactivate custodian account of former employee

Ariphaneus
Level 4

We've been getting event id 35 from discovery accelerator trying to sync the AD account for an employee who left the company.  I'm not, however, seeing where I can deactivate this account.  I understand that I cannot delete him the account to preserve the chain of evidence but I would really like to stop this error from being logged constantly throughout every day.

1 ACCEPTED SOLUTION

Accepted Solutions

Kenneth_Adams
Level 6
Employee Accredited Certified

Since you don't have Custodian Manager set up, those errors are caused by at least one role assignment that the account has.  How many Cases do you have where that user account could have been granted a role assignment?  If only a few, just go into each Case, click on the Role Assignments sub-tab, locate that user and remove any roles.  This also needs to be done at the Application level if that user was granted any application level roles.

If you can't locate where this user was granted any role assignment(s), please contact the Symantec Enterprise Vault Support to open a case with one of our DA Technical Support Engineers so we can assist you in finding and clearing all role assignments for that account.

 

View solution in original post

3 REPLIES 3

TonySterling
Moderator
Moderator
Partner    VIP    Accredited Certified

You can deactivate the synch in Custodian Manager:

Editing the details of custodians

Article:HOWTO31603  |  Created: 2010-09-23  |  Updated: 2012-06-27  | 

Article URL http://www.symantec.com/docs/HOWTO31603

You access CM via the web page, http://server_name/virtual_directory

For example:

http://server2/EVBACustodianManager

 

You can also change the number of days CM tries to synch before automatically marking the account as deactivated:

Setting the configuration options for Custodian Manager

Article:HOWTO31609  |  Created: 2010-09-23  |  Updated: 2012-06-27  |  Article URL http://www.symantec.com/docs/HOWTO31609

The number of days that Custodian Manager should wait before it marks as deactivated a custodian for whom no Active Directory or Domino LDAP directory account is available.

Ariphaneus
Level 4

Apparently they never set up the Custodian Manager.  How do I need to set up the SQL database?

Kenneth_Adams
Level 6
Employee Accredited Certified

Since you don't have Custodian Manager set up, those errors are caused by at least one role assignment that the account has.  How many Cases do you have where that user account could have been granted a role assignment?  If only a few, just go into each Case, click on the Role Assignments sub-tab, locate that user and remove any roles.  This also needs to be done at the Application level if that user was granted any application level roles.

If you can't locate where this user was granted any role assignment(s), please contact the Symantec Enterprise Vault Support to open a case with one of our DA Technical Support Engineers so we can assist you in finding and clearing all role assignments for that account.