eADM includes a feature to automatically extend the lifespan of user accounts beyond their formal end date in the HR system. This is managed by the ExtendLife attribute, and can be applied in two ways: automatically for all users in the organisation, or manually for one user at a time.

Automatic Extension for All Users

This method extends the lifetime of every HR-synced user account by a fixed number of days whenever they are terminated in the source system. It is configured once, in Customer setup, and then applies going forward without further action.

Note: This feature must be activated by Identum support or your local Identum partner. Please contact us to enable it for your environment.

When this function is active, a user account remains enabled in eADM and all connected target systems, even after the user is registered as terminated in the source system. The account is deactivated only when the date specified in the ExtendLife attribute has passed. This provides a method to keep accounts active for a grace period.

Warning: During this extension period, the user account retains all the rights and group memberships it had at the last update from the HR system.


How it Works

When an employee's contract ends in the HR source system, eADM's standard lifecycle process would normally identify the user for deactivation. If the automatic extension feature is enabled, eADM performs the following steps instead:

  1. Postpone Deactivation: The immediate deactivation of the account is halted.

  2. Calculate New End Date: A new, future deactivation date is calculated based on the configured extension period (e.g., 30 days, or as little as 1 day for a 24-hour grace period).

  3. Update the ExtendLife Attribute: The new date is automatically populated in the ExtendLife field on the user's account.

The user account will then be visible in eADM with an active status and a date value in the ExtendLife field. The setting itself is found under Customer setup > Accounts > "Extend the lifetime of user objects", expressed as a number of days (0 days means the feature is off).


Extending an Individual User

You do not need to enable the automatic, organisation-wide setting above to extend a single user. On any HR-synced user's page, use the Extend lifetime button (in the button row, top right) to set or update that user's ExtendLife date individually.

This is useful for one-off cases, for example a manager asking for a specific employee to keep access a few extra days after termination, without changing the behaviour for anyone else.

For the distinction between this button and the similar ExpiryDate button used for manual (non-HR) users, see https://docs.identum.no/eadm/expirydate-vs-extendlife.


Who Can Do This

  • Partner Administrator level and above: can activate and configure the automatic, organisation-wide extension setting in Customer setup.

  • Service Desk User level and above: can extend individual users one at a time using the Extend lifetime button on the user's page.