How to change the search scope for user in the Identity Applications portal?


We have a situation that it is common. A user was initially a contractor and became and employee and vice-versa. Because of this, we have user with the same name as an active and also as an inactive user. On the identity Applications portal, in the Role association process, when we are selecting the user, it shows 2 users, but we cannot distinguish if it is an active or inactive user. This is because it shows first name and last name information only.

We tried to change the scope for the user lookup and user entities, one at a time, with no luck. Both users are always being presented in the user selection field. We restarted Tomcat and flush the cache, but it did not change the result.

How can we limit the scope to only active users? They are located in a separate OU then the inactive users.  

