When searching for users or groups in Identity Manager you get a 502 error or this error:
If you look in the server log you also see the following:
submitTask: tasksession creation, or submission failed: Administrator [inbound administrator] is not authorized to perform task Provisioning Activity.
The base DN branch of the corporate user store in the directory.xml for the environment is incorrect. It may be pointing to the wrong branch so it cannot find the groups and users as they were elsewhere in the DSA.
You can change the base DN of your corporate user store in the IM Management Console under Directories by editing your directory XML's base DN.