Partial Failure - Changes are not published successfully on the Identity Router (IDR) but successfully published on the Cloud Authentication Service
2 years ago
Article Number
000068239
Applies To
RSA Product Set: SecurID Access
RSA Product/Service Type: Cloud Authentication Service
Issue
On setting up a new identity router and trying to publish the changes, you are prompted to an error <Changes were successfully published to Cloud Authentication Service, but could not be published to the identity router(s)>Screenshot 2023-07-26 203958.jpg
Screenshot 2023-07-26 201604.jpg
Cause
Initially, by default, the identity router(s) deployed are included in DefaultApplianceCluster, and by default RADIUS service and SSO service are enabled.
Screenshot 2023-07-30 180955.jpg

SSO service requires keys and certificates to be uploaded. so if they are not uploaded and SSO service is enabled, Changes will not be reflected/published on the IDR(s).
Screenshot 2023-07-26 204021.jpg
Resolution
1. Log on to the Cloud Admin Console using Super Administrator.
2. Navigate to Platform > Clusters > DefaultApplianceCluster > Edit.
3. Disable the following services.
     - SSO service on all identity routers in the cluster.
     - RADIUS service on all identity routers in the cluster.
4. Click on the "Save & Finish" button.
5. Try to Publish the changes again. Click on the "Publish" button.
Screenshot 2023-07-30 182427.jpg