RSA Identity Governance and Lifecycle 7.0+ Data Access Collector(DAC) Run shows Admin Error:The resource Fully Qualified Name should be unique within an application
Originally Published: 2017-06-22
Article Number
Applies To
RSA Version/Condition: 7.0 and up
Issue
EC[180] Context[RunID=173152, DADC(Name=SC Fileshare Resource DAC - Inherited, ID=1957, APP=)]
Message[Entitlement Data Validation: The resource Fully Qualified Name should be unique within an application].
The collector is configured with the following settings:
This error is observed even if these DACs are using different Data Resource Sets.
Cause
However, this behavior is changed in version 7.0 and higher. As mentioned in the RSA Identity Governance and Lifecycle 7.0.2 Upgrade and Migration Guide, Data Access Collectors are no longer able to collect duplicate Resources based on the Fully Qualified Name between Primary collectors.
Let's say you created the two Data Access Collectors we see below:
The first, Quest-Share-New, uses Data Resource Set: DS-Share-New:
The second, named Share-Owners-New, uses Data Resource Set: DS-Share-Owners-New:
The source file named t_quest_shares_new.csv contains the following entries:
SharePath7 \\db07.aveksa.local\BugzillaBackup \\db07.aveksa.local\dzehme \\db07.aveksa.local\Export \\db07.aveksa.local\jducharme \\db07.aveksa.local\ofcscan\Web_SMB\Web_console \\db07.aveksa.local\ofcscan\wss\isapi \\db07.aveksa.local\SYSVOL\aveksa.local\Policies \\db07.aveksa.local\SYSVOL\aveksa.local\Policies(25CA04C9-E54A-4B04-8B47-414B57C76EOF) \\db07.aveksa.local\FinanceShare \\PDC7.aveksa.local\HOME\abeaudoin \\PDC7.aveksa.local\HOME\anguyen \\PDC7.aveksa.local\HOME\ao \\PDC7.aveksa.local\HOME\apolnicki \\PDC7.aveksa.local\HOME\bchang \\PDC7.aveksa.local\SYSVOL\aveksa.local\Policies \\PDC7.aveksa.local\SYSVOL\aveksa.local\Policies(25CA04C9-E54A-4B04-8B47-414B57C76EOF)
Source file "t_quest_share_owners_new.csv" contains the following entries:
SharePath7.OwnerNew \\db08.aveksa.local\BugzillaBackup,bzbackup \\db08.aveksa.local\dzehme,dzhame \\db08.aveksa.local\Export \\db08.aveksa.local\SYSVOL\aveksa.local\Policies\(CEAD4878-0149-4963-B42A-01742B1F5F98) \\PCD08.aveksa.local\FinanceShare,jodonnell \\PCD08.aveksa.local\HOME\abeaudoin,abeaudoin \\PCD08.aveksa.local\HOME\angyuyen, abguyen \\PDC08.aveksa.local\SYSVOL\aveksa.local\Policies\ \\PDC08.aveksa.local\SYSVOL\aveksa.local\Policies\(25CA04C9-E54A-4B04-8B47-414B57C76E0F) \\db07.aveksa.local\BugzillaBackup \\db07.aveksa.local\dzehme \\db07.aveksa.local\Export \\db07.aveksa.local\jducharme \\db07.aveksa.local\ofcscan\Web_SMB\Web_console \\db07.aveksa.local\ofcscan\wss\isapi \\db07.aveksa.local\SYSVOL\aveksa.local\Policies \\db07.aveksa.local\SYSVOL\aveksa.local\Policies(25CA04C9-E54A-4B04-8B47-414B57C76EOF) \\db07.aveksa.local\FinanceShare \\PDC7.aveksa.local\HOME\abeaudoin \\PDC7.aveksa.local\HOME\anguyen \\PDC7.aveksa.local\HOME\ao \\PDC7.aveksa.local\HOME\apolnicki \\PDC7.aveksa.local\HOME\bchang \\PDC7.aveksa.local\SYSVOL\aveksa.local\Policies \\PDC7.aveksa.local\SYSVOL\aveksa.local\Policies(25CA04C9-E54A-4B04-8B47-414B57C76EOF)
When a checkbox for this setting "This data collector can define new data resources" is checked for both Data Access Collectors as shown above, and these two DACs use different resource sets AND they are collecting the same Data Resource Fully Qualified Names, then the DAC that is run second and collects duplicate Data Resource Fully Qualified Names shows the following Admin Error:
Message[Entitlement Data Validation: The resource Fully Qualified Name should be unique within an application]
This error is caused by the 16 duplicate resource names from the source file, as shown below in blue:
SharePath7.OwnerNew
\\db08.aveksa.local\BugzillaBackup,bzbackup
\\db08.aveksa.local\dzehme,dzhame
\\db08.aveksa.local\Export
\\db08.aveksa.local\SYSVOL\aveksa.local\Policies\(CEAD4878-0149-4963-B42A-01742B1F5F98)
\\PCD08.aveksa.local\FinanceShare,jodonnell
\\PCD08.aveksa.local\HOME\abeaudoin,abeaudoin
\\PCD08.aveksa.local\HOME\angyuyen, abguyen
\\PDC08.aveksa.local\SYSVOL\aveksa.local\Policies\
\\PDC08.aveksa.local\SYSVOL\aveksa.local\Policies\(25CA04C9-E54A-4B04-8B47-414B57C76E0F)
\\db07.aveksa.local\BugzillaBackup
\\db07.aveksa.local\dzehme
\\db07.aveksa.local\Export
\\db07.aveksa.local\jducharme
\\db07.aveksa.local\ofcscan\Web_SMB\Web_console
\\db07.aveksa.local\ofcscan\wss\isapi
\\db07.aveksa.local\SYSVOL\aveksa.local\Policies
\\db07.aveksa.local\SYSVOL\aveksa.local\Policies(25CA04C9-E54A-4B04-8B47-414B57C76EOF)
\\db07.aveksa.local\FinanceShare
\\PDC7.aveksa.local\HOME\abeaudoin
\\PDC7.aveksa.local\HOME\anguyen
\\PDC7.aveksa.local\HOME\ao
\\PDC7.aveksa.local\HOME\apolnicki
\\PDC7.aveksa.local\HOME\bchang
\\PDC7.aveksa.local\SYSVOL\aveksa.local\Policies
\\PDC7.aveksa.local\SYSVOL\aveksa.local\Policies(25CA04C9-E54A-4B04-8B47-414B57C76EOF)
All the duplicate Data Resource Fully Qualified Names shown above are rejected as in the following screen shot:
Clicking on of the rejected entries will show the following error:
Resolution
To resolve the Admin Error, only one DAC should set new data resources. This collector is referred to as the Primary Collector. Define a Primary Collector by checking This data collector can define new data resources. All other collectors should un-check this setting if they are collecting the same data resource names (one or more) as the Primary Collector.
Alternatively, if you need to have more than one Primary Collector, you need to ensure that two or more Primary DAC Collectors are not collecting the same resource names. Duplicate resource names must be removed from one of the source files that are used by the Primary DAC collectors for collection. In the above example, the duplicate entries shown here in blue must be removed from source file "t_quest_share_owners_new.csv".
\\db07.aveksa.local\BugzillaBackup
\\db07.aveksa.local\dzehme
\\db07.aveksa.local\Export
\\db07.aveksa.local\jducharme
\\db07.aveksa.local\ofcscan\Web_SMB\Web_console
\\db07.aveksa.local\ofcscan\wss\isapi
\\db07.aveksa.local\SYSVOL\aveksa.local\Policies
\\db07.aveksa.local\SYSVOL\aveksa.local\Policies(25CA04C9-E54A-4B04-8B47-414B57C76EOF)
\\db07.aveksa.local\FinanceShare
\\PDC7.aveksa.local\HOME\abeaudoin
\\PDC7.aveksa.local\HOME\anguyen
\\PDC7.aveksa.local\HOME\ao
\\PDC7.aveksa.local\HOME\apolnicki
\\PDC7.aveksa.local\HOME\bchang
\\PDC7.aveksa.local\SYSVOL\aveksa.local\Policies
\\PDC7.aveksa.local\SYSVOL\aveksa.local\Policies(25CA04C9-E54A-4B04-8B47-414B57C76EOF)
Please refer to the RSA Identity Governance and Lifecycle Upgrade and Migration Guide for 7.0+ for more information. The RSA Identity Governance and Lifecycle 7.0.2 Upgrade and Migration Guide mentions the following:
Changes to Data Collections
RSA Identity Governance and Lifecycle v7.0.1 and later includes the following data collection changes:
- Identity Data Collectors no longer collect user groups.
- Duplicate objects are no longer allowed within an application namespace. Previously, duplicate objects were not allowed within a collector, and as a result more than one collector was allowed to collect the same entitlement for an application.
- Primary Data Access Collectors are no longer able to collect duplicate resources based on the Fully Qualified Name.
- Entitlement Data Collectors no longer collect role entitlements. Instead, Role Data Collectors collect all role entitlements.
Related Articles
RSA SecurID Authenticator 4.1.5 for iOS and Android Quick Start Guide (Italian) 4Number of Views Wireless connection fails to authenticate the client in RSA ACE/Agent 5.6 for Windows 58Number of Views RSA SecurID 4.0 for iOS and Android App Quick Start Guide (Italian) 5Number of Views RSA SecurID Authenticator 4.2 for iOS and Android Quick Start Guide (Italian) 5Number of Views MultiApp collector is failing at task 3 with ORA-01400 error in RSA Governance & Lifecycle 23Number of Views
Trending Articles
Passwordless Authentication in Windows MFA Agent for Active Directory – Quick Setup Guide RSA Authentication Manager Upgrade Process RSA Authentication Manager 8.9 Release Notes (January 2026) An example of SSO using SAML and ADFS with RSA Identity Management and Governance 6.9.x RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide
Don't see what you're looking for?