RSA Identity Governance and Lifecycle Access Fulfillment Express (AFX) AD connector does not accept more than 26 parameters
Originally Published: 2016-11-24
Article Number
Applies To
RSA Version/Condition: 6.9.1+
Issue
In the UI, the following message is seen:
LDAPException: Server refused to perform migration. Password does not meet complexity requirements
The detail provided is as follows:
Error: LDAPException: Unwilling To Perform (53) Unwilling To Perform LDAPException: Server Message: 0000052D: SvcErr: DSID-031A12D2, problem
5003 (WILL_NOT_PERFORM), data 0 LDAPException: Matched DN:
******************************************************************************** Message : Failed to route event via endpoint:
DefaultOutboundEndpoint{endpointUri=ldapx://AD-Test-OU-Connector.LDAP, connector=LdapxConnector { name=AD-Test-OU-Connector.LDAP.connector
lifecycle=start this=3993db98 numberOfConcurrentTransactedReceivers=4 createMultipleTransactedReceivers=true connected=true
supportedProtocols=[ldapx] serviceOverrides= } , name='endpoint.ldapx.AD.Test.OU.Connector.LDAP', mep=REQUEST_RESPONSE, properties={},
transactionConfig=Transaction{factory=null, action=INDIFFERENT, timeout=0}, deleteUnacceptedMessages=false, initialState=started,
responseTimeout=10000, endpointEncoding=UTF-8, disableTransportTransformer=false}. Message payload is of type: LDAPModifyRequest Code :
MULE_ERROR-42999 -------------------------------------------------------------------------------- Exception stack is: 1. Unwilling To Perform
(com.novell.ldap.LDAPException) com.novell.ldap.LDAPResponse:-1 (null) 2. Failed to route event via endpoint:
DefaultOutboundEndpoint{endpointUri=ldapx://AD-Test-OU-Connector.LDAP, connector=LdapxConnector { name=AD-Test-OU-Connector.LDAP.connector
lifecycle=start this=3993db98 numberOfConcurrentTransactedReceivers=4 createMultipleTransactedReceivers=true connected=true
supportedProtocols=[ldapx] serviceOverrides= } , name='endpoint.ldapx.AD.Test.OU.Connector.LDAP', mep=REQUEST_RESPONSE, properties={},
transactionConfig=Transaction{factory=null, action=INDIFFERENT, timeout=0}, deleteUnacceptedMessages=false, initialState=started,
responseTimeout=10000, endpointEncoding=UTF-8, disableTransportTransformer=false}. Message payload is of type: LDAPModifyRequest
(org.mule.api.transport.DispatchException) org.mule.transport.AbstractMessageDispatcher:109 (http://www.mulesoft.org/docs/site/current3/apidocs/org/mule/api/transport/DispatchException.html)
-------------------------------------------------------------------------------- Root Exception stack trace: LDAPException:
Unwilling To Perform (53) Unwilling To Perform LDAPException: Server Message: 0000052D: SvcErr: DSID-031A12D2,
problem 5003 (WILL_NOT_PERFORM), data 0 LDAPException: Matched DN: at com.novell.ldap.LDAPResponse.getResultException(Unknown Source)
at com.novell.ldap.LDAPResponse.chkResultCode(Unknown Source) at com.novell.ldap.LDAPConnection.chkResultCode(Unknown Source) + 3 more
(set debug level logging or '-Dmule.verbose.exceptions=true' for everything) ********************************************************************************Cause
Resolution
Workaround
- Edit the CreateAccount capability. In the userAccountControl the current value is 512, replace it with NORMAL_ACCOUNT (standard string constant) and add an additional flag of PASSWD_NOTREQD. In doing this, the final value to be provided should be NORMAL_ACCOUNT,PASSWD_NOTREQD.
- Save these settings and execute the command.
Related Articles
RSA Identity Governance and Lifecycle version 6.9.1 review does not accept the password with hash special character # 19Number of Views In Rest Web Service Node, the Response Variables does not appear to accept Integer or Boolean values in RSA Governance & L… 60Number of Views If the RSA Identity Governance and Lifecycle Rule Status is invalid, a Segregation of Duties (SOD) rule definition takes … 49Number of Views Database backups from the user interface gets stuck 'In Progress', never finish, and prevent future backups in RSA Identit… 101Number of Views AFX Server and Connector failures if AFX is started as the root user in RSA Identity Governance & Lifecycle 724Number of Views
Don't see what you're looking for?