When modifing a jurisdiction after upgrading RCM, an error "Failed to modify the configuration" occurs
Unable to uncheck "Enforce profile definition" option in a jurisdiction and unable to save changes. If Microsoft ADAM is being used for High Availability (HA) with RSA Certificate Manager, the following messages show in the db plugin log after the attempt to update the jurisdiction:
Logging started at Wed Jun 03 13:30:09 2009
Failed to modify entry: rcm-0xudaDN=IDXEQ222333444CCCDDD555666777EEE111XSEPCNXEQDOMAINSXSEPCNXEQCONFIG,CN=RSACM,DC=domain,DC=com [LDAP error 16]
Failed to modify entry: rcm-0xudaDN=IDXEQ111111222222AAAAAA333333CCCCCCXSEPCNXEQDOMAINSXSEPCNXEQCONFIG,CN=RSACM,DC=domain,DC=com [LDAP error 16]
Failed to modify entry: rcm-0xudaDN=IDXEQAAAAADDDDDD3333333ABABABAB12312312XSEPCNXEQDOMAINSXSEPCNXEQCONFIG,CN=RSACM,DC=domain,DC=com [LDAP error 16]
When using external directory with RSA Certificate Manager for High Availability, ensure that schema is updated on the external directory (the example below is for Microsoft ADAM, but similar instructions/ldif for SUN One Directory Server are also available):
RCM 6.7 upgraded to RCM6.8 Build 514 - run 67to68rcm-active-directory-schema.ldif
RCM 6.7 upgraded to RCM6.8 Build 515 - run 67to68rcm-active-directory-schema.ldif and 67to68rcm-active-directory-schema-update.ldif
RCM 6.7 upgraded to RCM6.8 Build 516 - run 67to68rcm-active-directory-schema.ldif and 67to68rcm-active-directory-schema-update.ldif
When internal default db is being used with RSA Certificate Manager, and dropped in Build 515 or higher after upgrading to RCM 6.8 Build 514, remember to run the following to update schema:
https://hostname:admin-port/ca/admin/updateprofiles6.8.xuda
https://hostname:admin-port/ca/admin/schemaUpdate.xuda
Restart the RCM "Secure Directory Service"
If you are using the full release of build 515 or higher to perform an upgrade then the schema changes for the internal database are already built in and no manual updates are required.
Related Articles
RSA ID Plus Cloud Authentication Service access policy not working as expected for user immediately after attribute change 25Number of Views How to perform a file system check (fsck) on an Authentication Manager 8.x virtual server using GRUB 768Number of Views How to configure Network File System (NFS) for backup on RSA Authentication Manager 8.x; error "failed to validate the rem… 1.06KNumber of Views Create a Backup Using Back Up Now 159Number of Views Microsoft Entra ID External MFA - Relying Party Configuration Using OIDC - RSA Ready Implementation Guide 652Number of Views
Trending Articles
RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide RSA MFA Agent for UNIX Platform Support Matrix Performing RADIUS authentication tests with NTRadPing to RSA Authentication Manager How to manage database growth in RSA Identity Governance & Lifecycle Troubleshooting RSA MFA Agent for Microsoft Windows