Symantec IGA

 View Only
  • 1.  Unable to login to IDM user console

    Posted May 18, 2020 03:12 PM

    Hi All,

     

    Facing an issue where we are unable to get the login page for CA Identity minder console. When we hit the URL. the following screen is displayed directly as if the user has logged in

     

    There is an error in the logs as well as follows. (not sure whether they are connected)

     

     

    2015-01-15 09:56:07,985 WARN  [ims.ui] Could not find attribute : %FULL_NAME% taskName : null ex : null

    2015-01-15 09:56:08,001 WARN  [ims.ui] Could not find attribute : %USER_ID% taskName : null ex : null

    2015-01-15 09:57:17,382 ERROR [ims.llsdk.role.azengine] Unable to locate administrator user in the corporate directory

    2015-01-15 09:57:17,382 ERROR [ims.ui] com.netegrity.llsdk6.imsapi.exception.ImsRuntimeException

    [facility=4 severity=3 reason=0 status=6 message=Unrecognized command]

    Unable to locate administrator user in the corporate directory

    at com.netegrity.llsdk6.imsimpl.securityengine.PolicyEngine.getAdministratorsTasks(PolicyEngine.java:1266)

    at com.netegrity.llsdk6.imsimpl.provider.AdminTaskProviderImpl.getAdministratorsTasks(AdminTaskProviderImpl.java:482)

    at com.netegrity.webapp.util.TaskCategoryHelper.getAllAdminTasks(TaskCategoryHelper.java:689)

    at com.netegrity.webapp.util.TaskCategoryHelper.initAllTasks(TaskCategoryHelper.java:111)

    at com.netegrity.webapp.util.TaskCategoryHelper.getAllTasks(TaskCategoryHelper.java:87)

    at com.netegrity.webapp.util.TaskCategoryHelper.<init>(TaskCategoryHelper.java:704)

    at com.netegrity.webapp.util.TaskCategoryHelper.getInstance(TaskCategoryHelper.java:66)

    at idm_jsp.app.ui7.index_jsp._jspService(Unknown Source)

    at org.apache.jasper.runtime.HttpJspBase.service(HttpJspBase.java:70)

    at javax.servlet.http.HttpServlet.service(HttpServlet.java:717)

    at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:290)

    at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206)

     

     

    Has any one faced this issue before. Please help.



  • 2.  RE: Unable to login to IDM user console
    Best Answer

    Broadcom Employee
    Posted May 19, 2020 03:05 AM
    Hi Sneha
    - Is siteminder integrated with IM in this environment?
    - Is this error observed for all users in the directory?
    - Was this working before?
    Points to check
    1. Objectclass for users in the directory xml definition are present for the user(s) in question
    2. If SSO is indeed in place - check the Framework Authentication Filter - should be false if SSO integration is in place
    https://techdocs.broadcom.com/content/broadcom/techdocs/us/en/ca-enterprise-software/layer7-identity-and-access-management/identity-manager/14-3/configuring/ca-single-sign-on-integration/integrate-ca-single-sign-on-with-ca-identity-manager/disable-the-native-ca-identity-manager-framework-authentication-filter.html

    Additional SSO integration troubleshooting
    https://techdocs.broadcom.com/content/broadcom/techdocs/us/en/ca-enterprise-software/layer7-identity-and-access-management/identity-manager/14-3/configuring/ca-single-sign-on-integration/troubleshooting-sso.html#concept.dita_0b151e40d5e005b71aebf560310ecb0c1f73eea6_UserCannotLogIn

    Regards
    Rinat Matityahu
    Principal Support Engineer
    Broadcom Technical Support - EMEA