000023989 - Error 'Cannot link the runtime identity source because there are no administrative identity sources that are referencing this runtime source.'

Document created by RSA Customer Support Employee on Jun 14, 2016Last modified by RSA Customer Support Employee on Apr 21, 2017
Version 2Show Document
  • View in full screen mode

Article Content

Article Number000023989
Applies ToRSA Authentication Manager 7.0 and 7.1
Microsoft Windows 2003 Server SP1
Red hat Linux 4.0
Trying to link an identity source mapped to the Global Catalog to a realm.
Issue

"Cannot link the runtime identity source because there are no administrative identity sources that are referencing this runtime source." when trying to link and identity source to a realm.

CauseRealms need to have at least one administrative identity source mapped to a realm.  The Global Catalog can be used for run time (authentication/Read Only), but it doesn't contain the attributes needed for administration.  For that we need to point to a DC.
ResolutionIn addition to the IS mapped to a GC, create an identity source that maps to a DC. In the mapping for the DC, in the "Directory Options" sections use the "Authentication users to a global catalog" selector to pick the identity source you created for the GC. 
You should then be able to map both the IS's (GC and DC) to the realm without issue. 
NotesThe non-GC administrative/runtime Identity Source(s) are REQUIRED,
the GC-based runtime-only Identity Sources are NOT required.
Legacy Article IDa34951

Attachments

    Outcomes