000015737 - AM 7.1 Security Console - manage existing tokens is very slow

Document created by RSA Customer Support Employee on Jun 14, 2016Last modified by RSA Customer Support Employee on Apr 21, 2017
Version 2Show Document
  • View in full screen mode

Article Content

Article Number000015737
Applies ToActive Directory (AD) external Identity Source, external IS Active Directory
Authentication Manager 7.1 SP4
AM 7.1 SP4
IssueAM 7.1 Security Console - manage existing tokens is very slow, sometimes times out, sometimes takes 20 minutes to display Tokens.
Find User across Identity Sources in Real Time System Monitor, repeatedly.
CauseClean up not run, no scheduled clean-up, so deleted Active Directoy (AD) users are still in the RSA database (GUID or objectGUID points to user that is not there) and the first time you try to access assigned tokens, this takes maybe 10-15 seconds to look-up each non-existent AD User, which is why it is slow.
ResolutionRun a manual or scheduled Clean up job under Security Console - Setup - Identity Sources
Legacy Article IDa63379

Attachments

    Outcomes