|Applies To||Microsoft Active Directory|
RSA ClearTrust 5.5.3 Entitlements Manager (Admin GUI)
RSA ClearTrust 5.5.3 Administrative API
|Issue||Error: "Transport error (RC_TRANSPORT_ERROR): The result set does not contain any entries" in RSA ClearTrust 5.5.3 Entitlement Manager when attempting to modify a user|
The EServer debug output reports the following error when attempting to modify a user:
sirrus.da.exception.ConcurrentModificationException: The result set does not contain any entries.
If the user objects are not specifically assigned to the Default Administrative Group, an attempt to create or delete the ctscPublicMemberlist attribute of the user object will fail. In RSA ClearTrust 5.5.2, this error message was trapped at a higher level. In RSA ClearTrust 5.5.3, this error trap was bypassed in certain situations, causing an exception, and preventing the user object from being modified.
|Resolution||This issue has been resolved in a hot fix for RSA ClearTrust 5.5.3. Contact RSA Security Customer Support to obtain hot fix 5.5.3.05, or request the latest fix level (which is cumulative, and contains fixes from previous fix levels).|
|Workaround||The ldap.conf file has the setting cleartrust.data.ldap.user.add_to_default_admin_group set to "false". This is used specifically with Active Directory to prevent the user objects from being assigned specifically to the Default Administrative Group.|
System was recently upgraded to RSA ClearTrust 5.5.3
|Legacy Article ID||a24708|