Active Directory ADC rejects Group memberships for accounts with distinguishedName larger than 256 characters in RSA Identity Governance & Lifecycle
3 years ago
Originally Published: 2020-09-22
Article Number
000043455
Applies To
RSA Product Set: RSA Identity Governance & Lifecycle
RSA Version/Condition: 7.1.1, 7.2.0
 
Issue
AD ADC, rejects the Group memberships with member type account and domain name of greater than 256 characters.

User-added image

User-added image
Cause
This is a known issue reported in engineering ticket ACM-105059.
Resolution
This issue is resolved in the following RSA Identity Governance & Lifecycle patch levels: 
  • RSA Identity Governance & Lifecycle 7.1.1 P07_HF02
  • RSA Identity Governance & Lifecycle 7.1.1 P09
  • RSA Identity Governance & Lifecycle 7.2.0 P03
  • RSA Identity Governance & Lifecycle 7.2.1