Active Directory AFX Connector Add Account to Group capability fails with 'No Such Attribute' error in RSA Identity Governance & Lifecycle
Originally Published: 2018-11-02
Last Modified: 2022-06-20
Article Number
Applies To
RSA Version/Condition: 7.0.x, 7.1.x
Issue
The RSA Identity Governance & Lifecycle Active Directory AFX Connector Add Account to Group capability fails.
The AFX connector log file, $AFX_HOME/esb/logs/esb.AFX-CONN-{connector name}.log, shows the following error message:
2018-08-30 00:00:41.778 [ERROR] org.mule.transport.ldapx.LdapxConnector:337 -
Error: LDAPException: No Such Attribute (16) No Such Attribute
LDAPException: Matched DN:Cause
This issue occurs if the name of the User membership attribute for Group defined in the connector definition, is incorrect and does not match what the LDAP server uses for the member object attribute.
Resolution
- In the user interface, go to AFX > Connectors > {connector-name} > Settings tab.
- Scroll down to the Group section.
- Modify the User membership attribute for Group value to match the member object used by your LDAP datastore.
.
Consult your vendor to determine the actual name of the member attribute for your directory server. For example, for Oracle Internet Directory Server, the typical value for the member attribute is uniqueMember.
Note: In some cases the name of the attribute used may be different than published.
Related Articles
Change in the review behavior while using "Include group memberships that are entitlements of their assigned global roles"… 39Number of Views Unable to create an account in Active Directory with a custom objectClass in RSA Governance & Lifecycle 36Number of Views When Active Directory is integrated using Winbind, group membership for Active Directory users fails with the RSA Authenti… 170Number of Views Provisioning Termination rule is not generating change requests to disable accounts in RSA Identity Governance and Lifecycle 131Number of Views SOAP Web Service AFX test connector capabilities fail with 'Failed to create service' and 'Unexpected EOF in prolog' messa… 101Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Reporting on RSA Authentication Manager 8.x users with On-Demand Token, a fixed passcode or a hardware/software token assi… How to Download OTP Token Seed Files from myRSA Anomalix idGenius - SAML Relying Party Configuration - RSA Ready Implementation Guide RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide
Don't see what you're looking for?