Active Directory AFX Connector fails to create or modify accounts due to an 'LDAPException: Insufficient Access Rights' error in RSA Identity Governance & Lifecycle
Originally Published: 2018-06-08
Article Number
Applies To
RSA Version/Condition: 7.0.x, 7.1.x
Issue
The $AFX_HOME/esb/logs/esb.AFX-MAIN.log has the following error:
2018-05-31 16:29:35.675 [INFO] org.mule.api.processor.LoggerMessageProcessor:193 - returning: -1 ->
LDAPException: Insufficient Access Rights (50) Insufficient Access Rights
LDAPException: Server Message: 00000005: SecErr: DSID-03152612,
problem 4003 (INSUFF_ACCESS_RIGHTS), data 0
LDAPException: Matched DN
The $AFX_HOME/esb/logs/esb.AFX-CONN-{connector-name}.log (the connector log for the specific AFX connector that is failing) has the same error:
Root Exception stack trace:
LDAPException: Insufficient Access Rights (50) Insufficient Access Rights
LDAPException: Server Message: 00000005: SecErr: DSID-03152612,
problem 4003 (INSUFF_ACCESS_RIGHTS), data 0
LDAPException: Matched DN:
Cause
Resolution
Notes
Related Articles
Active Directory AFX Connector Create Account capability fails when skip certificate validation in RSA Identity Governance… 407Number of Views AFX fails to create and/or update an Active Directory account with an 'Unparseable date' error in RSA Identity Governance … 296Number of Views AFX Connector test capability fails with java.lang.NoClassDefFoundError in RSA Governance & Lifecycle 277Number of Views RSA Governance & Lifecycle Recipes: Overview - Access Rights 10Number of Views Provisioning Termination rule is not generating change requests to disable accounts in RSA Identity Governance and Lifecycle 129Number of Views
Don't see what you're looking for?