Error: Unable to create policy store branch under root DN
search cancel

Error: Unable to create policy store branch under root DN

book

Article ID: 115117

calendar_today

Updated On:

Products

CA Single Sign On Secure Proxy Server (SiteMinder) CA Single Sign On SOA Security Manager (SiteMinder) CA Single Sign-On SITEMINDER

Issue/Introduction

 

Configuring Apache Directory (ApacheDS LDAP server) as a Policy Store, the below error raises while importing the Policy Store data definitions with the command:

   # ./XPSDDInstall SmMaster.xdd 
 
     LDAPError: 81. LDAP error 81. Can't contact LDAP server 
     Unable to create policy store branch under root DN 

The smps log also reports an error:

   [13472/140073632626496][Wed Aug 22 2018 13:33:09][SmLdapBulkSearch.cpp:198][CreateRoot][WARN][sm-xpsxps-01110]
   Unable to load the LDAP DSE. Reason: Can't contact LDAP server 

Environment

 

Policy Server R12.8 on CentOS 7;
Apache Directory apacheds-2.0.0-M24-64bit as Policy Store;

 

Cause

 

On the date of July the 8th 2022, Apache Directory (ApacheDS LDAP server) is not a supported LDAP Directory;

 

Resolution

 

Use one of the supported LDAP Directories listed in the Platform Support Matrix (1).

 

Additional Information

 

(1)

    Symantec SiteMinder (previously CA Single Sign-On) 12.8
    https://ftpdocs.broadcom.com/cadocs/0/contentimages/Symantec_SiteMinder_12_8_Platform_Support_Matrix_21Jun2022.pdf