Enabling McApiUser in PAM

book

Article ID: 185383

calendar_today

Updated On:

Products

CA Privileged Access Manager (PAM)

Issue/Introduction

The  PAM-CMD-4818 .error message is displayed when trying to enable the user McApiUser.  How can this user be re-enabled.

Cause

There appears to be a defect that prevents the MCApiUser account from being re-enabled from the Users --> Manage Users page.

Environment

Release : 3.3.1

Component : PRIVILEGED ACCESS MANAGEMENT

Resolution

A defect will be created to address this issue.  In the meantime, a workaround is to use Settings --> API Doc.  When that opens go to the section for users.  Under users there will be an entry titled Gets all users.  Look for the field titled userName, and enter MCApiUser.  Scroll down to the "Try it out!" button and click it.  There will be a prompt for the credentials to be used.  These will be the API Key and password for the Admin User being used to manage PAM.  If successful, a return code in the 200 range should be returned.  In addition, the userId for MCApiUser will be seen in the Response Body.  This userId will be used with the "Update a user" API entry.  It will be necessary to enter the following json into the Body field, replacing 1001 with the value returned by the Get that was performed:
{
    "active":"t",
    "userId":"1001"
}

If successful, a return code in the range of 200 should be seen.  The Enabled box should now be checked, on the Administration page for the MCApiUser page.