Sometimes when logging in to CA PAM and trying to carry out any LDAP operation, the process results in failure. At the same time, the dashboard shows a message indicating that "LDAP Sync is in progress..."
The sytem stays in this state for a long time and it may eventually not always finish. For as long as LDAP Sync is occurring, no operations can be performed against LDAP, resulting in loss of functionality
CA Privileged Access Management versions 3.3.X
There was a similar issue covered by defect DE416062 included with CA PAM 3.3.1. However this situation may as well occur in later versions of the product.
If cluster cannot be restarted and/or primary site lead node (where LDAP import takes place) cannot be restarted either, please engage Broadcom Support so that they can access your system and correct the issue manually by killing the appropriate processes.
As a preventive action, in case this is caused by excessive LDAP synchronization time causing two successive processes to overlap, increase the LDAP refresh interval under the Third Party options in Configuration