Unmasked password in PIM/PAMSC Endpoint Audit log when changing PIM account's password using Etautil
search cancel

Unmasked password in PIM/PAMSC Endpoint Audit log when changing PIM account's password using Etautil

book

Article ID: 232731

calendar_today

Updated On:

Products

CA Privileged Identity Management Endpoint (PIM) CA Identity Manager

Issue/Introduction

Account password update using etautil or Provisioning Manager for Access Control (PIM/PAMSC) Endpoint causes PIM/PAMSC's audit log fails to mask password data.

PIM/PAMSC's audit log should mask password data. However, when etautil tool or Provisioning Manager is used PIM/PAMSC's audit log shows password data is partially masked or not masked at all.

    16 Dec 2021 12:34:34 S UPDATE USER root 305 0 test1111 demomanager2 (Native) cu ("test1111") password(test\(test)
    16 Dec 2021 12:34:35 S UPDATE USER root 305 0 test1111 demomanager2 (Native) cu ("test1111") password(****)test)

Environment

PIM Endpoint 12.8, PAMSC Endpoint 14.1
IM 14.3 CP2

Resolution

This is a known issue recorded in DE524236/DE531726. Engineering has updated LCASDK.dll to be deployed on CCS (C++ Connector Server) Windows machine.

Please raised a Support Call ticket and inform about this KB article and get the updated LCASDK.dll file, and do the following steps to deploy.

1) Stop C++ server service from Windows Services panel

2) Copy  LCASDK.dll in \provisioning server\bin directory ( when CCS is with IMPS)

3) Copy LCASDK in \Identity Manager\Connector Server\ccs\bin directory ( When CCS is with JCS)

4) Start C++ server service from Windows Services panel