Sharepoint configuration wizard does not display all previous created Sharepoint domains
search cancel

Sharepoint configuration wizard does not display all previous created Sharepoint domains

book

Article ID: 262683

calendar_today

Updated On:

Products

SITEMINDER CA Single Sign On Secure Proxy Server (SiteMinder) CA Single Sign-On CA Single Sign On Agents (SiteMinder)

Issue/Introduction

SharePoint (12.52-sp01-cr11) agent connection wizard will not fetch all the domains, only some of them (7) are shown on the wizard list, not the one admin wishes to edit.

Have tried SharePoint (12.52-sp01-cr8), but same result.

There are about 20+ SharePoint domains. These domains are shown up in admin ui, just not through SharePoint agent connection wizard.

Store export xml has no obvious errors or when running xpssweeper. 

Environment

Release : SharePoint agent 12.52sp01cr11

Cause

Tried following two troubleshooting steps, but problem was not resolved.

  • Set the MaxObjects registry setting to a higher value. For example, set the value to 2000.
Default value
: 100
 
Windows Base Location
: HKEY_LOCAL_MACHINE\SOFTWARE\Netegrity\SiteMinder\CurrentVersion\ObjectStore
 
UNIX Base Location
: The sm.registry file that is at
agent_installation_home
/registry
 
  • Create a registry entry of type DWORD "Max AdmComm Buffer Size" at the policy server registry location:

"HKLM/Software/Netegrity/Siteminder/CurrentVersion/PolicyServer/" with value as 2097152 (2 MB)

 If this key does not exist or having a value less than 256KB, the minimum default value is considered as 256 KB.  Restart policy server service afterwards.

 

The suspicion is that there is data corruption with this particular affiliate domain: SP_PD.......

When the SharePoint agent connection wizard attempt to load the domains, it failed at this particular affiliate domain with Object Not Found.

smtracedefault.log

[Searching for 'PropertyCollection' object with a search key in one domain][4352][02/24/2023][14:49:07][14:49:07.559][CSmObjProvider::Search][][][][][][][][][][][][PropertyCollection][0a-00000000-0000-0000-0000-000000000000][Name : 'affiliate:SP_PD.......'][][][][][][][][][][][][][][][][][][][][][][][][][][][][SmObjProvider.cpp:676][6588][][]
[Search failed][4352][02/24/2023][14:49:07][14:49:07.559][CSmObjProvider::Search][][][][][][][][][][][][PropertyCollection][0a-00000000-0000-0000-0000-000000000000][][Object Not Found][][][][][][][][][][][][][][][][][][][][][][][][][][][SmObjProvider.cpp:717][6588][][]
[Send response back.][4352][02/24/2023][14:49:07][14:49:07.559][CSmAdmMessage::ProcessMessage][][][][][][][][][][][s177/r182][][][][][][][][10.28.72.42][50051][][][][][][][][][][][][][][][][][][][][][][SmAdmMessages.cpp:168][6588][][]
[** Check error status, total 140 bytes sent.][4352][02/24/2023][14:49:07][14:49:07.559][CSmAdmMessage::ProcessMessage][][][][][][][][][][][s177/r182][][][][Error-11][11][][][10.28.72.42][50051][][][][][][][][][][][][][][][][][][][][][][SmAdmMessages.cpp:189][6588][][]

Resolution

The most likely root cause is that the affiliated domain (SP_PD.......) is missing resource partner links.

An affiliated domain without resource partner object links provides no practical purpose or use.  There could be several such empty Sharepoint affiliated domains within this environment setup (policy store). All needs to be corrected.

From a working setup policy server admin ui, go to Tasks ->Federation ->Affilate Domains ->Open Affilate Domain ->Select "Resource Partners"
and select Resource Partner and note down all information like Resource Partner ID, Authentication URL, Account Partner ID, Name IDs, Attributes, etc.

Next, update the above resource partner details in the current policy store using policy server admin ui. Then run the sharepoint configuration wizard, it should display the domain.

Alternately, delete the particular affiliated sharepoint domain from policy server admin ui, and create a new one using SharePoint agent connection wizard.

 

Additional Information

DE560423