Password Synchronization Performance: Slow Reset or Failure
search cancel

Password Synchronization Performance: Slow Reset or Failure

book

Article ID: 53148

calendar_today

Updated On:

Products

CA Identity Manager CA Identity Suite

Issue/Introduction

A slow password reset or a complete failure occurs when multiple passwords are reset in rapid succession.

This behavior typically results from the default ten-minute wait period configured between password synchronizations on the Provisioning Server.

Environment

Identity Manager 14.x & v15

Cause

The Provisioning Server enforces a default 600-second (ten-minute) wait interval between synchronization events to prevent concurrent modification conflicts.

Resolution

The synchronization wait value can be adjusted using the Provisioning Manager to accommodate faster environments.

  1. Open the Provisioning Manager.
  2. Navigate to Domains > Configuration > Password Synchronization.
  3. Select Agent Response Threshold.
  4. Locate the default value of 600 seconds.
  5. Modify the value to 300 seconds (five minutes) and test the reset process.

Note: Password synchronization speed is influenced by network latency and hardware performance. Setting this value too low increases the risk of overlapping password changes, especially when multiple endpoints are involved. Monitor environment stability after any modification.