CA Single Sign-On Tech Tip by Sau Lai Wong, Senior Support Engineer for 6th Nov 2015
ISSUE
Unable to locate user while configuring Administrative UI to authenticate CA Single Sign-on (SiteMinder) administrators using an external user store.
RESOLUTION
When going through Administrative Authentication wizard, Step 6: Select Super User dialog allows you locate a single user in the user store. However, there are some differences in the search query between the Policy Server releases:
- 12.52 SP1 release:
Filter: (&(|(sAMAccountName=*wonsa03*)(displayName=*wonsa03*))(&(&(objectclass=organizationalPerson)(objectclass=person))(objectclass=user)))
- 12.51 release:
Filter: (displayName=*wonsa03*)(&(&(objectclass=organizationalPerson)(objectclass=person))(objectclass=user)))
R12.51 Policy Server locate the user via displayName attribute while R12.52 SP1 Policy Server search through displayName and sAMAccountName attributes.