Symantec Privileged Access Management

  • 1.  Password no changes with password view policies "Change Password On View" and "Check-out / Check-in" with AIX Target Account.

    Posted Aug 29, 2018 11:22 AM

    Hello!

     

    The case is, there is a AIX Target Account with Password view policy with the options: Change Password On View and Check-out / Check-in. When the customer try to view the password and check out and then to make check in, shows some error s:
    PAM-CM-1062: The specified password view request does not exist.

    PAM-CM-1349: A problem occurred while executing the script processor. Please try your request again or contact your Administrator.

    The change process use the following account to change password TESTPAM.

    The customer says that when they checking AIX needs the OLD PASSWORD of TESTPAM, but how to make that CA PAM inject it in the process.

     

    PLEASE, review the sent images.



  • 2.  Re: Password no changes with password view policies "Change Password On View" and "Check-out / Check-in" with AIX Target Account.

    Broadcom Employee
    Posted Aug 29, 2018 12:23 PM

    Hi Adolfo, I have a hard time understanding your description. You talk about problems with the password of account "testpam”, but all the pictures show activity related to the password of account "prupam”. Is the problem that the current password of account "testpam” is not right, and that is why we cannot update the password of account "prupam”?

    In general this concerns a very specific problem that will require log review (tomcat logs at INFO level) to understand what is going on. This should be done in the context of a support case. We don't want to discuss details including potentially sensitive data in a public community.



  • 3.  Re: Password no changes with password view policies "Change Password On View" and "Check-out / Check-in" with AIX Target Account.

    Posted Aug 29, 2018 12:57 PM

    Hello Ralf,

     

    The logs files that you mentioned it was uploaded at support case number 01179139.

     

    If it is possible for you to review this case will be very useful for us.

     

    Thank You.

     

    Regards.

     

    Adolfo.



  • 4.  Re: Password no changes with password view policies "Change Password On View" and "Check-out / Check-in" with AIX Target Account.

    Posted Aug 30, 2018 12:02 PM

    Hello Ralf,
    I did the changes described in the support case and it works.
    Thank You!

    Adolfo.



  • 5.  Re: Password no changes with password view policies "Change Password On View" and "Check-out / Check-in" with AIX Target Account.
    Best Answer

    Broadcom Employee
    Posted Aug 30, 2018 01:10 PM

    Just for reference here: The PAM release where the problem was observed is 3.1.1 and both problems discussed in https://comm.support.ca.com/kb/password-management-not-working-for-aix-target-accounts/kb000110127 were observed. The solution is documented there as well.