Error -1418 when trying to associate server to Identity Manager DriverSet.

  • 3191275
  • 23-Feb-2008
  • 10-Jun-2013

Environment

Novell eDirectory 8.8 for All Platforms
Novell eDirectory 8.7.3.9 for All Platforms
Novell Identity Manager 3.5
Novell Identity Manager iManager Plug-ins
Novell iManager 2.7
Novell iManager 2.6

Situation

When trying to associate a server to an Identity Manager (IDM) DriverSet whether it is new or existing a -1418 error is shown and the operation fails. The association is being performed via iManager with the IDM plug-ins. For exact errors which show up in DSTrace with the DXML filters enabled see the notes below. The eDirectory instance being associated to the DriverSet is the result of a DIB clone.

Resolution

There is a known issue where DIBclone includes an attribute it should not when copying the DIB information from the source to the destination server. As a result the server-specific information cannot be decoded resulting in the -1418 NICI error as shown in the DSTrace with the DXML filters enabled. Currently Novell must fix this via a dial-in from Novell Technical Services. This should only happen when the source server had IDM during the clone and the destination server was eventually being used for IDM.

The attribute that is being copied incorrectly is new to IDM 3.5 so cloning from a server with an earlier version of IDM should exhibit this behavior.

 

This has been resolved in eDir 88SP3

 

Additional Information

DirXML Log Event -------------------
Status: Error
Message: (-9993) An error occurred initializing DirXML subsystem 'wire data decryption': failed, -1418 (0xfffffa76).


DirXML Log Event -------------------
Status: Error
Message: (-9935) An error occurred while attempting to read encryption key for RSA: failed, -1418 (0xfffffa76).


DirXML Log Event -------------------
Status: Error
Message: (-9940) An error occurred while unwrapping encryption key for RSA: failed, -1418 (0xfffffa76).