Admin sees IDP "Update" flag is activated without any change in IDP configuration when browsing SAML protocol setting

  • 7018629
  • 17-Feb-2017
  • 23-Feb-2017

Environment

NetIQ Access Manager 4.3
NetIQ Access Manager 4.2
NetIQ Access Manager Identity Server

Situation

NAM administrator browses Identity Server configuration without changing any settings. When returning to the main dashboard to view the configuration status, the IDP server claimed an update was waiting to be applied despite no change being made.
 
Narrowing down the issue, we could we could duplicate this problem with the following changes:
 
1. Edit IDP cluster.
2. Go to SAML2 tab, click on service provider.
3. Traverse tabs like attribute, intersite transfer, options but don't do any changes.
4. Click Ok or apply.
5. Traverse back to IDP cluster page.
 
When done, the IDP Update flag is enabled. Similar behaviour was seen when browsing risk based configurations.

Resolution

Apply 4.3.1.