User override by group failing ERROR: Failed, returned or signalled 3
In the messages or syslog file you will see entries like this:
CAUSE 1:
Invalid entries in the /etc/opt/quest/vas/user-override file. These can be syntax errors or entries containing users that do not exist.
CAUSE 2:
Product Defect: 367587 in QAS version 4.1.0.x :
Simple group name (samaccount name) in user-override fails if outside group-search-path
1 - Cleanup the /etc/opt/quest/vas/user-override file and remove any invalid entries.
2015-10-06 16:55:54 [warn] (63159) build_useroverride_db: Unable to find user/group from entry will re-process in 30 seconds
To narrow down what entry in the user-override file is causing the error. Please do the following:
2 - You can also run /opt/quest/libexec/vas/vasd/vas_ovrdupd -dg6 -f 2>&1 | tee /tmp/vasover.out to capture more information about what is happening.
FOR CAUSE 2:
MY_Group:::4005:::/usr/bin/ksh
Also the setting group-search-path is set in the /etc/opt/quest/vas/vas.conf file
WORKAROUND1 :
1 - Add the domain name to the group
OR
WORKAROUND 2:
1 - Add the group's location to search base
STATUS: Fixed in 4.0.3.240 and 4.1.0.21112 and up.
RESOLUTION 2:
Upgrade to Authentication Services 4.1 Maintenance release.
© 2025 One Identity LLC. ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center