domainA has a member server with Control Center installed, and domainB also has a member server with Control Center installed. Both are under the same forest or belong to different forests.
An account from domainA access a member server located in domainB where it launches the Authentication Services Control Center (or vice versa). The configuration details displayed by the Control Center are incorrect or shown as empty.
When accessing the Authentication Services Control Center, the product code will use the logged-in user credentials to establish a connection to the account domain and read that domain QAC (Quest Container) in AD.
Example:
A domainA account logs into a member server with Control Center installed in domainB. In this case Control Center will attempt to read domainA QAC and not domainB QAC.
This behavior is expected.
To avoid this situation, only one QAC per forest should exist.
However, due to company merges, you may have multiple QAC locations and different configurations. If this is the case, please use an account from that domain to read the QAC configuration.
© 2025 One Identity LLC. ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center