If you see java.lang.OutOfMemoryError in the logs then may need to adjust your JVM memory allocation. See JVM memory tuning suggestions for details.
If you installed Management Console for Unix on a Unix or Linux computer that has Authentication Services installed and is joined to an Active Directory domain and encountered the following error message when running the post installation configuration of the mangement console: "Can't find domain controller for <domain>", verify your installation configuration.
To verify the installation configuration
Note: If the computer is not joined to a domain, you could have configured the mangement console for any domain reachable by DNS.
/opt/quest/bin/vastool -u host/ -k <path_to_keytab> info id
Note: Typically, the host.keytab file is located at: /etc/opt/quest/vas/host.keytab.
Kerberos requires that the Management Console for Unix server and Active Directory domain controller clocks are within five minutes of each other.
Management Console for Unix integrates with Privilege Manager, including the ability to centrally manage policy. The following topics may help you resolve some of the common problems you might encounter.
When you join a remote Sudo Plugin host to a policy group you are required to enter a password in the Joined password box. The join password is the password for the pmpolicy user that was set when the qpm-server was configured. See Configuring the primary policy server for details.
If the join operation does not recognize the pmpolicy user password, you will receive an error message with the following snippet:
Enter password for pmpolicy@<host>: [FAIL] - Failed to copy file using ssh. - Error: Failed to add the host to the list of known hosts (/var/opt/quest/qpm4u/pmpolicy/.ssh/known_hosts). Permission denied, please try again. Permission denied, please try again. Permission denied (publickey,gssapi-keyex,gssapi-with-mic,password). ** Failed to setup the required ssh access. ** The pmpolicy password is required to copy a file to the primary ** policy server. ** To complete this configuration, please rerun this command and ** provide the correct password.
Run the join operation again entering a correct password.