Question

Answer

Why does a user, whose Security Group has been added to HP SAM from a child domain, receive the error “Your account cannot be assigned to any existing roles?”

The user may see this error when logging into HP SAM using his username in UPN (user@domain.dom) format. When UPN is used, HP SAM checks the global catalog for group memberships in Active Directory. Local and Global Security Groups are not visible this way. The administrator has two options—either change the Security Group to be a Universal Security Group, or, instruct the user not to use UPN format when logging in.

I restored my HP SAM database from tape backup after the HP SAM SQL server was recovered from an unexpected failure. Is a synchronize operation enough to get all the latest status for all computing resources?

It depends on when the database backup was performed. New computing resources may be registered after the last backup was performed. If so, those computing resources do not exist in the backup data. The synchronize operation works only on computing resources the system is aware of. If the status of those computing resources was offline, disconnected, or online when the SQL server went down, then you must find those computing resources and add them back to the HP SAM system. To do that, stop and restart the registration service on those units. When in doubt, stop and restart the registration service on all of the computing resources. This action has no impact on current users active on the computing resources.

92

Appendix B Frequently Asked Questions