Documentation

Diagnostic Messages 8001 - 8809

NumberDiagnostic TextMeaningAction
8001Could not authenticate <principal> for <service>. Please check your ticket -- it may be expiredKerberos initialization problem.Check your Kerberos configuration.
8006Could not construct local service principal name for <client principal> @ <client host>Kerberos could not construct a principal for the listed service on the listed server.Check the Kerberos settings in your Endpoint Privilege Management settings file and the Kerberos configuration (typically in /etc/krb5.conf).
8007Could not determine service name from principal name for <client principal> @ <client host>Kerberos could not construct a principal for the listed service on the listed server.Check the Kerberos settings in your Endpoint Privilege Management settings file and the Kerberos configuration (typically in /etc/krb5.conf).
8008Could not build a tgt principal for <client principal name> code <Kerberos code number>Kerberos could not construct a TGT principal for the listed principal.Check the Kerberos settings in your Endpoint Privilege Management settings file and the Kerberos configuration (typically in /etc/krb5.conf).
8010<code> while getting time of day Contact BeyondTrust Support.
8011<code> reading keytab entry <client name>There was a problem reading the keytab entry.Contact BeyondTrust Support.
8012<code> while getting initial credentials for Tje ticket could not be removed from Kerberos.Contact BeyondTrust Support.
8013.1Could not send token lengthA server ceased functioning while processing the request.Contact BeyondTrust Support.
8013.2sending token length: ## of ## bytes writtenA server ceased functioning while processing the request.Contact BeyondTrust Support.
8014.1Could not send tokenA server ceased functioning while processing the request.Contact BeyondTrust Support.
8014.2sending token data: ## of ## bytes writtenA server ceased functioning while processing the request.Contact BeyondTrust Support.
8015.1recv_token could not read token lengthEncountered an internal Kerberos problem.Contact BeyondTrust Support.
8015.2recv_token length: ## of ## bytes readEncountered an internal Kerberos problem.Contact BeyondTrust Support.
8016<service>: recv_token could not allocate memory for token data <length>Encountered an internal Kerberos problem.Contact BeyondTrust Support.
8017.1recv_token could not read token dataEncountered an internal Kerberos problem.Contact BeyondTrust Support.
8017.2recv_token sending token data:
## of ## bytes written
Encountered an internal Kerberos problem.Contact BeyondTrust Support.
8019Error initializing kerberos libraryThe designated Kerberos library could not be started.Check that the library defined in the settings file, and verify it is correct.
8020<service name>: GSS-API error ###: <description>The named Kerberos service has a problem with the GSS interface.Check the KDC logs to ensure the user's principal is added.
Contact BeyondTrust Support.
8021client failed to establish context to <service>/A GSS context could not be established to the listed server. 
8022acquiring server credentials for <service>A server could not acquire the client credentials for the listed service. 
8023establishing server context for <service>/A GSS context could not be established for the listed client. 
8024initKerberosKey socket is not openThe Kerberos socket was not open when the connection was attempted. 
8025Kerberos key initialization error connecting to log server <log host>A Kerberos connection failed while contacting a log server. 
8026Kerberos key initialization error during initial startupA Kerberos connection failure occurred from pblocald. 
8027Kerberos principal initialization error during log server reconnectA Kerberos connection failure occurred while trying to reconnect the log server to pblocald. 
8028Kerberos keytab error during log server reconnectA Kerberos connection failure occurred while trying to reconnect the log server to pblocald. 
8029Kerberos key initialization error during log server reconnectA Kerberos connection failure occurred while trying to reconnect the log server to pblocald. 
8030Kerberos key initialization error during reconnectA Kerberos connection failure occurred while trying to reconnect the log server to pblocald. 
8031Kerberos key initialization errorA Kerberos connection failure occurred from the log server. 
8032Kerberos key initialization error during log server reconnectA Kerberos connection failure from the log server while trying to reconnect to pblocald. 
8033Kerberos key initialization errorA Kerberos connection failure occurred from the policy server while trying to connect to pblocald. 
8034Kerberos key initialization error during reconnectA Kerberos connection failure occurred from pbrun while trying to reconnect to pblocald. 
8035Kerberos key initialization errorA Kerberos connection failure occurred from pbrun while trying to connect to a policy server. 
8037Kerberos key initialization errorA Kerberos connection failure occurred from pbbench while trying to connect. 
8039code <Kerberos internal code> when parsing name %sThe principal name could not be obtained.Check the principal name in the settings and keytab files. Also, check to make sure the principal exists.
8040code <Kerberos internal code> could not get credentials for <user name>No credentials were found for the user.Verify the user credentials actually exist.
8041code <Kerberos internal code> initializing cache for updateThe credentials cache could not be initialized.Check that the cache is on a writable file system.
8042code <Kerberos internal code> while storing credentialsThe credentials cache could not be updated.Check that the cache is on a writable file system.
8043could not look up user <user id number>Could not find the expected user while trying to obtain credentials.Check that the user id number is valid.
8044code <Kerberos internal code> while initializing Kerberos contextThe Kerberos security context could not be established.Check that the principals are correct in the settings and keytab files.
8045could not find entry for user <user id number>Could not find the expected user while trying to obtain credentials.Check that the user ID number is valid.
8046code <Kerberos internal code> could not parse name from principalCould not determine the principal name from the user credentials.Check the principal name in the settings and keytab files. Check that the principal exists.
8047could not find entry for user <user id number>Could not find the expected user while attempting to validate credentials.Check that the user ID number is valid.
8048undiagnosed return opening and setting default cache -<Kerberos result code>An unexpected result was obtained while trying to open and set the default cache.Contact BeyondTrust Support.
8049invalid keytab '<keytab file name>'The expected keytab file is invalid or does not exist. This is followed by a system-specific reason.Check that the keytab file exists and that the path name and permissions are correct.
8050keytab file keytab '<keytab file name>' is emptyThe specified keytab file exists, but has no content.Determine why the keytab file is empty and populate it, or use another keytab file.
8051code <Kerberos internal code> could not resolve keytabCould not resolve the contents of the keytab fileDetermine why the keytab file is invalid and correct it or use another keytab file.
8052Could not retrieve user information.Could not find the user's identityMake sure the user exists on the host machine.
8053No password supplied for Kerberos AuthenticationThe user did not type a password for Kerberos authentication when requested.Enter the correct password when requested.
8054Could not construct remote service principal name for <service name> @ <server host>Kerberos could not construct a principal for the listed service on the listed server.Check the Kerberos settings in your Endpoint Privilege Management settings file and the Kerberos configuration (typically in /etc/krb5.conf).
8055Could not determine remote service name from principal name for <service name> @ <server host>Kerberos could not determine the principal name for the listed service on the listed host.Check the Kerberos settings in your Endpoint Privilege Management settings file and the Kerberos configuration (typically in /etc/krb5.conf).
8056code <Kerberos internal code> while getting default cacheCould not find the default cacheCheck that the cache is on a writable file system.
8057PAM SESSION Error: <string>A problem (indicated by <string>) was encountered attempting to open a PAM session. Often times, <string> is meaningless (for example, "PAM session start failure"). <string> is returned by the PAM framework and cannot be more specific.Investigate reasons why the PAM session might be failing. Sometimes, PAM debugging techniques must be employed. Other times, the PB logs or system logs on the runhost might indicate the problem (for example, user is not a member of the specified Solaris Project).
8058project <Solaris project name> does not existThe requesting user or policy has specified a Solaris Project for which the task should run as. The project does not exist on the runhost.Determine if the correct project has been specified. Add the project to the runhost if necessary.
8059user <username> not a member of project <projectname>The indicated runuser is not a member of the specified Solaris project.Specify the correct runuser and project.
8060solaris projects error: <message>.The Solaris PAM subsystem may not provide enough information to readily determine the cause of the problem.Look at the runhost system logs and Endpoint Privilege Management logs for an indication why the Solaris Project may not have been set correctly.
8061Error assigning Solaris ProjectThe Solaris PAM subsystem may not provide enough information to readily determine the cause fo the problem.Look at the runhost system logs and Endpoint Privilege Management logs for an indication why the Solaris Project may not have been set correctly.
8062pam_setcred failed-: The PAM framework failed to perform the pam_setcred() function. The <error msg> indicates the failure. This message may not provide enough details as to the real cause of the problem.Examine the system logs on the runhost to determine the cause of the problem.
8063username required for Solaris projectThe username was not set when attempting to assign the task to a solaris project.Contact BeyondTrust Support.
8064Project set on Solaris 8Solaris 8 does not support Solaris projects; however, the request user or the policy set a project name.Do not specify a Solaris Project.
8065Project set on unplanned platformThe internal code to verify that a platform supports Solaris Projects needs to be updated with a new platform.Contact BeyondTrust Support.
8066Project <projectname> set on non-Solaris platformOnly Solaris 9+ platforms support Solaris Projects.Ensure that the Solaris project is only specified for Solaris 9+ runhosts.
8067missing usernameThe username was not set when attempting to assign the task to a solaris project.Contact BeyondTrust Support.
8068missing msgptrInternal error.Contact BeyondTrust Support.
8069Solaris Projects are not enabledSolaris Projects are not enabled.Enable Solaris projects using the enablesolarisprojects keyword or using PAM in pb.settings. Or, do not specify a Solaris Project.
8070unknown solaris project errorAn unknown problem occurred when setting the Solaris Project.Contact BeyondTrust Support.
8071No default projectThe getdefaultproj() library function failed to retun a default project for the runuser.Examine system logs and Solaris Project configuration on the runhost for possible causes.
8072project <project name> resource control limit has been reachedThe Solaris project has resource limits configured. A resource limit has been reached.Wait until the resource is not near peak utilization or increase the resource limit.
8073user <username> could not join project <project name>. errno:<number>The setproject() library call encountered an error.Investigate the system logs on the runhost. Investigate the errno value for .
8074errno:<number> binding to project <project name> resource poolThe setproject() library call encountered an error regarding the project’s resource limits.Investigate the system logs on the runhost. Investigate the errno value for .
8075unknown error:<number> errno:<number> binding to project .The setproject() library call returned an error and errno.Investigate the system logs on the runhost. Investigate the errno value for .
8076LOCAL MODE and project is set, however enablesolarisprojects keyword is not enabled.LOCAL MODE and project is set; however, the enablesolarisprojects keyword is not enabled.Enable the enablesolarisprojects keyword on the runhost. Or, do not specify a project.
8077Did not find PROJ function
A Solaris project function could not be found in the list of libraries specified by the sharedlibsolarisprojects keyword.Add the appropriate library to the sharedlibsolarisprojects keyword.
8100Access DeniedThe Application ID ACLs do no provide the permissions required for the current operation.Use a different Application ID or add new ACL permissions.
8101Bad constraint [<CONSRAINT>], <REASON>The constraint supplied to the event log search are invalid.Specify a valid constraint.
8102Error parsing JSON near:<STRING>The JSON data supplied to the REST API call is invalid.Correct the JSON data supplied to the REST API call.
8103Error parsing policy file <FILE>, <REASON>The policy file is syntactically invalid.Correct the syntax of the policy file.
8104Failed to allocate memory, <REASON>General - failed to allocate memory.The REST API plugin should restart. If not, check general system health and restart the httpd.
8105Failed to compile regular expression '<STRING>', <REASON>The supplied regular expression is invalid.Correct the syntax of the regular expression supplied.
8106Failed to create file <FILE>, <REASON>Could not create the specified error.Check the health of the filesystem and the specified file.
8107Failed to decode data, <REASON>Failed to Base64 decode the supplied data.Correct the supplied file encoding.
8108Failed to encode file <FILE>, <REASON>Failed to Base64 encode the supplied data.Correct the supplied file encoding.
8109Failed to initMangleFailed to initialize file encryption.Contact BeyondTrust Support.
8110Failed to open file <FILE>, <REASON>Failed to open specified file.Check the health of the filesystem and the specified file.
8111Failed to override lock, <REASON>Failed to override the specified lock.Lockfiles should only exist for milliseconds - check for stalled processes.
8112Failed to read file <FILE>, <REASON>Failed to read the specified file.Check the health of the filesystem and the specified file.
8113Failed to rename file from <FILE> to <FILE>, <REASON>Failed to rename the specified file to the destination file.Check the health of the filesystem and the specified file.
8114Failed to write file <FILE>,<REASON>Failed to write the specified file.Check the health of the filesystem and the specified file.
8115File is too large <FILE>,<REASON>File specified is too large to transfer.The file is too large to transfer using REST. Manually copy the file.
8116Invalid ACLThe specified ACL is invalid.Correct the REST call parameters on the URL.
8117Invalid application ID or Key, <REASON>The specified Application ID or Application Key is incorrect.Correct the parameters on the REST call to comply with documentation.
8118Invalid attribute <NAME>, type <TYPE>The event log has an invalid attribute type.Check the event file with pblog.
8119Invalid AuthenticationInvalid authentication signature supplied.Correct the HMAC authentication signature on the REST call.
8120Invalid event log fileThe specified event log is invalid.Check the event file with pblog.
8121Invalid event log file entryThe specified event log has an invalid entry.Check the event file with pblog.
8122Invalid new keyThe specified pb.key data is invalid.Correct the missing or invalid key data in the REST call.
8123Invalid parameter '<PARAMETER>'A specified parameter is missing or is invalid.Correct the missing or invalid parameter in the REST call.
8124Invalid policy file <FILE>, <REASON>The specified policy file is invalid.Check the policy file exists and correct the syntax of the file and check with pbcheck.
8125Permission denied - '<FILE PATH>' is a system fileThe specified file is a system file and cannot be read or written.Certain named files are system files and cannot be overwritten.
8126Timeout trying to create lockfileThere was a timeout trying to lock the specified file for updates.Lockfiles should only exist for milliseconds - check for hung processes.
8128Invalid REST request [<STRING>/<STRING/<STRING>]Invalid REST request submitted.Fix the REST request in accordance with documentation.
8129Could not get pbrest host namepbrest could not determine its host name. This is followed by a system-specific diagnostic message.Verify that /etc/hosts and host name resolution is setup correctly.
8130Failed to generate and store credential - <NUMBER>pbrest could not store the newly generated App ID and Key.Verify the health of the /etc filesystem, and the permissions on /etc/pb.restkeys.
8131Failed to delete credential - <NUMBER>pbrest could not delete the named credential - either it doesn’t exist or there was an error.Verify the health of the /etc filesystem, and the permissions on /etc/pb.restkeys.
8132Failed to read settings filepbrest could not read /etc/pb.settings.Verify the health of the /etc filesystem, and the health of /etc/pb.settings
8133Failed to allocate memory for <STRING> in <FUNCTION>, <REASON>pbrest could not allocate memory.Verify the health of the host system, and the available virtual memory.
8134Failed to contact SOLR, <ERROR>Failed to contact SOLR from this REST service.Check SOLR configuration and network connectivity.
8135SOLR search failed, <NUMBER>Failed to search for the given query in SOLR.Lookup error message in SOLR document, and fix query if required.
8140.2Missing event log destination filenameInternal error.Contact BeyondTrust Software.
8140.3Invalid destination directory: %slogarchivedir setting may be pointing to a protected system path that should not be overwritten.Specify a different directory path, preferably on a filesystem that can handle all incoming archived logfiles.
8140.4Failed to create log archive destination directory:%s errno:%d %sAn error prevented the creation of the subdirectories under the path specified in the logarchivedir setting.Resolve the problem described by the accompanying system- specific diagnostic message.
8140.5Invalid destination directory
%s, %d %s
Failed to get the status of the path specified in the logarchivedir setting.Resolve the problem described by the accompanying system- specific diagnostic message.
8140.7Log archive failed to move the logfile to the final destination directory (%d:%s)Problem encountered in finalizing the archive logfile at the destination archive host.Resolve the problem described by the accompanying system- specific diagnostic message.
8141.1Failed to remove target file %s (%d:%s)When backing out the archiving of a log, PowerBroker for Unix and Linux was not able to delete the file at thedestination archive host.Resolve the problem described by the accompanying system- specific diagnostic message.
8123.130Invalid setting '%s'Log Archive Storage Server settings file is missing logarchivedir or it contains an invalid value.Check the settings file on the Log Archive Storage Server.
8143Destination file '%s' already exists.The logfile to be archived is mapped to a destination directory that already contains the target filename.Verify the preexisting file at the destination. Or specify a different location for logarchivedir.
8144.1Missing log filename to processInternal error.Contact BeyondTrust Software.
8150.1Failed to update database with event logfile location [%s]A SQL error occurred while trying to update the log tracking database.See the accompanying error message for more details.
 8150.10Unable to update the log tracking database. Undoing the archive.Log archiving cannot be completed if the log tracking database cannot be updated. 
 8150.11Unable to remove %s after successfully archived %d %s See the accompanying system-specific diagnostic message.
8150.13Could not connect to Log Archiver Database Server [%d:%s]Problem encountered when trying to contact the Log Archiver Database Server.See the accompanying system-specific diagnostic message.
8150.14Could not access log tracking database [%s]Problem encountered when trying to check status of the log tracking database.See the accompanying system-specific diagnostic message.
8150.15Failed to read the log - %s Check the encryption settings for the logfile on the log server host.
8150.2Failed to remove logfile to undo archiving due to error: %sWhen backing out the archiving of a log, PowerBroker for Unix and Linux was not able to delete the file at the destination archive host. 
8150.3Failed to archive logfile due to error: %sLog archiving failed.See the accompanying system-specific diagnostic message.
8150.4Could not record logfile location in the tracking database [%s]Failed to update the log tracking database.See the accompanying system-specific diagnostic message.
8150.5Failed to determine archive host's enforcehighsecurity setting [%s]Problem encountered getting the enforcehighsecurity setting on the Log Archive Storage Server.See the accompanying system-specific diagnostic message.
8150.6Failed to determine archive host's encryption info [%s]Problem encountered getting the logfile encryption setting on the Log Archive Storage Server.See the accompanying system-specific diagnostic message.
8150.7Failed to get archive host's keyfile [%s]Problem encountered getting the encryption key on the Log Archive Storage Server.See the accompanying system-specific diagnostic message.
 8150.8Invalid log name %s : %sThe logfile name provided to pblogarchive has invalid characters. 
8150.9Could not access file %s (%d:%s)The logfile name provided to pblogarchive does not exist. 
8151.1Settings file is missing required log archive host.\npblogarchive requires logarchivehost setting in the settings file of the log server. 
8151.2pblogarchive: -e, -E and -i, -IYou cannot use the event log options (-e,-E) with the I/O log options (-i, -I) in the same pblogarchive command.Archive only similar type logfiles per pblogarchive command.
8151.3No logfile to archivepblogarchive cannot find the eventLog to be archived.You must explicitly provide an argument to -e option if the event log is defined in the policy and not in the settings file.
8151.4pblogarchive: Error occurred matching pattern '%s' (%d:%s)pblogarchive was unable to find matching files using the provided search pattern.See the accompanying system-specific diagnostic message.
8151.5pblogarchive: Failed to initialize CURL/SSL librariesOne or more of the shared libraries listed in the sharedlibssldependencies or sharedlibcurldependencies could not be loaded. 
8151.6pblogarchive: Error opening %s (%d:%s)pblogarchive encountered an error while finding matching files using the provided search pattern.See the accompanying system-specific diagnostic message.
8151.7Settings file is missing required log archive DB host.pblogarchive requires logarchivedbhost setting in the settings file of the log server. 
8152Failed to update the log tracking database.enablelogtrackingdb is set to yes in the settings file of the log host. Every time an event log is created, the log tracking database on the Log Archiver Database Server is updated. This error indicates a problem with the database update.See the PowerBroker for Unix and Linux System Administration Guide and verify if the Log Archiver Database Server is set-up properly.
8500Invalid high security setting '%s' must be %s.The named keyword is set incorrectly in accordance with the enforcehighsecurity setting.Fix the named setting in accordance with existing documentation.
8501Can not stat SSL private key file <filename>Could not access the named keyfile. This is followed by the system-specific reason. 
8502SSL_CTX_set_cipher_listAn invalid cipher list option was specified.Check the sslpbruncipherlist and sslservercipherlist settings.
8503Private key file not specifiedAn SSL private key was not specified in the settings file. 
8504<SSL diagnostic>A problem was encountered with a certificate file. The SSL diagnostic describes the reason. 
8505<SSL diagnostic>A problem was encountered with a private key file. The SSL diagnostic describes the reason. 
8506<SSL diagnostic>A problem was encountered when checking a private key file. The SSL diagnostic describes the reason. 
8507<SSL diagnostic>A problem was encountered when loading a certificate authority file. The SSL diagnostic describes the reason. 
8508<SSL diagnostic>A problem was encountered when processing a certificate authority directory. The SSL diagnostic describes the reason. 
8509Could not initialize server connection parametersAn SSL server connection could not be established. This diagnostic generally follows other diagnostics that lead up to it. 
8510Could not find server certificate fileA server could not find a certificate file.Check your settings file to see if sslservercertificatefile was specified.
8511Could not establish new server SSL contextAn SSL server context could not be established. This diagnostic generally follows other diagnostics that lead up to it. 
8512Could not initialize server SSL contextAn SSL server context could not be initialized. This diagnostic generally follows other diagnostics that lead up to it. 
8513Server could not load client CA file.An SSL server could not find a certificate authority file to send to its client when client certificates are required. The SSL diagnostic describes the reason. 
8514Server failure in SSL_new()An SSL server could not start a connection. The SSL diagnostic describes the reason. 
8515Server failure in SSL_set_fd()An SSL server could not connect its context to a file descriptor. The SSL diagnostic describes the reason. 
8516Server failure in SSL_accept()An SSL server could not accept a connection. The SSL diagnostic describes the reason. 
8517Could not initialize client connection parametersAn SSL client could not be initialized. This diagnostic generally follows other diagnostics that lead up to it. 
8518Could not find intermediate server certificate fileAn intermediate SSL server (pbmasterd or pblocald) could not find its certificate file.Check your settings file to see how the sslservercertificate file was specified.
8519Could not establish new client SSL contextAn SSL client context could not be established. This diagnostic generally follows other diagnostics that lead up to it. 
8520Could not initialize client SSL contextAn SSL client context could not be initialized. This diagnostic generally follows other diagnostics that lead up to it. 
8521Client failure in SSL_new()An SSL client could not start a connection. The SSL diagnostic describes the reason. 
8522Client failure in SSL_set_fd()An SSL client could not connect its context to a file descriptor. The SSL diagnostic describes the reason. 
8523Client failure in SSL_connect()An SSL client could not establish a new connection. The SSL diagnostic describes the reason. 
8524SSL log server initialization failureAn SSL client could not connect to a log server. This diagnostic generally follows other diagnostics that lead up to it. 
8525SSL Policy Server daemon initialization failureThe run host could not establish an SSL connection from a policy server. This diagnostic generally follows other diagnostics that lead up to it. 
8526SSL log server reconnect initialization failurepblocald could not establish an SSL connection to the log server during a log reconnect. This diagnostic generally follows other diagnostics that lead up to it. 
8527SSL client initialization failurepblocald could not establish an SSL connection to its client. This diagnostic generally follows other diagnostics that lead up to it. 
8528SSL <Policy Server/local daemon> initialization failureThe log server could not establish an SSL connection to pbmasterd/pblocald. This diagnostic generally follows other diagnostics that lead up to it. 
8529SSL log reconnect initialization failureThe log server could not establish an SSL connection to pblocald during a log reconnect. This diagnostic generally follows other diagnostics that lead up to it. 
8530SSL client initialization failurepbmasterd could not establish an SSL connection to pbrun during a connection. This diagnostic generally follows other diagnostics that lead up to it. 
8531Could not initiate SSL to <run host>pbmasterd could not establish an SSL connection to pblocald. This diagnostic generally follows other diagnostics that lead up to it. 
8532Locald on <run host> is not SSL enabledpbrun expects an SSL connection, but pblocald is not SSL-enabled.Check the local daemon configuration.
Add allownonssl to the pbrun setting ssloptions.
8533Failed SSL initialization to pblocald on <run host>SSL initialization failed during a reconnect to the listed client host. 
8534Policy Server on is not SSL enabledpbrun expects an SSL connection, but pbmasterd is not SSL-enabled.Check the local daemon configuration.
Add allownonssl to the pbrun setting ssloptions.
8538.1log server is not SSL enabledThe requested log server is not configured for SSL, but the requesting program requires SSL.Enable SSL for the log server, disable SSL for the requesting program, or enable allownonssl for the requesting program.
8538.2logserver is not SSL enabledThe requested log server is not configured for SSL, but the requesting program requires SSL.Enable SSL for the log server, disable SSL for the requesting program, or enable allownonssl for the requesting program.
8539.1Policy Server daemon on %s is not SSL enabledThe requested policy server is not configured for SSL, but the requesting program requires SSL.Enable SSL for the policy server, disable SSL for the requesting program, or enable allownonssl for the requesting program.
8540.1client on <submit host> is not SSL enabledThe requested client is not configured for SSL, but therequesting program requires SSL.Enable SSL for the client, or disable SSL for the requesting program, or enable allownonssl for the requesting program.
8540.2client on <submit host> is not SSL enabledThe requested client is not configured for SSL, but the requesting program requires SSL.Enable SSL for the client, disable SSL for the requesting program, or enable allownonssl for the requesting program.
8541.1Policy Server/local daemon on <Policy Server/run host name> is not SSL enabledThe requested policy server/local daemon is not configured for SSL, but the log server requires SSL.Enable SSL for the policy server/local daemon, disable SSL for the log server, or enable allownonssl for the log server.
8541.2Policy Server/local daemon on <Policy Server/run host name> is not SSL enabledThe requested policy server/local daemon is not configured for SSL, but the log server requires SSL.Enable SSL for the policy server/local daemon, disable SSL for the log server, or enable allownonssl for the log server.
8542pblocald on <run host> is not SSL enabledThe requested pblocald on the specified host is not configured for SSL, but the requesting program requires SSL.Enable SSL for the local daemon, disable SSL for the requesting program, or enable allownonssl for the requesting program.
8543Unable to load ssl engine:<name>The SSL engine could not be loaded.Verify that the library exists.
8544unable to satisfy randomness requirementsSSL needs a certain amount of randomness. This requirement could be met using RAND_ seed() functions.Contact BeyondTrust Support.
 8701Failed to allocate a TCP/IP port for X11 forwarding - exitingThe TCP/IP port to use for X11 forwarding could not be allocated.Check the available ports.
8702Failed to allocate memory to X11 forwarding for new X11 application - exitingCould not allocate memory. 
8703Invalid X11 forwarding channel message - exitingThe X11 forwarding channel message is invalid. 
8704X11 forwarding is enabled, but no DISPLAY environment variable setThe environment variable DISPLAY is not set.Set the DISPLAY variable and restart the operation (pbrun -X).
8801Could not load PAM function <function name>The named PAM function could not be loaded at runtime.Check that the PAM libraries exist and can be found.
8802Could not open PAM library <library name>The named PAM library could not be found.Check that the PAM libraries exist and are accessible.
8803PAM account management failed -<reason>The PAM account management module returned a failure. This is followed by a PAM-specific diagnostic.Correct the situation described in the PAM- specific diagnostic message.
8804PAM session start failed - <reason>A PAM session start call failed. This is followed by a PAM- specific diagnostic message.Correct the situation described in the PAM- specific diagnostic message.
8805PAM session close failed -<reason>A PAM session end call failed. This is followed by a PAM- specific diagnostic.Correct the situation described in the PAM- specific diagnostic message.
8806PAM account management failure - <reason>A PAM account management call failed. This is followed by a PAM-specific diagnostic message.Correct the situation described in the PAM- specific diagnostic message.
8807PAM authentication failed -<reason>A PAM password authentication call failed. This is followed by a PAM-specific diagnostic message.Correct the situation described in the PAM- specific diagnostic message.
8808PAM is not available on this platformPAM is not available on the host.Turn off the PAM setting in your settings file.
8809PAM account management failure - <message>The PAM account mechanism returned something other than PAM_SUCCESS. This could indicate an error, or an account failure (such as account is locked).Review and address the <message> portion.

©2003-2025 BeyondTrust Corporation. All Rights Reserved. Other trademarks identified on this page are owned by their respective owners. BeyondTrust is not a chartered bank or trust company, or depository institution. It is not authorized to accept deposits or trust accounts and is not licensed or regulated by any state or federal banking authority.