000027814 - New PIN Mode authentication fails for an RSA Authentication Agent for PAM installed on CentOS

Document created by RSA Customer Support Employee on Jun 14, 2016Last modified by RSA Customer Support Employee on Apr 14, 2017
Version 2Show Document
  • View in full screen mode

Article Content

Article Number000027814
Applies ToRSA Product Set: SecurID
RSA Product/Service Type: RSA Authentication Agent for PAM
O/S Version: CentOS
IssueThe RSA Authentication Agent for PAM does not work on CentOS as expected.  The following error is seen:
 
Error 103
New pin mode authentication fails with an error 103

Both acetest and general agent authentication fails in various ways:
  • Fails to authenticate (access denied),
  • Hangs,
  • Throws timeout messages or loops when prompting user to change pin (error 103) for response to new PIN, and
  • Response to new token took too long.
ResolutionWhile CentOS is supported with other RSA products, such as NetWitness, CentOS is not supported with Authentication Manager or the Authentication Agents. 
Furthermore, the RSA support has observed that the RSA authentication agents (Apache and PAM) do not function properly on CentOS.  See the article on RSA support for Authentication Manager and/or RSA Authentication Agents installed on CentOS since it is just like Red Hat.
You must use a supported Linux platform.  See the RSA SecurID Authentication Agent for PAM Technical Specifications page for supported platforms.
Legacy Article IDa51385

Attachments

    Outcomes