000014929 - Agent does not auto-register with the RSA Authentication Manager

Document created by RSA Customer Support Employee on Jun 14, 2016Last modified by RSA Customer Support Employee on Apr 21, 2017
Version 2Show Document
  • View in full screen mode

Article Content

Article Number000014929
Applies ToRSA Authentication Manager 7.1
RSA Authentication Agent for Windows
Auto-registration
Auto Registration
Migration
IssueRSA Authentication Agent for Windows does not auto-register with the RSA Authentication Manager
Nothing appears in the real-time authentication activity monitor
CauseThe server certificate (server.cer) used by the RSA Authentication Agent for Windows does not match the RSA Authentication Manager to allow SSL connectivity
Resolution

 

To complete the migration and to allow the agent auto-registration program to update the agent host record in the authentication manager database the agent server certificate (server.cer) located in the ?C:\Program Files\RSA Security\RSA Authentication Agent\Agenthost Autoreg Utility? folder must be replaced with the server certificate from the license files used by the RSA Authentication Manager 7.1 SP2 software installation.

IMPORTANT NOTE: ensure the RSA Authentication Manger 7.1 software has RSA Authentication Manager 7.1 Service Pack 3 applied (or RSA SecurID Appliance 3.0 Service Pack 3 for an RSA SecurID Appliance 3.0 as it contains a fix for auto-registration).

Also, edit the agent host record and unprotect the IP address of the agent or remove the agent host record from the authentication manager database so the agent can register itself with an unprotected IP address.

Changes to agent host records are done via the RSA Security Console > Access > Authentication Agents > Manage Existing ? search Unrestricted or Restricted for the agent host record.

 
WorkaroundRSA Authentication Manager 6.1 database was migrated to RSA Authentication Manager 7.1 SP2 (or RSA SecurID Appliance 3.0 SP2)
Legacy Article IDa52398

Attachments

    Outcomes