000021636 - Error: 'Access denied  new PIN deferred' in RSA ACE/Server logs when trying to authenticate in New PIN Mode while using F5 Networks FirePass

Document created by RSA Customer Support Employee on Jun 16, 2016Last modified by RSA Customer Support Employee on Apr 21, 2017
Version 3Show Document
  • View in full screen mode

Article Content

Article Number000021636
Applies ToRSA Authentication Manager 6.0
Microsoft Windows Server 2003
F5 Networks FirePass
IssueError: "Access denied, new PIN deferred" in RSA ACE/Server logs when trying to authenticate in New PIN Mode while using F5 Networks FirePass
CauseDynamic group mapping was enabled on F5 Networks FirePass
ResolutionTo correct this issue, disable dynamic group mapping on F5 Networks FirePass; please refer to FirePass documentation on how to do this.

For more details about F5 Networks FirePass integration with Native SecurID Authentication, view our Implementation Guide for F5 Networks FirePass.

NOTE: If you're using RADIUS as opposed to SecurID, see RADIUS authentications fail from a F5 Networks FirePass to RSA ACE/Server RADIUS.
Legacy Article IDa24048

Attachments

    Outcomes