000025559 - New PIN Mode and Next Token Mode fail on Cisco VPN 3000 Concentrator with RSA ACE/Server

Document created by RSA Customer Support Employee on Jun 16, 2016Last modified by RSA Customer Support Employee on Apr 21, 2017
Version 2Show Document
  • View in full screen mode

Article Content

Article Number000025559
Applies ToRSA ACE/Server 5.1 (no longer supported as of 7-14-2006)
RSA ACE/Server 5.2
Cisco VPN 3000 Concentrator
IssueNew PIN Mode and Next Token Mode fail on Cisco VPN 3000 Concentrator with RSA ACE/Server
Error: "New PIN Deferred"
Error: "Access Denied, Syntax Error"
Error: "No response from SDI Server" in Cisco Logs
CauseProblem can be caused by an insufficient timeout within Cisco
Firmware version does not support New PIN Mode
ResolutionTo correct this issue, update the Cisco Firmware to latest revision available at Cisco Software Center.

Also, review this RSA Implementation Guide for the Firmware Version we used for Certification. For example:

    IOS Version vpn3005-4.0.2-k9.bin had been found to require a minimum upgrade to vpn3005-4.0.5.A-k9.bin to work with New PIN and Next Token Mode
Legacy Article IDa22662

Attachments

    Outcomes