A Firewall is blocking Remote AFX Agents and Remote Collection Agents from communicating with the Application Server in RSA Identity Governance & Lifecycle
Originally Published: 2020-08-14
Article Number
Applies To
RSA Version/Condition: 6.9.1, 7.0.x, 7.1.x
Issue
Cause
RSA Identity Governance & Lifecycle Root (Server) and Client Certificates are not compliant with the RFC-5280 standard. As a result, firewalls may block communication with Remote AFX Agents and Remote Collection Agents.
Resolution
- Upgrade to RSA Identity Governance & Lifecycle 7.2.0.
- Regenerate the server and client certificates as instructed in RSA Knowledge Base Article 000038314 -- How to Update the Root (Server) and Client Certificates in RSA Identity Governance & Lifecycle.
Workaround
Related Articles
RSA Announces RSA Authentication Manager 8.4 Patch 4 with New Features Making It Easier Than Ever to Adopt Modern MFA Auth… 6Number of Views Deep Linking 45Number of Views FileNotFoundException while creating an entitlement collector in RSA Identity Governance and Lifecycle 40Number of Views Some OOTB App Metadata Collector fields are missing in the Application table options in RSA Identity Governance & Lifecyle 24Number of Views Remote Java JMX agent is configured without SSL client and password authentication in RSA Governance & Lifecycle 36Number of Views
Trending Articles
RSA Authentication Manager 8.9 Release Notes (January 2026) Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide RSA Authentication Manager Upgrade Process Authentication Manager Security Console and Operations Console Inaccessible After Certificate Update
Don't see what you're looking for?