Authentication Manager Log Messages (13001-13008)
a month ago

RSA Authentication Manager Log Messages (13001-13008)

The following table lists AM log messages based on the event category and action ID. It also lists the corresponding action key, description, and log message. The log message has placeholders in the “{number}” format, which represents actual data in the logs and Activity Monitor.

Use this table to understand simple network management protocol (SNMP) trap information captured by a network management system. For more information on the information displayed by the object identifier structure (OID) in the SNMP trap, see RSA Authentication Manager SNMP.

Event Category

Action ID

Action Key

Description

Message

eventAuthn

13001

AUTHN_LOGOUT_EVENT

Principal session logout

User “{0}” attempted to log out of security domain “{1}” in identity source “{2}”

eventAuthn

13002

AUTHN_LOGIN_EVENT

Principal authentication

User “{0}” attempted to authenticate using authenticator “{6}”. The user belongs to security domain “{1}”

eventAuthn

13003

AUTHN_LOCKOUT_EVENT

Principal lockout

User “{0}” from security domain “{1}” in identity source “{2}” is locked out

eventAuthn

13004

ADD_DEVICE_BINDING

Register new device for principal

A new device was saved to the RBA device history for user “{0}” from security domain “{1}” in identity source “{2}”.

eventAuthn

13005

OC_ADMIN_LOGOUT_EVENT

OC Admin session logout

Operations Console admin “{0}” attempted to log out of Operations Console

eventAuthn

13006

OC_ADMIN_LOGIN_EVENT

OC Admin authentication

Operations Console admin “{0}” attempted to authenticate to Operations Console

eventAuthn

13007

PROXY_LOGIN_EVENT

Authentication request

The authentication request was routed through “{9}”.

eventAuthn

13008

DEVICE_ELEMENTS_NOT
_BOUND

Device elements not bound for principal

User “{0}” from security domain “{1}” in identity source “{2}” must provide an identity confirmation before he can achieve a higher assurance level for this device. If the user has not already configured an identity confirmation method then you may need to take action.