Authentication Manager Log Messages (20061-20120)
a month ago

RSA Authentication Manager Log Messages (20061-20120)

The following table lists AM log messages based on the event category and action ID. It also lists the corresponding action key, description, and log message. The log message has placeholders in the “{number}” format, which represents actual data in the logs and Activity Monitor.

Use this table to understand simple network management protocol (SNMP) trap information captured by a network management system. For more information on the information displayed by the object identifier structure (OID) in the SNMP trap, see RSA Authentication Manager SNMP.

Event Category

Action ID

Action Key

Description

Message

eventAdmin

20061

AUTHMGR_NODE_SECRET
_EXPORTED

Agent Node Secret Export

Administrator “{0}” attempted to export node secret file for agent “{4}” managed in security domain “{5}”

eventAdmin

20062

AUTHMGR_AGENT_MOVED

Move Agent

Administrator “{0}” attempted to move agent “{4}” managed in security domain “{5}”

eventAdmin

20063

AUTHMGR_AGENT_CLEAR

_NODESECRET

Clear Agent Node Secret

Administrator “{0}” attempted to clear node secret for agent “{4}” managed in security domain “{5}”

eventAdmin

20064

AUTHMGR_APS_LOOKUP

Lookup Agent Protocol Server

Administrator “{0}” attempted to lookup Agent Protocol Server “{4}” managed in security domain “{5}”

eventAdmin

20065

AUTHMGR_APS_GENERATE
_CONFIG

Generate Agent Protocol Server Config

Administrator “{0}” attempted to generate Agent Protocol Server Config “{4}”

eventAdmin

20066

AUTHMGR_APS_CREATE

Create Agent Protocol Server

Administrator “{0}” attempted to create Agent Protocol Server “{4}” managed in security domain “{5}”

eventAdmin

20067

AUTHMGR_APS_DELETE

Delete Agent Protocol Server

Administrator “{0}” attempted to delete Agent Protocol Server “{4}” managed in security domain “{5}”

eventAdmin

20068

AUTHMGR_APS_UPDATE

Update Agent Protocol Server

Administrator “{0}” attempted to update Agent Protocol Server “{4}” managed in security domain “{5}”

eventAdmin

20069

AUTHMGR_APS_LOOKUP_BY
_IP

Lookup Agent Protocol Server by IP

Administrator “{0}” attempted to lookup Agent Protocol Server by IP “{4}” managed in security domain “{5}”

eventAdmin

20070

AUTHMGR_APS_LIST
_CREATE

Create Agent Protocol Server List

Administrator “{0}” attempted to create Agent Protocol Server list “{4}” managed in security domain “{5}”

eventAdmin

20071

AUTHMGR_APS_LIST
_DELETE

Delete Agent Protocol Server List

Administrator “{0}” attempted to delete Agent Protocol Server List “{4}” managed in security domain “{5}”

eventAdmin

20072

AUTHMGR_APS_LIST
_UPDATE

Update Agent Protocol Server List

Administrator “{0}” attempted to update Agent Protocol Server List “{4}” managed in security domain “{5}”

eventAdmin

20073

AUTHMGR_APS_LIST
_LOOKUP

Lookup Agent Protocol Server List

Administrator “{0}” attempted to lookup Agent Protocol Server List “{4}” managed in security domain “{5}”

eventAdmin

20074

AUTHMGR_HOST_CREATE

Create Host

Administrator “{0}” attempted to create host “{4}” managed in security domain “{5}”

eventAdmin

20075

AUTHMGR_HOST_DELETE

Delete Host

Administrator “{0}” attempted to delete host “{4}” managed in security domain “{5}”

eventAdmin

20076

AUTHMGR_HOST_UPDATE

Update Host

Administrator “{0}” attempted to update host “{4}” managed in security domain “{5}”

eventAdmin

20077

AUTHMGR_HOST_LOOKUP

Update Host

Administrator “{0}” attempted to lookup host “{4}” managed in security domain “{5}”

eventAdmin

20078

AUTHMGR_HOST_LOOKUP
_BY_IP

Update Host By IP

Administrator “{0}” attempted to lookup host by IP “{4}” managed in security domain “{5}”

eventAdmin

20079

AUTHMGR_HOST_LOOKUP
_BY_IPPROXY

Update Host By IP Proxy

Administrator “{0}” attempted to lookup host by IP proxy “{4}” managed in security domain “{5}”

eventAdmin

20080

AUTHMGR_HOST_FIND
_INSENSITIVE

Find Host Case Insensitive

Administrator “{0}” attempted to find host case insensitive “{4}” managed in security domain “{5}”

eventAdmin

20081

AUTHMGR_FILE_CREATE

Create File Data

Administrator “{0}” attempted to create file “{4}” managed in security domain “{5}”

eventAdmin

20082

AUTHMGR_FILE_READ

Read File Data

Administrator “{0}” attempted to read file “{4}” managed in security domain “{5}”

eventAdmin

20083

AUTHMGR_FILE_DELETE

Delete File Data

Administrator “{0}” attempted to delete file “{4}” managed in security domain “{5}”

eventAdmin

20084

AUTHMGR_FILE_UPDATE

Update File Data

Administrator “{0}” attempted to update file “{4}” managed in security domain “{5}”

eventAdmin

20085

AUTHMGR_REALM_ADD

Create Realm

Administrator “{0}” attempted to create realm “{4}” managed in security domain “{5}”

eventAdmin

20086

AUTHMGR_OFFLINE_ADMIN
_POLICY_ACTION

Offline Admin Policy Action

Administrator “{0}” attempted to manipulate admin policy “{4}” managed in security domain “{5}”

eventAdmin

20087

AUTH_NODE_SECRET_FILE
_DOWNLOADED

Download Agent Node Secret File

Administrator “{0}” attempted to download node secret file for agent “{4}” managed in security domain “{5}”

eventAdmin

20088

AUTHMGR_SERVER_CONFIG
_DOWNLOAD

Download Agent Protocol Server Config

Administrator “{0}” attempted to download Agent Protocol Server Config “{4}”

eventAdmin

20089

EXPORT_SOFT_TOKEN

Export Soft Token

Administrator “{0}” attempted to export soft token “{4}” managed in security domain “{5}”

eventAdmin

20090

AUTHMGR_SD_PREDELETE
_VALIDATION

Validate Predelete

Administrator “{0}” attempted to validate predeleted security domain properties

eventAdmin

20091

AUTHMGR_REALM
_PREDELETE_TOKEN_ATTR
_DELETE

Delete Token attributes from Security Domain

Administrator “{0}” attempted to delete token attributes “{4}” managed in security domain “{5}”

eventAdmin

20092

AUTHMGR_REALM
_PREDELETE_TOKEN
_DELETE

Delete Token from Security Domain

Administrator “{0}” attempted to delete token “{4}” managed in security domain “{5}”

eventAdmin

20093

AUTHMGR_REALM
_PREDELETE_HOST_DELETE

Delete Host from Security Domain

Administrator “{0}” attempted to delete host “{4}” managed in security domain “{5}”

eventAdmin

20094

AUTHMGR_REALM
_PREDELETE_AGENT
_DELETE

Delete Agent from Security Domain

Administrator “{0}” attempted to delete agent “{4}” managed in security domain “{5}”

eventAdmin

20095

CTKIP_GENERATE_KEY

Generate CTKIP Key

Administrator “{0}” attempted to generate CTKIP key for CTKIP data “{4}” managed in security domain “{5}”

eventAdmin

20096

AM_REPORT_GENERATE
_PRINCIPAL_NEVER_LOGGED
_IN

Principal Never Logged In Report

Attempting to generate a report for principals who have never logged in using their tokens

eventAdmin

20097

AM_REPORT_SECDOMAIN
_LOOKUP

Lookup Security Domain for Reporting

Looking up a security domain for reporting

eventAdmin

20098

AM_REPORT_IDENTITY
_LOOKUP

Lookup Identity Source for Reporting

Looking up an identity source for reporting

eventAdmin

20099

SD_OAPOL_ASSOC

Apply Offline Authentication Policy to Security Domain

Applying an offline authentication policy to a security domain

eventAdmin

20100

SD_OAPOL_DISASSOC

Apply Realm Default Offline Authentication Policy to Security Domain

Applying the realm default offline authentication policy to a security domain

eventAdmin

20101

SD_TKNPOL_ASSOC

Apply Token Policy to Security Domain

Applying a token policy to a security domain

eventAdmin

20102

SD_TKNPOL_DISASSOC

Apply Realm Default Token Policy to Security Domain

Applying the realm default token policy to a security domain

eventAdmin

20103

AM_TOKEN_GENERATE
_ONLINE_EA

Generate Emergency Access Code

Administrator “{0}” attempted to generate an emergency access code for principal “{4}” stored in identity source “{6}” managed in security domain “{5}”

eventAdmin

20104

AUTHMGR_APS
_SYNCHRONIZATION

Agent Protocol Server Synchronization

Administrator “{0}” attempted to synchronize agent protocol servers

eventAdmin

20105

LINK_UNLINK_TOKEN
_PRINCIPAL

Link or Unlink Token and Principal

Administrator “{0}” attempted to link or unlink token “{4}” managed in security domain “{5}” with principal “{8}” stored in identity source “{10}” managed in security domain “{9}”

eventAdmin

20106

MIGRATION_INSUFFICIENT
_PRIVILEGE

Migration Inusfficient Privilege

Administrator “{0}” does not have sufficient privileges to perform migration

eventAdmin

20107

AUTHMGR_CREATE_GROUP
_RESTRICTED_ACCESS
_HOURS

Create Time Restricted Access Hours

Administrator “{0}” attempted to create Time Restricted Access Hours “{4}” managed in security domain “{5}”

eventAdmin

20108

AUTHMGR_UPDATE_GROUP
_RESTRICTED_ACCESS
_HOURS

Update Time Restricted Access Hours

Administrator “{0}” attempted to update Time Restricted Access Hours “{4}” managed in security domain “{5}”

eventAdmin

20109

AUTHMGR_READ_GROUP
_RESTRICTED_ACCESS
_HOURS

Read Time Restricted Access Hours

Administrator “{0}” attempted to read Time Restricted Access Hours “{4}” managed in security domain “{5}”

eventAdmin

20110

TRUSTED_USER_GROUP
_CREATE

Create Trusted User Group

Administrator “{0}” attempted to create Trusted User Group “{4}” stored in identity source “{6}” managed in security domain “{5}”

eventAdmin

20111

TRUSTED_USER_GROUP
_UPDATE

Update Trusted User Group

Administrator “{0}” attempted to update Trusted User Group “{4}” stored in identity source “{6}” managed in security domain “{5}”

eventAdmin

20112

TRUSTED_USER_GROUP
_DELETE

Delete Trusted User Group

Administrator “{0}” attempted to delete Trusted User Group “{4}” stored in identity source “{6}” managed in security domain “{5}”

eventAdmin

20113

TRUSTED_USER_GROUP
_READ

Lookup a Trusted User Group

Administrator looked up a trusted user group

eventAdmin

20114

TRUSTED_USER_GROUP
_REMOTE_PRINCIPAL_LINK

Link a Trusted User Group to a Trusted User

Administrator “{0}” attempted to link trusted user “{4}” stored in identity source “{6}” managed in security domain “{5}” with trusted user group “{8}” stored in identity source “{10}” managed in security domain “{9}”

eventAdmin

20115

TRUSTED_USER_GROUP
_AGENT_UNLINK

Unlink a Trusted User Group to an Agent

Administrator “{0}” attempted to unlink agent “{4}” managed in security domain “{5}” with trusted user group “{8}” stored in identity source “{10}” managed in security domain “{9}”

eventAdmin

20116

TRUSTED_USER_GROUP
_PROFILE_LINK_UNLINK

Link a Trusted User Group to a Profile

Administrator linked a trusted user group to a profile

eventAdmin

20117

REMOTE_PRINCIPAL_CREATE

Create Trusted User

Administrator “{0}” attempted to create trusted user “{4}” for trusted realm “{11}” managed in local security domain “{5}”

eventAdmin

20118

REMOTE_PRINCIPAL_UPDATE

Update Trusted User

Administrator “{0}” attempted to update trusted user “{4}” for trusted realm “{11}” managed in local security domain “{5}”

eventAdmin

20119

REMOTE_PRINCIPAL_DELETE

Delete Trusted User

Administrator “{0}” attempted to delete trusted user “{4}” for trusted realm “{11}” managed in local security domain “{5}”

eventAdmin

20120

REMOTE_PRINCIPAL_READ

Look up Trusted User

Administrator “{0}” attempted to look up trusted user “{4}” for trusted realm “{11}” managed in local security domain “{5}”