Authentication Manager Log Messages (20121-20180)
a month ago

RSA Authentication Manager Log Messages (20121-20180)

The following table lists AM log messages based on the event category and action ID. It also lists the corresponding action key, description, and log message. The log message has placeholders in the “{number}” format, which represents actual data in the logs and Activity Monitor.

Use this table to understand simple network management protocol (SNMP) trap information captured by a network management system. For more information on the information displayed by the object identifier structure (OID) in the SNMP trap, see RSA Authentication Manager SNMP.

Event Category

Action ID

Action Key

Description

Message

eventAdmin

20121

AM_TIME_RESTRICTED
_ACCESS_ADD

Add Time Restricted Access to a Group

Administrator “{0}” added Time Restricted Access to Group “{4}” stored in identity source “{6}” managed in security domain “{5}”

eventAdmin

20122

AM_TIME_RESTRICTED
_ACCESS_UPDATE

Update Time Restricted Access for a Group

Administrator “{0}” updated Time Restricted Access for Group “{4}” stored in identity source “{6}” managed in security domain “{5}”

eventAdmin

20123

AM_TIME_RESTRICTED
_ACCESS_DELETE

Delete Time Restricted Access from a Group

Administrator “{0}” deleted Time Restricted Access from Group “{4}” stored in identity source “{6}” managed in security domain “{5}”

eventAdmin

20124

AUTHMGR_TOKENTYPES
_MANAGEMENT

Manage TokenType and SoftTokenDeviceType

Administrator “{0}” attempted to manage TokenType and SoftTokenDeviceType “{4}” managed in security domain “{5}”

eventAdmin

20125

AUTHMGR
_SELFSERVICETOKEN
_MANAGEMENT

Manage SelfServiceToken

Administrator “{0}” attempted to manage SelfServiceToken

eventAdmin

20126

REMOTE_PRINCIPAL_ATTR
_VALUE_CREATE

Create a Trusted User Attribute

Administrator created a trusted user Attribute

eventAdmin

20127

REMOTE_PRINCIPAL_ATTR
_VALUE_UPDATE

Update a Trusted User Attribute

Administrator updated a trusted User Attribute

eventAdmin

20128

REMOTE_PRINCIPAL_ATTR
_VALUE_DELETE

Delete a Trusted User Attribute

Administrator deleted a trusted user Attribute

eventAdmin

20129

REMOTE_PRINCIPAL_ATTR
_VALUE_READ

Look up a Trusted User Attribute

Administrator looked up a trusted user Attribute

eventAdmin

20130

DISABLE_EMERGENCY
_ACCESS

Disabled emergency access

Administrator “{0}” disabled emergency access for the token “{4}” managed in security domain “{5}” that belongs to the principal “{8}” stored in identity source “{10}” and managed in security domain “{9}”.

eventAdmin

20131

ENABLED_EA_FIXED
_TOKENCODE

Token marked as lost. Enabled emergency access fixed token code.

Administrator “{0}” marked token “{4}” managed in security domain “{5}” that belongs to the principal “{8}” stored in identity source “{10}” and managed in security domain “{9}” as lost. Enabled emergency access fixed token code.

eventAdmin

20132

ENABLED_EA_ONE_TIME
_TOKENCODE

Token marked as lost. Enabled emergency access one time token code.

Administrator “{0}” marked token “{4}” managed in security domain “{5}” that belongs to the principal “{8}” stored in identity source “{10}” and managed in security domain “{9}” as lost. Enabled emergency access one time token code.

eventAdmin

20133

UPDATE_EA_FIXED
_TOKENCODE

Updated emergency access fixed token code.

Administrator “{0}” updated emergency access fixed token code for the token “{4}” managed in security domain “{5}” that belongs to the principal “{8}” stored in identity source “{10}” and managed in security domain “{9}”.

eventAdmin

20134

UPDATE_EA_ONE_TIME
_TOKENCODE

Updated emergency access one time token code.

Administrator “{0}” updated emergency access one time token code for the token “{4}” managed in security domain “{5}” that belongs to the principal “{8}” stored in identity source “{10}” and managed in security domain “{9}”.

eventAdmin

20135

GENERATED_EA_FIXED
_TOKENCODE

Generated emergency access fixed token code.

Administrator “{0}” generated emergency access fixed token code for the token “{4}” managed in security domain “{5}”.

eventAdmin

20136

GENERATED_EA_ONE_TIME
_TOKENCODE

Generated emergency access one time token code.

Administrator “{0}” generated emergency access one time token code for the token “{4}” managed in security domain “{5}”.

eventAdmin

20137

TRUSTED_USER_GROUP
_ACCESS_HOURS_LINK
_UNLINK

Link a Trusted User Group to a Time Restricted Access Hours

Administrator linked a trusted user group to a time restricted access hours

eventAdmin

20138

AM_LINK_SOFT_TOKEN
_DEVICE_TYPE

Link Software Token with Software Token Device Type Definition

Administrator “{0}” attempted to link software token “{4}” managed in security domain “{5}” with software token device type definition “{8}” stored in system

eventAdmin

20139

AM_UNLINK_SOFT_TOKEN
_DEVICE_TYPE

Unlink Software Token from Software Token Device Type Definition

Administrator “{0}” attempted to unlink software token “{4}” managed in security domain “{5}” with software token device type definition “{8}” stored in system

eventAdmin

20140

AM_TURN_ON_EVENTTOKEN
_DB_RECOVERY

Turn on the database recovery mode for event-based tokens

Administrator “{0}” attempted to turn on event token database recovery mode

eventAdmin

20141

AM_TURN_OFF
_EVENTTOKEN_DB
_RECOVERY

Turn off the database recovery mode for event-based tokens

Administrator “{0}” attempted to turn off event token database recovery mode

eventAdmin

20142

AM_RADIUS_ATTRDEF
_CREATE

Create new RADIUS Attribute Definition

Administrator “{0}” attempted to create a new RADIUS Attribute Definition

eventAdmin

20143

AM_RADIUS_ATTRDEF
_UPDATE

Update a RADIUS Attribute Definition

Administrator “{0}” attempted to update a RADIUS Attribute Definition

eventAdmin

20144

AM_RADIUS_ATTRDEF
_DELETE

Delete a RADIUS Attribute Definition

Administrator “{0}” attempted to delete a RADIUS Attribute Definition

eventAdmin

20145

AM_RADIUS_ATTRDEF_READ

View RADIUS Attribute Definition

Administrator “{0}” attempted to view a RADIUS Attribute Definition

eventAdmin

20146

DISTRIBUTE_SOFT_TOKEN
_CTKIP

Distribute Soft Token through CT-KIP

Administrator “{0}” attempted to distribute software token “{4}” through CT-KIP managed in security domain “{5}”

eventAdmin

20147

AM_ENABLE_PRINCIPAL_FOR
_SMS

Enabled Principal for On-Demand Authentication

Administrator “{0}” attempted to enable principal “{4}” stored in identity source “{6}” managed in security domain “{5}” for On-Demand Authentication

eventAdmin

20148

AM_DISABLE_PRINCIPAL
_FOR_SMS

Disabled Principal for On-Demand Authentication

Administrator “{0}” attempted to disable principal “{4}” stored in identity source “{6}” managed in security domain “{5}” for On-Demand Authentication

eventAdmin

20149

AM_RADIUS_ATTRVAL
_MANAGE

Manage RADIUS Attribute Values

Administrator “{0}” modified RADIUS Attribute Values for principal “{4}” stored in identity source “{6}” managed in security domain “{5}”

eventAdmin

20150

AM_UPDATE_SMS_FOR
_PRINCIPAL

Updated On-Demand Authentication Attributes for Principal

Administrator “{0}” attempted to update On-Demand Authentication for principal “{4}” stored in identity source “{6}” managed in security domain “{5}”

eventAdmin

20151

MANAGE_SMS
_AUTHENTICATOR

Manage On-Demand Authenticator

Administrator “{0}” attempted to manage On-Demand Authenticator for principal “{4}” stored in identity source “{6}” managed in security domain “{5}”

eventAdmin

20152

MANAGE_SMS_PIN

Update On-Demand PIN

Administrator “{0}” attempted to set On-Demand PIN for principal “{4}” stored in identity source “{6}” managed in security domain “{5}”

eventAdmin

20153

IMPORT_SOFT_TOKEN
_DEVICE_TYPE

Import Software Token Device Definition

Administrator “{0}” attempted to import new software token device definition package file

eventAdmin

20154

AM61_MIGRATED_LOG
_MESSAGE

AM61 Migrated log message

AM61 Migrated log message

eventAdmin

20155

MANAGE_PUK_LOOKUP

Manage Pin Unlock Key (PUK)

Administrator “{0}” attempted to lookup PUK data for token “{4}” managed in security domain “{5}”

eventAdmin

20156

AM_TOKEN_ATTRDEF
_CREATE

Create new Token Attribute Definition

Administrator “{0}” attempted to create a new Token Attribute Definition

eventAdmin

20157

AM_TOKEN_ATTRDEF
_UPDATE

Update a Token Attribute Definition

Administrator “{0}” attempted to update a Token Attribute Definition

eventAdmin

20158

AM_TOKEN_ATTRDEF
_DELETE

Delete a Token Attribute Definition

Administrator “{0}” attempted to delete a Token Attribute Definition

eventAdmin

20159

AM_TOKEN_ATTRDEF_READ

View Token Attribute Definition

Administrator “{0}” attempted to view a Token Attribute Definition

eventAdmin

20160

REALM_SETTINGS_CREATE

Create Realm Settings

Administrator “{0}” attempted to create Realm Settings for security domain “{5}”

eventAdmin

20161

REALM_SETTINGS_DELETE

Delete Realm Settings

Administrator “{0}” attempted to delete Realm Settings for security domain “{5}”

eventAdmin

20162

REALM_SETTINGS_UPDATE

Update Realm Settings

Administrator “{0}” attempted to update Realm Settings “{11}” for security domain “{5}”

eventAdmin

20163

REALM_SETTINGS_READ

Lookup Realm Settings

Administrator “{0}” attempted to look up Realm Settings for security domain “{5}”

eventAdmin

20164

AM_RADIUS_CREATE
_CLIENT

Create RADIUS Client

Administrator “{0}” attempted to create RADIUS client “{4}” stored in managed in security domain “{5}”

eventAdmin

20165

AM_RADIUS_VIEW_CLIENT

View RADIUS Client

Administrator “{0}” attempted to view RADIUS client “{4}” stored in managed in security domain “{5}”

eventAdmin

20166

AM_RADIUS_UPDATE
_CLIENT

Update RADIUS Client

Administrator “{0}” attempted to update RADIUS client “{4}” managed in security domain “{5}”

eventAdmin

20167

AM_RADIUS_DELETE
_CLIENT

Delete RADIUS Client

Administrator “{0}” attempted to delete RADIUS client “{4}” managed in security domain “{5}”

eventAdmin

20168

AM_RADIUS_CREATE
_PROFILE

Create RADIUS Profile

Administrator “{0}” attempted to create RADIUS profile “{4}” managed in security domain “{5}”

eventAdmin

20169

AM_RADIUS_VIEW_PROFILE

View RADIUS Profile

Administrator “{0}” attempted to view RADIUS profile “{4}” managed in security domain “{5}”

eventAdmin

20170

AM_RADIUS_UPDATE
_PROFILE

Update RADIUS Profile

Administrator “{0}” attempted to update RADIUS profile “{4}” managed in security domain “{5}”

eventAdmin

20171

AM_RADIUS_DELETE
_PROFILE

Delete RADIUS Profile

Administrator “{0}” attempted to delete RADIUS profile “{4}” managed in security domain “{5}”

eventAdmin

20172

AM_RADIUS_CREATE
_SERVER

Create RADIUS Server

Administrator “{0}” attempted to create RADIUS server “{4}” managed in security domain “{5}”

eventAdmin

20173

AM_RADIUS_VIEW_SERVER

View RADIUS Server

Administrator “{0}” attempted to view RADIUS server “{4}” managed in security domain “{5}”

eventAdmin

20174

AM_RADIUS_UPDATE
_SERVER

Update RADIUS Server

Administrator “{0}” attempted to update RADIUS server “{4}” managed in security domain “{5}”

eventAdmin

20175

AM_RADIUS_DELETE
_SERVER

Delete RADIUS Server

Administrator “{0}” attempted to delete RADIUS server “{4}” managed in security domain “{5}”

eventAdmin

20176

AM_RADIUS_CREATE
_POLICY

Create RADIUS Realm Settings

Administrator “{0}” attempted to create RADIUS Realm settings “{4}” managed in security domain “{5}”

eventAdmin

20177

AM_RADIUS_VIEW_POLICY

View RADIUS Realm Settings

Administrator “{0}” attempted to view RADIUS Realm settings “{4}” managed in security domain “{5}”

eventAdmin

20178

AM_RADIUS_UPDATE
_POLICY

Update RADIUS Realm Settings

Administrator “{0}” attempted to update RADIUS Realm settings “{4}” managed in security domain “{5}”

eventAdmin

20179

AM_RADIUS_DELETE
_POLICY

Delete RADIUS Realm settings

Administrator “{0}” attempted to delete RADIUS Realm settings “{4}” managed in security domain “{5}”

eventAdmin

20180

AM_RADIUS_LINK_PROFILE
_AGENT

Assign RADIUS Profile to Agent

Administrator “{0}” attempted to assign RADIUS profile “{4}” to Agent “{8}” managed in security domain “{5}”