How to Disconnect and Reconnect an RSA Identity Router to the RSA Cloud Authentication Service
Originally Published: 2025-03-07
Article Number
Applies To
RSA Product Set: RSA ID Plus
RSA Product/Service Type:
RSA Cloud Authentication Service
RSA Identity Router
Platform: all
Issue
When making certain configuration changes, such as modifying the IP addresses of an RSA Identity Router (IDR) or adding, removing or changing proxy configuration for the IDR, it is necessary to disconnect and reconnect the IDR from the RSA Cloud Authentication Service.
Tasks
Follow the steps below to disconnect and reconnect an RSA Identity Router (IDR) to the RSA Cloud Authentication Service (CAS). The IDR's logs, which includes the system and audit logs, are preserved automatically through this process. However, just in case a problem occurs, there is an optional step included below to back them up.
- If you need to configure a proxy server to handle traffic between the IDR and CAS, make sure your have the following information before proceeding:
- The proxy's IP address or hostname
- The proxy's port number
- If the proxy requires authentication, the Proxy Username
- If the proxy requires authentication, the Proxy Password
- Optional: to save a copy of all logs within the IDR, follow the steps in section "Generate and Download the Identity Router Log Bundle" on page Troubleshooting Identity Router Issues . Store the downloaded Zip file in a safe place in case it is needed later.
- If this is the only IDR, and you have applications that use HTTP Federation (HFED), then you should perform an IDR backup before proceeding. You should already have backups configured, but we recommend also taking a manual backup at this point. Follow instructions in section "Back Up Now for a Single Cluster" on page Backing Up User Profiles for HTTP Federation Applications.
- Disconnect (de-register) the IDR from the Cloud. Instructions are in section "Disconnect an Identity Router" on page Disconnect or Delete an Identity Router. Do not delete the IDR.
- Connect (register) the IDR to the Cloud. Follow the instructions to do that here: Connect the Identity Router to the Cloud Administration Console, .
Resolution
- If reconnection succeeds, the IDR should eventually show as Active once again in the Cloud Administration Console. It may take some time for all IDR status indicators to show as green/healthy again in the Cloud Administration Console. See View Identity Router Status in the Cloud Administration Console.
- If reconnection fails and the IDR cannot be recovered, the fallback option will be to delete and reinstall the Identity Router's VM.
Notes
- If you have other IDRs in your deployment that are configured to takeover all authentications for this IDR while this process is being followed, there will be no production outage during this task.
- Downloading the IDR logs from an IDR saves a copy of the logs to a Zip "bundle" file. The saved bundle logs cannot later be restored to the IDR, so need to be maintained somewhere else if they may be needed in future. See Contents of Identity Router Log Bundle .
- If you do not have applications that use HTTP Federation (HFED), backing up an IDR serves no purpose. For more information, see Backing Up User Profiles for HTTP Federation Applications.
Related Articles
Failed RSA SecurID Authenticate tokencode authentication attempt to RSA SecurID Authentication Manager causes two failures… 34Number of Views Eserver or Aserver will not reconnect to the SQL DB after a DB restart 42Number of Views Adding a new user attribute in a user profile in RSA Authentication Manager 8.x 100Number of Views Incompatibility with Encoding of Private Key causes various issues on an RSA SecurID Access Identity Router running SLES12… 200Number of Views Disconnect or Delete an Identity Router 103Number of Views
Trending Articles
RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide RSA Authentication Manager 8.9 Release Notes (January 2026) How to install the jTDS JDBC driver on WildFly for use with Data Collections in RSA Identity Governance & Lifecycle RSA Authentication Manager 8.8 Setup and Configuration Guide Artifacts to gather in RSA Identity Governance & Lifecycle
Don't see what you're looking for?