RSA Product Set: SecurID
RSA Product/Service Type: Authentication Agent for Web: IIS
RSA Version/Condition: 8.x
O/S Version: Windows Server 2008, R2, 2012, 2012 R2
After generating the node secret using the RSA Authentication Agent for Web: IIS Agent Control Panel with an administrative user account, the following error is displayed when testing authentication from the browser:
"Node secret mismatch"
The IIS service does not have permissions to access the RSA Authentication Agent for Web: IIS directory under C:\Program Files\RSA Security\RSAWebAgent, which has the node secret file.
Ensure that:
- The node secret file is named securid
- The RSA Authentication Agent for Web: IIS installation directory has the user IIS_IUSRS, with at least Read and Execute permissions.
- Confirm that these permissions are properly inherited by the file and subfolders.
- Right click on the folder/file and select Properties then click on the Security tab.
- Click Edit > Add.
6. WebID has SecurID as the App Pool
7.Verification step: Ensure that the SecurID application pool is running under the Local System identity.
Related Articles
Testing the RSA Authentication Agent for PAM Module 1.23KNumber of Views Unexpected error from ACE/Agent API for RSA Authentication Agent for PAM 223Number of Views Enable Linux password authentication along with RSA Authentication Agent for PAM 1.62KNumber of Views Managing the configuration files of an RSA Authentication Agent for Windows 1.26KNumber of Views How to Replace the Web Server Certificate for the RSA Identity Governance & Lifecycle Web Console 3.25KNumber of Views
Trending Articles
RSA Authentication Manager 8.9 Release Notes (January 2026) RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide RSA-2026-07: RSA Authentication Manager Security Update for Third-Party Component Vulnerabilities Downloading RSA Authentication Manager license files or RSA Software token seed records RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide