PAM Agent is failing to connect to RSA Servers (Curl error code: 35)
Originally Published: 2024-04-25
Article Number
Applies To
RSA Product/Service Type: Authentication Agent for PAM
Issue
- PAM Agent authentication is failing using REST Protocol showing (Curl error code: 35) in the /var/ace/log/mfa_rest.log
- SSL/TLS Handshake is failing, showing Alert ( Level: Fatal, Description: Illegal Parameter) in the Server Hello.
Cause
Resolution
Upgrade the Internal Authentication Manager Certificates to SHA-256 by following the below article:
Upgrade Internal Authentication Manager Certificates to SHA-256
Related Articles
Failing to access Identity Router IDR Web resource after IDR v2.17 update 116Number of Views Monitor Uptime Status for Cloud Access Service 135Number of Views Authentication Manager 8.8 update breaks TLS connections; TLS Handshake error no cipher suites in common 101Number of Views Remote AFX Server does not start, there is a SocketException in esb.AFX_INIT.log, and OpenSSL cannot complete an SSL Hands… 338Number of Views Cloud Administration Manage FIDO Configuration API 10Number of Views
Trending Articles
RSA Authentication Manager 8.9 Release Notes (January 2026) AFX Server stuck in 'Not running' State, with error 'timed out waiting for AFX applications to start' Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory How to obtain the bundle logs from an RSA Cloud Authentication Service Identity Router RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide
Don't see what you're looking for?