Palo Alto PA Series Firewall version 7.x prompts for passcode twice (back to back) while doing authentication from global protect
Originally Published: 2016-06-01
Article Number
Applies To
RSA Product/Service Type: RSA Authentication Manager
RSA Version/Condition: 8.1
Issue
- After upgrading the Palo Alto PA Series Firewall from version 6.x to 7..x, it prompts for passcode twice (back to back) while doing authentication from global protect.
- Error in the Authentication Activity Monitor showing as below.
- Authentication Method Failed: Passcode Format Error.
- Authentication Method Failed.
Cause
Resolution
- Enter the 1st passcode/tokencode for the initial password prompt in the Global Protect and will see the 2nd prompt asking for the password again.
- Once the passcode/tokencode changes, enter the new code on to the 2nd password prompt.
- The Authentication is successful.
Related Articles
In which scenarios does RSA ACS Server return the CAVV (VISA) / UCAF (MC) Value in the Payment Authentication (PA) Respons… 36Number of Views RSA Governance & Lifecycle Recipes: Chart - Application - Application Account & Orphan Trending 13Number of Views RSA Governance & Lifecycle Recipes: Chart - AD User Account Control Summary 40Number of Views RSA Governance & Lifecycle Recipes: Chart - AD Orphan Account Summary 25Number of Views Oracle AFX test connector capabilities that have password parameters intermittently fail in RSA Identity Governance & Life… 77Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory How to Download OTP Token Seed Files from myRSA Microsoft Entra ID External MFA - Relying Party Configuration Using OIDC - RSA Ready Implementation Guide RSA Authentication Manager 8.9 Release Notes (January 2026)
Don't see what you're looking for?