RSA Product Set: SecurID
RSA Product/Service Type: RSA Authentication Manager
RSA Version/Condition: 8.7 / 8.7 SP1 / 8.7 SP2
Platform: Linux
RADIUS authentication fails on an Authentication Manager instance.
RADIUS client receives an 'Access-Reject' response to the RADIUS authentication.
Real-time authentication activity reports an authentication activity event.
- Activity: 'Authentication agent access check'
- Reason: 'Authentication agent disabled'
For example:
The Authentication Manager instance authentication agent record was found to be disabled.
For example:
Enabled the Authentication Manager instance by editing the authentication agent record.
Primary instance Security Console > Access > Authentication Agents > Manager Existing > left-click the hostname for the replica instance in the Authentication Agent column > Edit > uncheck 'Agent is disabled' > Save.
For example:
To open a real-time authentication activity monitor : Security Console > Reporting > Real-time Activity Monitors > Authentication Activity Monitor > as required, update monitor parameters ( e.g. Display Results, Number of Results, User ID, Authentication Agent, Token Serial Number or Server Node ) > Start Monitor
Consider the following where this article issue does not match the symptom you are experiencing:
1/ Enable RSA RADIUS debug and review the RSA RADIUS log file (/opt/rsa/am/radius/radius.log)
- Article 000044158 - Enable RADIUS debug/verbose logs with all versions of RSA Authentication Manager 8.x at URL https://community.rsa.com/s/article/Enable-RADIUS-debug-verbose-logs-with-all-versions-of-RSA-Authentication-Manager-8-x.
2/ Use a test RADIUS client to send RADIUS authentications to RSA Authentication Manager.
- Article 000040483 - Performing RADIUS authentication tests with NTRadPing to RSA Authentication Manager at URL https://community.rsa.com/s/article/Performing-RADIUS-authentication-tests-with-NTRadPing-to-RSA-Authentication-Manager
3/ Open a case with RSA Customer Support.
- Information for contacting RSA Customer Support is available at URL https://community.rsa.com/s/news/how-to-contact-rsa-support-MCXZ5QDM4ZQZATLL3Y6NMQVUNYWE
Related Articles
Synchronize a Replica Instance 78Number of Views Replica Instance Synchronization 108Number of Views Distribute One Software Token Using Compressed Token Format (CTF) 67Number of Views Create IPv6 Network Settings on a Primary or Replica Instance 43Number of Views Cannot create token file error and unable to distribute RSA SecurID software token using any profile for RSA Authenticatio… 110Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Manual synchronization introduced in RSA Authentication Manager 8.2 Service Pack 1 patch 6 Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory How to verify NTP server synchronization is not working in RSA Authentication Manager 8.x RSA Governance & Lifecycle 8.0.0 Installation Guide