RSA SecurID Access O365 WS-Fed Authentication Fails Intermittently
Originally Published: 2019-04-26
Article Number
Applies To
RSA Product/Service: Cloud Authentication Service
Issue
Sorry but we're having trouble signing you in.
AADSTS20012: An error occurred when we tried to process a WS-Federation message. The message was invalid.
Cause
This loss of session persistence can cause authentication failure.
Workaround
- In the Cloud Admin Console go to Platform > Identity Routers.
- For each IDR:
- Edit and go to the Settings tab
- Create a static DNS entry specifying the IDR's proxy interface IP address and the load balancer's DNS hostname. Reference Step 13 of Add an Identity Router Using the Cloud Administration Console.
- Publish the changes.
Notes
Related Articles
O365 WS-Fed authentication fails with RSA SecurID Access 109Number of Views Workday Web Service Identity Collector (IDC) on WebSphere fails with 'Failed to add WS-Security header to request' error i… 87Number of Views Microsoft SharePoint - SSO Agent - WS-Fed Configuration - RSA Ready SecurID Access Implementation Guide 35Number of Views Tape Silo w/Encryption showing key error 7Number of Views Microsoft Office 365 - WS-Federation SSO Configuration - RSA Ready Implementation Guide 85Number of Views
Trending Articles
Troubleshooting RSA SecurID Access Identity Router to RSA Authentication Manager test connection failures RSA SecurID Software Token 5.0.2 Downloads for Microsoft Windows RSA Authentication Manager 8.9 Release Notes (January 2026) RSA Governance & Lifecycle 8.0.0 Administrators Guide Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory
Don't see what you're looking for?