The URL parameter SSOLogin=false fails to bypass SSO login after upgrading to 7.0.2 of RSA Identity Governance & Lifecycle
Originally Published: 2017-06-07
Article Number
Applies To
RSA Version/Condition: 7.0.2
Issue
Instead of being directed to the RSA Identity Governance & Lifecycle login screen, the user is redirected to the SSO login page. The same non-SSO login URL still works on older versions of RSA Identity Governance & Lifecycle (e. g., 7.0.0 and 7.0.1).
Cause
This is a known issue reported in engineering ticket ACM-75612.
Prior to 7.0.2, if a user was logged into RSA Identity Governance & Lifecycle and was logged out because of an application restart or because their session timed out, the resulting login page would reload only the login portion of the page, hence leaving the top and bottom menus displayed on the screen. Starting in 7.0.2, a fix to this issue (engineering ticket ACM-72710) was made to refresh the entire login page. This same fix caused the SSOLogin=false parameter that bypasses SSO login to fail.
Resolution
- RSA Identity Governance & Lifecycle 7.0.2 P02
- RSA Identity Governance & Lifecycle 7.1.0
Workaround
For example, change the old URL:
FROM:
TO:
Related Articles
DSA-2020-194: RSA MFA Agent for Microsoft Windows Authentication Bypass Vulnerability 29Number of Views How to bypass RSA SecurID multiple domain authentication page 51Number of Views How to bypass SSO for testing in RSA Identity Governance and Lifecycle 49Number of Views Form Level Request Workflows are bypassed if the Application is restarted while the Change Request is in an Open State in … 69Number of Views Is Via G&L vulnerable to “Authorization Bypass”? 11Number of Views
Trending Articles
RSA Authentication Manager 8.9 Release Notes (January 2026) RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide RSA-2026-07: RSA Authentication Manager Security Update for Third-Party Component Vulnerabilities Downloading RSA Authentication Manager license files or RSA Software token seed records RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide
Don't see what you're looking for?