Unable to authenticate on AD FS servers that are using different language than the default English-US when RSA Authentication Agent for AD FS is installed
Originally Published: 2020-06-09
Article Number
Applies To
RSA Product/Service Type: Authentication Agent for AD FS
RSA Version/Condition: 2.0
Issue
Please contact your system administrator
The following error is in the event log of the AD FS server:
AD FS/Admin Id: 364 Encountered error during federation passive request. Additional Data Protocol Name: Saml Relying Party: https://<server-name>/identity Exception details: Microsoft.IdentityServer.Web.WebConfigurationException: No style sheet is configured in the active theme for default locale [nl-NL/1043]. at Microsoft.IdentityServer.Web.UI.ThemeAuthoringEngine.PrepareTheme() at Microsoft.IdentityServer.Web.UI.PageBase.get_ThemeAuthoringEngine() at Microsoft.IdentityServer.Web.Authentication.External.AdapterPresentationManager.get_ResponseCulture() at Microsoft.IdentityServer.Web.Authentication.External.ExternalAuthenticationHandler.Process(ProtocolContext context) at Microsoft.IdentityServer.Web.Authentication.AuthenticationOptionsHandler.Process(ProtocolContext context) at Microsoft.IdentityServer.Web.PassiveProtocolListener.OnGetContext(WrappedHttpListenerContext context)
Cause
Resolution
To resolve this issue,
- Download the RSA Authentication Agent 2.0 Language Pack for AD FS Localized Pages .zip file from RSA Link.
- Add the localized authentication page using the following procedures.
- Sign into the AD FS server where you installed the RSA Authentication Agent for AD FS.
- Copy the contents of the ADFSAgentv2LocalizedPages.zip to C:\Program Files\RSA\RSA Authentication Agent\AD FS MFA Adapter\lang\, replacing any duplicate files.
- Open a PowerShell command prompt.
- Enter the following to run the Agent for AD FS localization script:
cd 'C:\Program Files\RSA\RSA Authentication Agent\AD FS MFA Adapter\lang' .\MFAAuthProviderLocalization.ps1
- Enter 1 to add and enable the localized language resource files.
- Enter 3 to exit.
- Restart the AD FS services.
- Sign into the AD FS server where you installed the RSA Authentication Agent for AD FS.
- Open a PowerShell command prompt.
- Enter the following to run the Agent for AD FS Configuration Utility:
cd 'C:\Program Files\RSA\RSA Authentication Agent\AD FS MFA Adapter\scripts' .\MFAAuthProviderConfigSettings.ps
- From the menu, enter 3 to select Restart AD FS.
- Sign into the AD FS server where you installed the RSA Authentication Agent for AD FS.
- Open a PowerShell command prompt.
- Enter the following to run the Agent for AD FS localization script:
cd 'C:\Program Files\RSA\RSA Authentication Agent\AD FS MFA Adapter\lang' .\MFAAuthProviderLocalization.ps
- Enter 2 to remove localized language resource files.
- Enter 3 to exit.
- Delete the language files from C:\Program Files\RSA\RSA Authentication Agent\AD FS MFA Adapter\lang\.
- Restart the AD FS services, as shown in 2g above.
Workaround
Notes
- French (fr)
- German (de)
- Italian (it)
- Japanese (ja)
- Korean (ko)
- Portuguese (pt)
- Russian (ru)
- Simplified Chinese (zh-Hans)
- Spanish (es)
Related Articles
In RSA Identity Governance & Lifecycle While attempting to create/modify review definition, when we include users with Dat… 33Number of Views Unable to receive emails from RSA's customer support ticketing system and/or our ID Plus mail service 67Number of Views Error when downloading Authentication Manager files from my.rsa.com: Our records indicate you do not meet compliance requi… 32Number of Views Way We Do - RSA Ready Implementation Guide 4Number of Views Way We Do - SAML Relying Party Configuration - RSA Ready Implementation Guide 1Number of Views
Trending Articles
How to delete old or pending certificate signing requests for RSA Authentication Manager console or virtual host replaceme… Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory How to import CA signed console cert from AM 8.x primary into a new primary with same FQDN How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device How to 'Trust' the RSA Authentication Manager Security Console Self-Signed Root CA certificate and prevent Cert warnings.
Don't see what you're looking for?