Using RSA SecurID Software Token 5.0 for Windows with Citrix non-persistent Xenapp virtual desktops
Originally Published: 2015-10-09
Last Modified: 2022-06-20
Article Number
Applies To
RSA Product/Service Type: Authentication Manager, RSA SecurID Software Token 5.0 for Windows w
RSA Version/Condition: 8.x
8.x
Issue
The RSA SecurID Software Token 5.0 for Windows token file is removed every time a user logs off the virtual desktop, thus the token files must be stored in a single database accessed by all users.
To create a single database, you must install the desktop application from the msiexec command line, using the SETSINGLEDATABASE property. This property creates a single database in the All Users directory. When the user starts prelogon to the VPN client, for example, the VPN client retrieves a token from All Users.
Resolution
Install a single token database to the default location
- For the standard desktop application, type:
msiexec /qn /i pathname\RSASecurIDToken500.msi /lv c:\install.log SETSINGLEDATABASE=TRUE
- For the RSA SecurID Software Token with Automation, type:
msiexec /qn /i pathname\RSASecurIDTokenAuto500.msi /lv c:\install.log SETSINGLEDATABASE=TRUE
Install a single token database to a non-default location
Using an absolute path with the SETDATABASEDIR property creates a single database instance that is owned by the first user to use the application. The first example specifies an absolute path that begins with the drive letter and a backslash: drive:\. The second example uses the %HOMEDRIVE% Windows environment variable to specify the drive letter that is set in Active Directory.
- For the standard desktop application, type:
msiexec /qn /i pathname\RSASecurIDToken500.msi /lv c:\install.log SETSINGLEDATABASE=TRUE SETDATABASEDIR=c:\LocalDir
- For the RSA SecurID Software Token with Automation, type:
msiexec /qn /i pathname\RSASecurIDTokenAuto500.msi /lv c:\install.log SETSINGLEDATABASE=TRUE SETDATABASEDIR=%HOMEDRIVE%\LocalDir
Notes
Related Articles
Utilize Authentication Manager SDK 8.0 in non-weblogic environment 182Number of Views Token import fails on desktop using CT-KIP via Group policy 169Number of Views Unable to save a Workflow Approval Email Template that contains non-Latin characters in RSA Identity Governance & Lifecycle 52Number of Views Getting an error when trying to update rule via RulesPerFI load sheet 6Number of Views How to su as root to a user account protected by securid without getting Passcode prompted. 32Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Unable to login to RSA Authentication Manager Security Console as super admin RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide Manual synchronization introduced in RSA Authentication Manager 8.2 Service Pack 1 patch 6 Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory
Don't see what you're looking for?