Using RSA SecurID Software Token 5.0 for Windows with Citrix non-persistent Xenapp virtual desktops
Originally Published: 2015-10-09
Article Number
Applies To
RSA Product/Service Type: Authentication Manager, RSA SecurID Software Token 5.0 for Windows w
RSA Version/Condition: 8.x
8.x
Issue
The RSA SecurID Software Token 5.0 for Windows token file is removed every time a user logs off the virtual desktop, thus the token files must be stored in a single database accessed by all users.
To create a single database, you must install the desktop application from the msiexec command line, using the SETSINGLEDATABASE property. This property creates a single database in the All Users directory. When the user starts prelogon to the VPN client, for example, the VPN client retrieves a token from All Users.
Resolution
Install a single token database to the default location
- For the standard desktop application, type:
msiexec /qn /i pathname\RSASecurIDToken500.msi /lv c:\install.log SETSINGLEDATABASE=TRUE
- For the RSA SecurID Software Token with Automation, type:
msiexec /qn /i pathname\RSASecurIDTokenAuto500.msi /lv c:\install.log SETSINGLEDATABASE=TRUE
Install a single token database to a non-default location
Using an absolute path with the SETDATABASEDIR property creates a single database instance that is owned by the first user to use the application. The first example specifies an absolute path that begins with the drive letter and a backslash: drive:\. The second example uses the %HOMEDRIVE% Windows environment variable to specify the drive letter that is set in Active Directory.
- For the standard desktop application, type:
msiexec /qn /i pathname\RSASecurIDToken500.msi /lv c:\install.log SETSINGLEDATABASE=TRUE SETDATABASEDIR=c:\LocalDir
- For the RSA SecurID Software Token with Automation, type:
msiexec /qn /i pathname\RSASecurIDTokenAuto500.msi /lv c:\install.log SETSINGLEDATABASE=TRUE SETDATABASEDIR=%HOMEDRIVE%\LocalDir
Notes
Related Articles
Getting an error when trying to update rule via RulesPerFI load sheet 6Number of Views 'Request could not be handled' and 'No enum constant com.aveksa.server.core.DataCollector.Status.InActive' errors exportin… 162Number of Views Token import fails on desktop using CT-KIP via Group policy 169Number of Views Exports and Imports Tokens and Users Between Deployments 19Number of Views Enable SSH using the command line on RSA Authentication Manager 8.1 up to 8.3 1.15KNumber of Views
Don't see what you're looking for?