Why use RSA SecurID Access AD FS SAML integration rather than the RSA Authentication Agent for Microsoft AD FS
Originally Published: 2018-11-06
Article Number
Applies To
Issue
- RSA Authentication Agent for Active Directory Federation Services (AD FS)
- SAML integration with the RSA Cloud Authentication Service
Resolution
However, there are some situations where SAML integration may be the better choice:
- Require SecurID as the primary authentication method and AD FS is running on Windows Server 2012 or 2016 (the agent can only provide additional/secondary authentication unless AD FS is running on Windows Server 2019 or later).
- Require FIDO token authentication (FIDO is not supported by the agent).
- Prefer not to install and maintain additional software on your AD FS server(s). The agent must be installed on each AD FS server in your server farm.
Related Articles
Troubleshooting RSA MFA Agent for Microsoft AD FS 58Number of Views Authentication context not added / Context validation failed errors authenticating with RSA Authentication MFA Agent for A… 178Number of Views How to selectively challenge users and applications with RSA AD FS agent 1.x 130Number of Views The RSA Identity Governance & Lifecycle AD Collector and AD ADC authentication source fail to establish a TLS 1.2 SSL conn… 629Number of Views RSA MFA Agent 3.0 for Microsoft AD FS Administrator's Guide 385Number of Views
Trending Articles
Downloading RSA Authentication Manager license files or RSA Software token seed records RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory Mandatory Certificate Upgrade Required by 6th October 2025 for RSA MFA Agent for PAM, RSA MFA Agent for Apache, and Third … RSA Authentication Manager 8.9 Release Notes (January 2026)
Don't see what you're looking for?