Using the setpin utility on a replica.
3 years ago
Originally Published: 2002-06-20
Article Number
000054790
Applies To
RSA ACE/Server 5.0.2 (no longer supported as of 8-15-2004)
Sun Solaris
Microsoft Windows 2000
Microsoft Windows NT 4.0
HP-UX
IBM AIX
Issue
Using the setpin utility on a replica.
The setpin utility can be run on a replica
Cause
An error exists whereby the setpin program may be run on a replica. While this is not a security flaw (since someone with ACE/Server administrative privileges would have to run it), using on a replica would cause inconstancies in the database.
Resolution
For full details on using the setpin, see the solution titled How to manually set a token PIN number using RSA ACE/Server Setpin utility.

The setpin program should only be used on the primary ACE/Server; a patch is available on request if customers wish to ensure they are not able to run it on a replica. This functionality has been disabled by patch tst00028343 and has been incorporated into patch 3. Customers should either install patch3 or upgrade to ACE/Server 5.1 to correct this.