How do you use a SID800 with multiple certificates and Windows credential provider?
Originally Published: 2010-04-06
Article Number
Applies To
RSA SecurID SID800 Authenticator (USB token)
Microsoft Windows 7 Professional
Microsoft Windows 2008 Server
Microsoft Windows Credential Provider
Microsoft certificate-based logon
Issue
Only one certificate on the SID800 is being seen at logon screen
SID800 with two valid certificates from a Windows 2003 CA. When authenticating to a system, only the certificate marked as default in the RSA Control Center is displayed. How do you configure the system to display both certificates for the user to choose from?
Resolution
A Microsoft GPO policy to show all certificates at logon needs to be updated.
http://technet.microsoft.com/en-us/library/ff404287(WS.10).aspx?ppud=4
Update these GPO settings:
Force the reading of all certificates from the smart card
Filter duplicate logon certificates
Or by registry:
You should see two logon tiles, one for each certificate.
Related Articles
How to disable smart card credential provider on Windows 2012? 271Number of Views How to enable logging in to the Cloud Admin Console with the IDR acting as the Third-Party Identity Provider (IdP) 334Number of Views RSA SecurID prompt does not appear when connecting with Remote Desktop Protocol RDP on Windows Server 2012 with RSA Authen… 685Number of Views Maximum number of incorrect login attempts for RSA Authentication Manager Operations Console administrator 195Number of Views Disable offline day downloads yet run offline local Sservice for RSA Authentication Agent 7.2.1 for Windows 690Number of Views
Trending Articles
Download RSA SecurID Access Cloud User Event audit logs using Cloud Administration REST API CLU RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory Authentication Manager Security Console and Operations Console Inaccessible After Certificate Update Authentication Manager How to Retrieve the LDAPS Certificate and Configure an External Identity Source to Use LDAPS
Don't see what you're looking for?