4.8 Agent for Apache fails to set user properties in the http headers after idle timeout with CERTIFICATE authentication
Originally Published: 2012-03-27
Article Number
Applies To
RSA Access Manager 4.8 Agent for Apache 2.2
RSA Access Manager 4.9.1 Agent for Apache 2.2
Issue
When configured to export RSA Access Manger user properties in the http header the agent sets them correctly during the inital authentication but fails to set them when the user authenticates after an idle timeout.
The Agent log file shows that the users session has become idle.
2012-02-14 11:12:39 -0800 - [1420] - <Security> - Session has idled out
At debug log level the following log file entries are missing from the agent log file during the authentication after an idle timeout. 2012-02-14 11:10:23 -0800 - [1420] - <Debug> - Setting header: email, value: user@rsa.com
2012-02-14 11:10:23 -0800 - [1420] - <Info> - Setting headers for user: user1, auth: 4, webserver: test
Cause
Resolution
This issue has been resolved in hotfix 4.9.1.14 for the RSA Access Manager 4.9.1 Agent for Apache 2.2 on RedHat Linux. The agent now correctly sets user properties in the http headers when the user is authenticated after an idle timeout. Contact RSA Customer Support to request this hotfix or the latest cumulative hotfix for your web server and platform.
Workaround
Related Articles
Mandatory Certificate Upgrade Required by 6th October 2025 for RSA MFA Agent for PAM, RSA MFA Agent for Apache, and Third … 363Number of Views Increase timeout for RSA Authentication Agent for Web for IIS implemented for OWA 161Number of Views Apache 2.x fails to start after configuring the RSA Authentication Agent 8.0 for Web for Apache 111Number of Views Unchallenged Active Directory users fail to authenticate with RSA Authentication Agent for PAM 307Number of Views Access Manager CERTIFICATE authentication fails to re-authenticate after token decryption failed message 92Number of Views
Trending Articles
RSA Authentication Manager 8.9 Setup and Configuration Guide How to 'Trust' the RSA Authentication Manager Security Console Self-Signed Root CA certificate and prevent Cert warnings. RSA Authentication Manager 8.9 Release Notes (January 2026) Configure RSA Authentication Manager as a Secure Proxy Server for Cloud Access Service LDAP password authentication failed - Logon failure: unknown username or invalid password when attempting RADIUS authentic…
Don't see what you're looking for?