4.8 Agent for Apache fails to set user properties in the http headers after idle timeout with CERTIFICATE authentication
Originally Published: 2012-03-27
Article Number
Applies To
RSA Access Manager 4.8 Agent for Apache 2.2
RSA Access Manager 4.9.1 Agent for Apache 2.2
Issue
When configured to export RSA Access Manger user properties in the http header the agent sets them correctly during the inital authentication but fails to set them when the user authenticates after an idle timeout.
The Agent log file shows that the users session has become idle.
2012-02-14 11:12:39 -0800 - [1420] - <Security> - Session has idled out
At debug log level the following log file entries are missing from the agent log file during the authentication after an idle timeout. 2012-02-14 11:10:23 -0800 - [1420] - <Debug> - Setting header: email, value: user@rsa.com
2012-02-14 11:10:23 -0800 - [1420] - <Info> - Setting headers for user: user1, auth: 4, webserver: test
Cause
Resolution
This issue has been resolved in hotfix 4.9.1.14 for the RSA Access Manager 4.9.1 Agent for Apache 2.2 on RedHat Linux. The agent now correctly sets user properties in the http headers when the user is authenticated after an idle timeout. Contact RSA Customer Support to request this hotfix or the latest cumulative hotfix for your web server and platform.
Workaround
Related Articles
Mandatory Certificate Upgrade Required by 6th October 2025 for RSA MFA Agent for PAM, RSA MFA Agent for Apache, and Third … 375Number of Views Increase timeout for RSA Authentication Agent for Web for IIS implemented for OWA 161Number of Views Apache 2.x fails to start after configuring the RSA Authentication Agent 8.0 for Web for Apache 113Number of Views Unchallenged Active Directory users fail to authenticate with RSA Authentication Agent for PAM 312Number of Views Access Manager CERTIFICATE authentication fails to re-authenticate after token decryption failed message 92Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device How to Download OTP Token Seed Files from myRSA Microsoft Entra ID External MFA - Relying Party Configuration Using OIDC - RSA Ready Implementation Guide Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide
Don't see what you're looking for?