Agent Credentials
Agent credentials are used by authentication agents to authenticate with the RSA SecurID Authentication API. After installing authentication agents that use the REST protocol, you must configure the Agent Credentials.
When you enable the RSA SecurID Authentication API, an agent credential is automatically generated if one is not already present in the system. These credentials include an Access ID and Access Key, which authentication agents use to interact with the RSA Authentication API. The agents include these credentials in the HTTP header for authentication requests.
For Hash-based Message Authentication Code(HMAC) mode, the agent should send the hash of the request body instead of the Access Key in the Authorization header. The Access ID is set as X-Access-ID in the Authorization header of the request. HMAC mode enables the agent to create authentication requests by including both the hash of the request body and an HMAC signature.
Add an Agent Credential
Agent credentials are added and managed by the Super Admin.
Agent Credential Attributes
Attribute | Description |
|---|---|
| Access ID | The Access ID is system-generated. By default, the Add New page displays <Will be generated by system>. When you click Save or Save & Add Another, the system generates the Access ID. |
| Access Key | The Access Key is system-generated. By default, the Add New page displays <Will be generated by system>. When you click Save or Save & Add Another, the system generates the Access Key. |
| Deprecated | By default, this option is unchecked and cannot be edited. If enabled, the agent credential will be marked as deprecated in the Authentication Manager authentication activity log. |
| Notes | Enter a note for this agent credential. The maximum character limit is 1020. |
Before you begin
You must be a Super Admin.
Procedure
In the Security Console, go to Access > Authentication Agents > Agent Credentials > Add New.
Enter a note for the agent credential (up to 1020 characters).
Click Save to create the new agent credential.
Edit an Agent Credential
You can edit information about agent credentials, such as the Deprecated status and Notes.
Attribute | Description |
|---|---|
| Access ID | The Access ID is system-generated and is not editable. |
| Access Key | The Access Key is system-generated and is not editable. |
| Deprecated | Displays the existing status of the Deprecated field. When enabled, this agent credential will be marked as deprecated in the Authentication Manager authentication activity log. |
| Notes | Displays the existing notes for this agent credential. You can enter up to a maximum of 1020 characters. |
Procedure
In the Security Console, go to Access > Authentication Agents > Agent Credentials > Manage Existing.
Select the agent credential that you want to edit.
From the context menu, click Edit.
Update the Deprecated status or Notes as needed.
Click Save.
Delete an Agent Credential
Deleting an agent credential removes it from the system, and it can no longer be used for authentication requests to the Authentication Manager.
Procedure
In the Security Console, go to Access > Authentication Agents > Agent Credentials > Manage Existing.
Select the agent credential that you want to delete.
From the context menu, click Delete.
Click OK to confirm and remove the agent credential.
Manage Existing Agent Credentials
View and manage all the agent credentials that are currently configured in the system.
Procedure
In the Security Console, go to Access > Authentication Agents > Agent Credentials > Manage Existing.
Related Tasks
Related Articles
Manually applying the definition files to ClamAV for RSA Authentication Manager 8.x 643Number of Views Troubleshooting an update issue with an RSA Authentication Manager 8.x Web Tier deployment 363Number of Views Fortigate SSL VPN Timeout Issue with Approve/Biometrics 143Number of Views How to increase chances for successfully implementing Risk Based Authentication on the RSA Authentication Agent for Citrix… 326Number of Views Troubleshooting AFX Server issues in RSA Identity Governance & Lifecycle 575Number of Views
Trending Articles
Change Requests stuck in the AFX Fulfillment Handler Workflow Node and Workflows Stalled in RSA Identity Governance & Life… Collector Stuck in Data Collection Phase with "Sent Request to Agent Hosting the Collector" RSA Authentication Manager 8.9 Patches and Hotfixes Readme How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Workflows stuck in AFX fulfillment and/or Provisioning nodes in RSA Identity Governance & Lifecycle