After installing the RSA MFA Agent on a windows servers, we ran a port scan and found TCP-400 open, the process name is work-sol.

Has anyone seen this before ? is that normal expected behaivour after the installation is completed ?

  • johnneset (Customer)

    We've been running MFA Agent since the start & most of the deployments are v2.5 in which I'm not finding any scenarios of what you're stating.

    Only thing that gives a hint of Workstation Solutions port 400 is in some Western Michigan University doc.

  • AndreLocker (Customer)

    Sorry misspoke, i'm actually seeing the port open on the RSA Virtual appliance, not the windows servers.

    • johnneset (Customer)

      Can confirm that scenario that AM servers are listening on port 400.

      Expecting Erica/staff will tell you what I'm thinking which is to submit this scenario as a support ticket with your findings & possible timeline vs community.