The RSA Authentication Manager real-time authentication activity monitor reports the following error after using the Run as different user option on Microsoft Windows 2012 R2 where RSA Authentication Agent 7.2.1 for Windows is installed and configured:
Node secret mismatch: cleared on agent but not on server
The permissions on the node secret file named securid are not available to the user whose credentials have been entered when running the Run as different user feature on WIndows (Ctrl + Shift + right-click executable).
RSA Authentication Agent for Windows 7.2.1 for Windows stores its configuration files in the C:\Program Files\Common Files\RSA Shared\Auth Data folder by default.
The Windows administrator could deactivate User Access Control (UAC) to resolve access issues to the node secret file and Microsoft has provided information on this. Please visit Windows Server 2012: Deactivating UAC for more information on deactivating the UAC.
Where UAC is required, the administrator would change the permissions on the node secret file to use read access for authenticated users.
Here is an example of the securid Properties - Security tab where the RSA Authentication Agent 7.2.1 for Windows was installed on a standalone Microsoft Windows 2012 R2 server.