- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
get pin for first time use of rsa token
how do I get a PIN when using an RSA securid token for the first time?
I have correctly entered my Company username and LAN password with the passcode from the RSA token (without a PIN because I don't have one yet). It returns the message "The credentials you typed are incorrect".
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Tim,
Are you using a hardware or software token to authenticate? Through what product are you authenticating, an RSA agent or some third party product like Citrix, Cisco, etc.?
When you authenticate for the first time and don't have a PIN, just enter the digits you see on your token into the interface. If you have a software token and the tokencode is not displaying, enter four zeroes (0000) and press the Play arrow.
If your tokens is configured to need a user created PIN, you should get a prompt to create a PIN. If your admins set up the option for system generated PINs, it should provide that PIN to you. The third option is to have a PINless token (the least secure option), where you only enter the tokencode to authenticate.
RSA purposely keeps the message an end users sees about a failed authentication as vague as possible to prevent someone from gaining access to the system. Try this:
- Launch the Security Console and go to Reporting > Reports > Add New.
- Look for the Authentication Activity report.
- Click on the context arrow next to the report name and choose Select.
- On the next page, define the security domain or leave SystemDomain.
- Leave all output columns selected.
- Define the date range from when you ran your authentication tests.
- Define your security domain, identity source, etc.
- Set successful, failed and warned actions to Yes.
- If you know there will be a lot of entries in the report, you can scope down to show authentications based on the specific the agent and/or token serial number.
- When done, click Save.
- On the next page, click the context arrow next to your report and choose Run Report Job Now.
- Click Run Report.
- Click Refresh List.
- When the report is no longer listed on the In Progress tab, click Completed,
- On the next page, click the context arrow next to the report and choose to view the report in your browser or to download the report in csv, html or xml format. I like downloading to csv since you can open it in Excel and sort the data.
- Note the failure reason is in the Result Key and Result columns. The information listed there will give us next steps in how to resolve the authentication failure.
Regards,
Erica
