Single sign-on with RSA SecurID Access is failing intermittently
Originally Published: 2017-06-01
Article Number
Applies To
RSA Product/Service Type: Identity Router
Issue
The error following error is displayed when this occurs:
Application appears to be improperly configured. Contact your Administrator for assistance.
Retrying the login attempt eventually works.Cause
Intermittent SSO failures are typically caused when session persistence is not being done by the load balancer. This could be due to a load balancer configuration problem or some other reason.
Resolution
- Check your load balancer configuration to ensure it is set for session persistence, as described in Load Balancer Requirements. If you have a NetScaler load balancer, see Netscaler Load Balancing Configuration for RSA Via Access IDR Cluster.
- Check that your IDRs and the load balancer as well, all have their time synchronized to an NTP server. Depending on the method used by your load balancer for session persistence, a time of day discrepancy between it and the IDRs could hinder it from recognizing existing sessions. See How to check if NTP is working on your RSA SecurID Access Identity Router.
- If session duration is too short, it can also force users to re-authenticate frequently. Check how to Configure Session and Authentication Method Settings to set Session Duration for User Sessions.
Related Articles
Error: 'Sd_ApiInit Error Failed to Connect to the serv DB /path/ace/data/sdserv' 22Number of Views Test Authentication with RSA MFA Agent for macOS (Portuguese) 3Number of Views Requests to Customer Support to Assist with Multi-tenant Installations in RSA Web Threat Detection 24Number of Views 'Synchronize Jurisdiction' operation fails on Registration Manager with errors XrcNOTFOUND and XrcXUDAUNABLE if one of the… 29Number of Views User Session and Single Sign-On 42Number of Views
Trending Articles
Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA Authentication Manager 8.9 Release Notes (January 2026) How to factory reset an RSA Authentication Manager 8.x hardware appliance without a factory reset button from the Operatio… Deploying RSA Authenticator 6.2.2 for Windows Using DISM Artifacts to gather in RSA Identity Governance & Lifecycle
Don't see what you're looking for?