Authentication Manager
Customers report that their scanning software generated a report suggesting that Authentication Manager is showing one or more OpenSSL vulnerabilities.
This article provides information on Authentication Manager and OpenSSL.
SUSE Enterprise Linux (SLES) uses OpenSSL to handle security protocols and encryption across applications and services. OpenSSL is a critical component for ensuring secure data transfer, authentication, and encryption across applications in SLES. It is included and installed by default as part of the operating system’s core packages/base installation. SUSE regularly provides patches and updates for OpenSSL to address vulnerabilities, ensuring compliance with security standards and protecting against emerging threats.
To view OpenSSL versions included with different SLES releases, refer to the SUSE knowledge base here. You can also consult release notes for specific SLES versions in SUSE’s official documentation at https://documentation.suse.com/.
If your scanning tool or report indicates a potential OpenSSL vulnerability in Authentication Manager, you can verify the OpenSSL version and dependencies by following these steps:
- SSH into the server as the rsaadmin user.
- Once logged in, elevate privileges to root by running the command: sudo su -.
- Run zypper info openssl to get the SLES component version information.
- To list all dependencies, use zypper info --requires openssl or rpm -qR openssl.
Note: The output of the openssl version command only provides the publicly declared version of the tool for interface compatibility.
RSA regularly releases updates for SLES and other components. Keeping your system up to date is crucial for security. For further queries, please contact customer support.
Related Articles
Brocade keys are showing up a state of PREACTIVATED and start date being Never 12Number of Views Member of User Groups showing <unavailable> in All Users report 194Number of Views How to set up warnings/notifications about license limit or user limit expiry in RSA Mobile 28Number of Views How to remediate the impact of the POODLE vulnerability on RSA Endpoint 235Number of Views RSA-2026-04: RSA Governance and Lifecycle Security Update for SUSE Linux Enterprise Server Vulnerabilities 73Number of Views
Trending Articles
RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide Unable to login to RSA Authentication Manager Security Console as super admin Authentication Manager Security Console and Operations Console Inaccessible After Certificate Update Authentication Manager How to Retrieve the LDAPS Certificate and Configure an External Identity Source to Use LDAPS Authentication Manager Administration Server with operations console service Fails to Start with "No config.xml Was Found"…