Authentication using acetest fails TRANSACTION_ROLLBACK on real time authentication activity monitor for RSA Authentication Agent 8.0.x for Web: Apache Web Server
Originally Published: 2019-11-06
Article Number
Applies To
RSA Product/Service Type: RSA Authentication Agent for Web: Apache
RSA Version/Condition: 8.0.x
Issue
TRANSACTION_ROLLBACK
Cause
Also, the acestatus output showed a Server Active Address: 0.0.0.0154.236 which indicates a corrupt sdconf.rec file.
Resolution
- Connect to Security Console for the primary RSA Authentication Manager server
- Navigate to Access > Authentication Agents > Generate Configuration File and download the AMconfig.zip.
- Extract the sdconf.rec file from the .zip.
- Replace the existing sdconf.rec file on the Apache server with the one extracted above.
- Run the command acestatus and ensure that the correct primary server IP address is displayed.
- From the primary's Security Console, navigate to Access > Authentication Agents > Manage Existing and locate the agent that is having the issue.
- Click the context arrow next to the agent name and choose Delete.
- Open a real time authentication activity monitor (Reports > Real Time Monitors > Authentication Activity Monitor) and press Start Monitor.
- Perform the authentication using acetest. Notice the message on real-time authentication activity monitor and jot down the IP address:
Agent host not found n.n.n.n
- Navigate to navigate to Access > Authentication Agents > Add New.
- Recreate the agent record in the Security Console using the IP address noted in Step 9 above.
- On the Apache web server, edit the sdopts.rec file to add the CLIENT_IP value in the format below. Replace the n.n.n.n value with the IP address in Step 9:
CLIENT_IP=n.n.n.n
- Perform authentication using acetest. Authentication will be successful.
- Restart the Apache web server.
- Perform the authentication on the web page to confirm.
Related Articles
Filter Activity Monitor Events Based on Administrator Scope of Authorization 17Number of Views View A Completed Report 9Number of Views Real Time Rules not seen in Admin UI and-or Mitigator is not running in RSA Web Threat Detection 10Number of Views New PIN Mode and Next Token Mode fail on Cisco VPN 3000 Concentrator with RSA ACE/Server 42Number of Views Real-Time Monitoring Using Activity Monitors 88Number of Views
Trending Articles
Download RSA SecurID Access Cloud User Event audit logs using Cloud Administration REST API CLU Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device RSA Release Notes: Cloud Access Service and Authenticators RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide
Don't see what you're looking for?