Disable Double MFA Authentication Attempts During RDP and Machine Login
Article Number
Applies To
RSA Product Set: SecurID
RSA Product/Service Type: MFA Agent
RSA Version/Condition: 2.3.x
Issue
The customer wants to allow only one MFA Agent authentication attempt when logging in to the machine and avoid triggering an MFA Agent prompt during RDP sessions.
Resolution
Enable Policy for Remote Desktop Applications Without RSA Authentication
-
Edit the GPO located under:
Computer Configuration → Administrative Templates → RSA Desktop → Local Authentication Settings -
Enable the policy:
Specify remote desktop applications that do not require RSA authentication -
Add the following applications to Fully-Qualified Application Path(s):
C:\Windows\System32\mstsc.exe,C:\Windows\System32\CredentialUIBroker.exe,C:\Program Files (x86)\Microsoft\Remote Desktop Connection Manager\RDCMan.exe
Related Articles
Set User Expectations for Device Registration and Authentication 208Number of Views Test Web Services Description Language (WSDL) connectivity for RSA Authentication Manager 8.x 225Number of Views 'Host name configured is not listed in subject alternative names of certificate' and 'LDAP_CERT_HOSTNAME_MISMATCH_MSG_SHOR… 363Number of Views How to troubleshoot NTP error Critical Event Notification - Not able to sync time error with RSA Authentication Manager 8.… 1.83KNumber of Views Migrating an RSA Authentication Manager deployment from one environment to another 457Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device How to download the RSA Authentication Manager Console Root Certificate in DER format Access Policies RSA SecurID software token .sdtid file fails to import into RSA SecurID Software Token 5.0 for Windows RSA Authentication Manager Patch Updates
Don't see what you're looking for?