RSA Product Set: SecurID
RSA Product/Service Type: Authentication Agent for Web: IIS
RSA Version/Condition: 8.x
O/S Version: Windows Server 2008, R2, 2012, 2012 R2
After generating the node secret using the RSA Authentication Agent for Web: IIS Agent Control Panel with an administrative user account, the following error is displayed when testing authentication from the browser:
"Node secret mismatch"
The IIS service does not have permissions to access the RSA Authentication Agent for Web: IIS directory under C:\Program Files\RSA Security\RSAWebAgent, which has the node secret file.
Ensure that:
- The node secret file is named securid
- The RSA Authentication Agent for Web: IIS installation directory has the user IIS_IUSRS, with at least Read and Execute permissions.
- Confirm that these permissions are properly inherited by the file and subfolders.
- Right click on the folder/file and select Properties then click on the Security tab.
- Click Edit > Add.
6. WebID has SecurID as the App Pool
7.Verification step: Ensure that the SecurID application pool is running under the Local System identity.
Related Articles
How To Test The RSA Authentication Agent for PAM Module 1.27KNumber of Views How to Configure Linux Password Authentication with RSA SecurID Authentication Agent for PAM 1.64KNumber of Views Unexpected error from ACE/Agent API for RSA Authentication Agent for PAM 223Number of Views Managing the configuration files of an RSA Authentication Agent for Windows 1.27KNumber of Views How to Replace the Web Server Certificate for the RSA Identity Governance & Lifecycle Web Console 3.28KNumber of Views
Trending Articles
Authentication Manager Log Messages (23001-23091) RSA Authentication Manager Upgrade Process How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Download RSA SecurID Access Cloud User Event audit logs using Cloud Administration REST API CLU RSA Authentication Manager 8.9 Release Notes (January 2026)