Successful SSH login attempts are not logged in /var/log/messages in Authentication Manager prior to 8.4
Originally Published: 2019-11-27
Article Number
Applies To
RSA Product/Service Type: Authentication Manager
RSA Version/Condition: 8.1.x, 8.2.x, 8.3.x
Issue
Cause
Resolution
To enable logging of successful SSH logins apply the following changes:
- Log On to the Appliance Operating System with SSH
- Change to root using the following command:
sudo su -
- Edit the file /etc/pam.d/common-session using the following command:
vim /etc/pam.d/common-session
- Press i to enter Insert mode.
- Add the following line to the end of the file:
session required pam_warn.so
- Press ESC to exit Insert mode.
- Save and exit by typing :wq!
- Repeat steps 1 - 7 on each RSA Authentication Manager instance, whether it is a primary or a replica, to log successful SSH authentication attempts for the instance.
Related Articles
Decision node selecting wrong fulfilment workflow in RSA Governance & Lifecycle 14Number of Views How to make New PIN Mode work correctly when RSA ACE/Agent for Web page is redirected 13Number of Views The WorkDay Collector Configure Extensible Attributes Xpath Value text box does not allow quotes in RSA Identity Governanc… 27Number of Views Offline authentication fails for users with multiple tokens in RSA Authentication Manager 8.2 SP1 143Number of Views RSA Access Manager password policy for automatic user unlock does not work when using an Active Directory user store 38Number of Views
Trending Articles
Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device RSA SecurID software token .sdtid file fails to import into RSA SecurID Software Token 5.0 for Windows RSA Authentication Manager 8.9 Release Notes (January 2026) RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide
Don't see what you're looking for?