Unexpected LDAP authentication failure event monitor message while attempting RSA SecurID Access RADIUS authentication
4 years ago
Originally Published: 2017-06-25
Article Number
000065185
Applies To
RSA Product Set: SecurID Access
RSA Product/Service:  Identity Router
 
Issue
The Administration Console's user event monitor shows a successful LDAP password authentication followed by an unexpected error message during a RADIUS authentication sequence.
 
LDAP password authentication failed - Logon failure: unknown username or invalid password
 
User-added image
Cause
The RADIUS client has been configured for authentication and for authorization, which causes a second unexpected authentication attempt.
Resolution
Ensure that the RADIUS client is configured not to send authorization requests.
Notes
When configuring a Cisco RADIUS client, make sure that the Authorization Server Group is set to None, as shown:
 
User-added image