Updating RSA SecurID Access SSL portal certificate can break Authenticate App tokencode - Authentication Manager integration
Originally Published: 2017-07-24
Article Number
Applies To
Issue
When attempting authentication, the Authentication Manager Authentication Activity Monitor shows:
RSA SecurID Access Authenticator Tokencode verification failed for user "<username>" Unexpected return code or unexpected exception occurred.
Cause
The Authenticate App<->Authentication Manager agent integration (both trusted realm for SecurID Access-only users and the Authenticate App integration for Authentication Manager users) depends on the Authentication Manager trusting the IDR root certificate. Changing the IDR root certificate will break either type of existing IDR<->Authentication Manager trust relationship.
Resolution
- If using a trusted realm for Authenticate App integration (SecurID Access-only users), delete the existing trusted realm in the Security Console and then re-run the manage-securid-access-trusts command line utility per Add an RSA SecurID Access Deployment to RSA Authentication Manager as a Trusted Realm.
- If Authentication Manager users are using the Authenticate App to authenticate through SecurID Agents then load the IDR's new root certificate per step 6 of Configure RSA Authentication Manager to Handle Authenticate Tokencodes.
Notes
Related Articles
Java Update broke RSA Federated Identity Manager installation on Tomcat 21Number of Views Join cluster to a group fails with no apparent errors when cluster name matches hostname or a part of FQDN 19Number of Views How to enable SSL debug when using the WebSphere application server with RSA Identity Governance & Lifecycle 100Number of Views Problem importing certificates onto RSA SID800 Authenticators using RSA Authenticator Utility (RAU) 34Number of Views DB2 Access Fulfillment Express (AFX) connector template has limited connector capabilities in RSA Identity Governance & Li… 54Number of Views
Trending Articles
RSA Authentication Manager 8.9 Release Notes (January 2026) RSA Release Notes for RSA Authentication Manager 8.8 RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide "HTTP response error! Response code=401" when starting RSA Identity Governance and Lifecycle Access Fulfillment Express (A… RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide
Don't see what you're looking for?