When switching to root the RSA Authentication Agent 8.1.3 for PAM is not prompting for a passcode
Originally Published: 2023-03-27
Article Number
Applies To
RSA Product/Service Type: Authentication Agent for PAM
Issue
PAM unable to dlopen(/usr/lib64/security/pam_securid.so): /usr/lib64/security/pam_securid.so: cannot open shared object file:operation not permitted
PAM adding faulty module: /usr/lib64/security/pam_securid.so
PAM adding faulty module: /usr/lib64/security/pam_securid.so
Cause
Resolution
systemctl stop fapolicyd.service
Workaround
If fapolicyd is a requirement, you must add the RSA libraries to fapolicyd’s trust database on RHEL by running the following commands:
fapolicyd --file add /usr/lib64/security/pam_securid.so --trust-file pam-securid
fapolicyd --file add /var/ace/lib/64bit/libpamrest.so --trust-file pam-securid
fapolicyd --file add /var/ace/lib/64bit/liblog4cxx.so.10 --trust-file pam-securid
fapolicyd-cli --update
systemctl restart fapolicyd
fapolicyd --file add /var/ace/lib/64bit/libpamrest.so --trust-file pam-securid
fapolicyd --file add /var/ace/lib/64bit/liblog4cxx.so.10 --trust-file pam-securid
fapolicyd-cli --update
systemctl restart fapolicyd
Related Articles
RSA ACE/Agent 5.6 not prompting for Windows login during remote authentications 24Number of Views RSA MFA Agent 3.x AD FS for Windows Not Prompting for MFA on Test Page 20Number of Views RSA SecurID Authenticator 6.1.1 for Windows Administrator's Guide 45Number of Views RSA SecurID Authenticator 6.1.2 for Windows Administrator's Guide 45Number of Views Error on migrating to 7.1.1: IO Error: Connection reset by peer 60Number of Views
Trending Articles
RSA Authentication Manager 8.9 Patches and Hotfixes Readme How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device RSA Authentication Manager 8.9 Setup and Configuration Guide Using Vault instead of cleartext password in WildFly configuration file in RSA Identity Governance & Lifecycle Authentication Manager Security Console and Operations Console Inaccessible After Certificate Update
Don't see what you're looking for?