?KMClient: Error getting key from KMS: Error from server: Access Denied?
Originally Published: 2008-12-18
Article Number
Applies To
Microsoft 2003 Server SP1
RSA Key Manager C Client
Issue
The KMS server is returning the following error:
?KMClient: Error getting key from KMS: Error from server: Access Denied?
Running test tool getKey - byKeyClass an the following error was thrown:
Failed to retrieve key after 3 retries
KMClient: Error getting key from KMS: Error from server: Access Denied
GetKey failed: Error code = 4780018
/var/log/httpd/ssl_request_log:
TLSv1 RC4-MD5 CN=Certificate "POST /KMS/rpc/emu HTTP/1.1"
Cause
The cipher is not supported on the Key Manager Server.
To check the list of ciphers check the SSLCipherSuite directive in /etc/httpd/conf.d/ssl.conf on the Key.
Resolution
Validate that the cipher being used is supported. If supported check enableFIPS(by default FIPS is set to true) in the client configuration file. The RC4-MD5 cipher is not FIPS.
Notes
Related Articles
Access denied error when running sync-tokens command in Authentication Manager 8.x 297Number of Views "Access Denied" error when attempting to view detailed information on the RSA Via Lifecycle and Governance Users page 69Number of Views Access denied insufficient privileges error when clicking on entitlement Information icon in RSA Identity Governance and L… 98Number of Views Access denied error while running the RSA Authentication Manager 8.x Administration SDK 96Number of Views Access Denied error without an opportunity to provide login credentials when accessing Key Manager console 29Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide RSA Release Notes for RSA Authentication Manager 8.8 How to download the RSA Authentication Manager Console Root Certificate in DER format
Don't see what you're looking for?