Microsoft Windows Server 2003 SP2
Microsoft NTBackup
EMC NetWorker
Volume Snapshot Service (VSS)
FSM policy setup so that backup could read files unencrypted during backup, only reading files encrypted
Having issues with the backup software on some of the Adapters where it is backing up the encrypted form of the file instead of the decrypted version.
Files encrypted using RSA FSM will not be backed up as decrypted despite the granted permissions (using either NetWorker or NTBackup)
Turning off VSS resolves the problem.
In NetWorker use VSS:*=off
In NTBackup use the following command line options:
ntbackup backup <path_to_folder_to_backup> /j "Test Backup" /snap:off /m normal /f <path_to_target_file>
For example to backup "D:\My Folder" directory and save it in C:\temp folder in a file called vssoffbackup.bkf run the following command:
ntbackup backup "D:\My Folder" /j "Test Backup" /snap:off /m normal /f C:\temp\vssoffbackup.bkf
Also reference solution Would like to allow access to a "backup" account that can read the encrypted files (not decrypt them) and archive that to tape. for information on configuring FSM policy for backup applications.
Related Articles
RSA Announces Critical Security Updates for RSA ID Plus Components - RSA Authentication Manager and RSA Identity Router 854Number of Views RSA-2026-02: RSA Announces Critical Security Updates - RSA Authentication Manager 153Number of Views RSA Release Notes for RSA Authentication Manager 8.8 1.96KNumber of Views RSA Authentication Manager 8.9 Release Notes (January 2026) 720Number of Views RSA Authentication Manager 8.8 upgrade fails with ERROR: auth_manager.rest_service.old_access_key is not found 2.21KNumber of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Downloading RSA Authentication Manager license files or RSA Software token seed records RSA Authentication Manager Upgrade Process How to test RSA Identity Router (IDR) Secure Connector connectivity to the RSA ID Plus Cloud Access Service RSA SecurID Access Identity Router can no longer authenticate to RSA Authentication Manager after upgrade