cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1272
Views
5
Helpful
1
Replies

Cisco Secure ACS & RSA SecurID server

jackson.ku
Level 3
Level 3

Hi,

My Cisco Secure ACS use RSA SecurID server as external database. My RSA SecurID server got a "authentication attack" message during Cisco Secure ACS server sent the authentication request to RSA SecurID server, I have asked RSA tech support, the reason for this error message in RSA SecurID server is received too many authentication request from Cisco Secure ACS server.

Can we modify the timeout or retry value for Cisco Secure ACS server when it send authentication request to RSA SecurID server?

Best Regards,

1 Reply 1

gfullage
Cisco Employee
Cisco Employee

If the problem is that the RSA server is slow to respond and the ACS server is sending out multiple tries for the same authentication request, then you can increase the retry time on the ACS server. You need to do this via the registry, the key is as follows:

HKLM\Software\Cisco\CiscoAAAv3.x\Authenticators\Libraries\10

Add a Key called Timeout under here, the value is in milliseconds, so 10000 would be 10 seconds before it retries.