CAC Card login and authentication fails with newly issued card
search cancel

CAC Card login and authentication fails with newly issued card

book

Article ID: 378546

calendar_today

Updated On:

Products

Security Analytics

Issue/Introduction

A user may attempt to login to Security Analytics after being issued a new CAC card.  This may have a new CA attached to it. The symptoms are that the user is never prompted to select their card in the grey popup box and the authentication fails without details.

The new CA will need to be added to the system.

Cause

The new CA is missing from the client certificate bundle.

Resolution


The Web UI does not clearly state why the authentication fails and the configuration menu does not make the fix very intuitive.

This was resolved by adding the new CA to /etc/pki/tls/certs/client-ca-bundle.crt.