Risk Fabric console repeatedly prompts users for credentials
search cancel

Risk Fabric console repeatedly prompts users for credentials

book

Article ID: 446093

calendar_today

Updated On:

Products

Information Centric Analytics

Issue/Introduction

Users are prompted to enter their credentials when attempting to access the Risk Fabric console. After entering their credentials, no console components load and no error message is returned. Instead, they are again prompted to enter their credentials.

Environment

Release : 6.x

Component : Risk Fabric Console, Portal Privileges

Resolution

Users are only auto-provisioned if they own an ingested asset (that is, computer endpoint or application), have subordinates who do, or belong to a mapped AD group. Otherwise, they are denied access post-authentication, often resulting in repeated prompts or timeouts.

  1. Verify IIS Logs: Check for HTTP 401.2 or 401.3 errors. 401.2 indicates a server configuration/authentication protocol issue, while 401.3 indicates a filesystem ACL issue.
    1. For 401.2 errors, refer to the following knowledgebase (KB) article: Portal access denied for non-administrator portal users
    2. For 401.3 errors, refer to the following KB article: Portal access failure
  2. Check Portal Privileges: Confirm whether the affected accounts are members of an AD group that has been explicitly added to an ICA Portal Group or Role.
  3. Grant Access: Add the account's primary AD group to the appropriate ICA Portal Group within the Risk Fabric console.

The console should load successfully once the user's AD group is mapped to a portal group in ICA.