If you have deployed multiple instances of the RSA Authentication Manager server (SecurID server), you must configure them behind a load balancer for the integration with Workspace ONE Access to work. You must also meet certain requirements for the load balancer.

  • Configure a load balancer to distribute traffic across the RSA Authentication Manager servers.
  • On the load balancer, open the port that is configured as the communication port on the RSA Authentication Manager servers. The default port is 5555.
  • Enable sticky sessions on the load balancer.
  • To establish trust, replace the certificate on the RSA Authentication Manager servers with a certificate that includes the load balancer host name as a Subject Alternative Name (SAN), or with a wildcard certificate.