Troubleshooting guide

28 1: Important RSA Authentication Manager 8.1 Changes
RSA Authentication Manager 6.1 to 8.1 Migration Guide
The Replication Model
The replication model in version 8.1 provides the following benefits:
Data recovery and minimal data loss in the event of a hardware disaster
For more information, see the chapter “Disaster Recovery” in the RSA
Authentication Manager 8.1 Administrator’s Guide.
Administration failover after promoting a replica instance
Authentication failover, allowing authentication to continue while the primary
instance is offline
All changes that occur on a replica instance are copied to the primary instance, which
then copies the changes to all other replica instances in the deployment.
Replication propagates two types of updates to the internal database:
Administrative Updates. You must perform all administrative changes, such as
adding or deleting users, at the primary instance. The primary instance propagates
administrative changes to all replica instances.
Runtime Updates. Runtime changes, such as those resulting from user
authentication, can be initiated at any primary or replica instance. If the runtime
change occurs at a replica instance, the change is first propagated to the primary
instance. The primary instance then propagates the change to all other replica
instances.
Runtime Updates on a Replica Instance
The following table lists the runtime updates that can occur on a replica instance.
Object Change That Is Replicated
User Any change to the users fixed passcode or PIN
Agent The creation of an agent through agent auto-registration
Agent assignment to a contact list
Updating a node secret
Token Any changes that occur as a result of the following activities:
Authentication
Token replacement, including disabling, unassigning and deleting an existing
token, and assigning and enabling a replacement token. The exact changes
that occur depend upon how you configure Authentication Manager to handle
token replacement.
Emergency passcode processing
Distributing offline authentication data to agents
Seed initialization of a software token