TOTP Server related Error Messages

Table below describes the error codes related to TOTP server.

Error Code

Error Message

Description

Corrective Action

AUT23457

Login failed using auth server <Auth server name>. Reason: <Reason String>

When using TOTP (Time based One-Time Password) server as secondary authentication server, user login may fail. Common reasons are:

Login failure due to incorrect TOTP token.

Login failure because of time difference between Ivanti Policy Secure and user’s device

  1. Make sure user inputs correct TOTP token.
  2. Configure same time on Ivanti Policy Secure and user’s device.  

USR31401

TOTP User <Username> account from Realm <Realm name> has been locked due to maximum number of invalid attempts.

TOTP user account can get locked if TOTP authentication fails consecutively for “Number of attempts allowed” configured on TOTP Auth Server page.

Follow below steps to avoid TOTP user account lock-out.

  1. Make sure user inputs correct TOTP token.
  2. Configure same time on Ivanti Policy Secure and user’s device
  3. If TOTP user account is locked due to maximum number of invalid attempts, it can be unlocked from Ivanti Policy Secure Admin UI under TOTP Auth Server->Users’s tab.

AUT31742

REST access failed to remote <TOTP server URL>: <Failure reason >

During TOTP authentication, REST access to remote TOTP server failed.

This could happen because of configuration issue while using remote TOTP server for authentication. Check below configurations

  • On remote TOTP server, properly configure REST API credentials and Realm.
  • On local TOTP server, enable an option to “Accept TOTP authentication from remote Ivanti Secure devices”.
  • On local TOTP server, enable REST API access for admin user whose details are configured in remote TOTP server.