---
title: RSA SecurID Integration Kit Changelog
description: The following is the change history for the RSA SecurID Integration Kit.
component: rsa
page_id: rsa:rsa_securid_integration_kit:pf_rsa_securid_ik_changelog
canonical_url: https://docs.pingidentity.com/integrations/rsa/rsa_securid_integration_kit/pf_rsa_securid_ik_changelog.html
revdate: February 27, 2026
section_ids:
  version-4-1-1: Version 4.1.1
  version-4-1: Version 4.1
  version-4-0-1: Version 4.0.1
  version-4-0: Version 4.0
  version-3-2-2: Version 3.2.2
  version-3-2-1: Version 3.2.1
  version-3-2: Version 3.2
  version-3-1-1: Version 3.1.1
  version-3-1: Version 3.1
  version-3-0-1: Version 3.0.1
  version-3-0: Version 3.0
  version-2-1: Version 2.1
  version-2-0: Version 2.0
  version-1-2-2: Version 1.2.2
  version-1-2-1: Version 1.2.1
  version-1-2: Version 1.2
  version-1-1: Version 1.1
  version-1-0: Version 1.0
---

# RSA SecurID Integration Kit Changelog

The following is the change history for the RSA SecurID Integration Kit.

## Version 4.1.1

Released in December 2024.

* Fixed an issue that caused the `Approve` method's push notification template to render twice.

* Fixed an issue that caused the RSA SecurID IdP Adapter to fail when using PingFederate in BC FIPS mode.

## Version 4.1

Released in April 2024.

* Added support for the `Approve` method's `Selection` mode. Support for the `Approve` method was introduced in RSA SecurID Integration Kit 4.0.

  |   |                                                                                                                                                                                                                                                         |
  | - | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
  |   | To use `Selection` mode, you must have RSA Authentication Manager 8.7 SP2 or later, integrated with the RSA Cloud Authentication Service (CAS). You must enable the `Selection` feature in RSA CAS, and use version 4.3 or later of the RSA mobile app. |

* Added the ability to define a template file prefix and customize the pages that the adapter displays per adapter instance.

  |   |                                                                                                                                                                                                                                |
  | - | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |
  |   | If you modify a template file, rename the template file to give it a new prefix. Make sure to enter the new prefix in the **[HTML Template Prefix](pf_rsa_securid_ik_rsa_securid_idp_adapter_settings_reference.html)** field. |

## Version 4.0.1

Released in February 2024.

* Fixed an issue that caused an unavailable authentication method to display incorrectly.

* Deprecated the `challengeMethodIds` field in the PingFederate Authentication API. Learn more in the [`SECURID_CAS_CHALLENGE_METHOD_REQUIRED` state](pf_rsa_securid_ik_authentication_api_support.html#challenge-method-required).

## Version 4.0

Released in October 2023.

* Added support for the RSA Authentication Manager integrated with the RSA Cloud Authentication Service (CAS). The adapter supports the `SecurID`, `Token`, and `Approve` methods.

* Deprecated the `passcode` field in the PingFederate Authentication API. Learn more in the [`checkCredential` action](pf_rsa_securid_ik_authentication_api_support.html#check-credential).

## Version 3.2.2

Released in December 2022.

* Updated the security dependencies used by the adapter to the latest available.

## Version 3.2.1

Released in September 2021.

* Fixed two issues that caused certain authentication attempts to be logged incorrectly in `audit.log` and `server.log`.

## Version 3.2

Released in June 2021.

* Added support for the [PingFederate authentication API](https://docs.pingidentity.com/pingfederate/latest/developers_reference_guide/pf_authentication_api.html).

* Added support for the [JavaScript Widget for the PingFederate Authentication API](https://github.com/pingidentity/pf-authn-js-widget).

* Improved the template files to use the PingFederate localization framework. If you have existing customizations, you need to manually modify the new `rsa-securid-messages.properties` file. You can find help customizing messages in [Localizing messages for end users](https://docs.pingidentity.com/pingfederate/latest/administrators_reference_guide/pf_local_message_end_users.html) in the PingFederate documentation.

* Fixed an issue that, after upgrading the adapter, caused an error when using the admin API to bulk import an earlier version of the adapter.

* Fixed an issue where the previous adapter wouldn't fail over to its replicas when the virtual machine was running but RSA services weren't.

* Fixed a user impersonation vulnerability. You can find more information in the [SECADV026](https://support.pingidentity.com/s/article/SECADV026-RSA-SecureID-Integration-Kit-User-Impersonation) security bulletin.

## Version 3.1.1

Released in March 2021.

* Fixed an issue that caused unexpected behavior when `LockoutPeriod` was set to `0` in the account lockout settings file.

* Improved the description for the **Challenge Retries** setting in the adapter configuration.

## Version 3.1

Released in November 2020.

* Added the ability to customize the ciphers used in outbound HTTP requests to RSA SecurID.

* Improved error handling for cases where the user leaves the username or passcode field blank.

* Fixed an issue that could cause the adapter to cancel some sign-on attempts.

## Version 3.0.1

Released in October 2019.

* Fixed a serialization issue that occurred when PingFederate was used in a cluster.

## Version 3.0

Released in August 2019.

* Added support for RSA Authentication Manager 8.4.

* Added support for Java 11 by updating the adapter to use the RSA SecurID Authentication API.

* Added the ability to override the user ID attribute that is sent to the authentication API without affecting the ID shown to the user.

* Added the ability to configure failover servers for the primary RSA Authentication API endpoint.

* Added proxy connection override settings.

* Added connection read and timeout settings.

* Improved templates to support multi-factor authentication and CSRF protection.

* Improved template usability and error messages.

## Version 2.1

Released in June 2018.

* Added support for RSA Authentication Manager 8.3.

* Improved variable names in the template pages.

* Added new variables available to the template pages.

* Added configuration field to set the log level of the RSA Authentication Agent SDK.

* Added validation for user-generated PINs in the adapter and template.

## Version 2.0

Released in May 2017.

* Added support for RSA Authentication Manager 8.2.

* Removed support for versions 6.x and 7.x of RSA Authentication Manager.

* Updated the RSA SecurID IdP Adapter to use RSA Authentication Agent SDK 8.6 for Java.

## Version 1.2.2

Released in January 2017.

* Fixed an issue with configuring RSA in a clustered Windows environment.

## Version 1.2.1

Released in December 2015.

* Security fixes.

* Fixed serialization issue when token is in new PIN mode.

## Version 1.2

Released in September 2015.

* Qualified for RSA Authentication Manager 7.1 SP4.

* Updated RSA SecurID IdP Adapter for use as a second authentication factor.

* Added session state management.

## Version 1.1

Released in November 2013.

* RSA Authentication Agent API 8.1 SP2.

## Version 1.0

Released in March 2010.

* Initial Release.
