These errors appears during browser login to Zaperon when user authentication fails due to MFA validation, certificate errors, location verification, or policy misconfiguration.
Users typically encounter these errors on the Zaperon login page or MFA verification screen during browser access.
1. Certificate not found / Incorrect Certificate selected.
2. MFA code mismatch.
3. Agentless User with Agent-Based Policy.
This error usually occurs due to one or more of the following reasons:
Wrong client certificate selected during browser authentication.
Incorrect or expired MFA code entered during login.
Location mismatch detected on the MFA mobile app proximity screen.
Required certificate missing or deleted from the device.
Agentless user assigned to a group with agent-based ZTA policy applied.
Browser login attempted without an active Zaperon Client session.
1. Check basic internet connectivity.
Ensure the device has an active internet connection.
Open any public website (for example, google.com).
Switch between Wi-Fi and wired network if available.
Disable VPNs or local proxies temporarily (if configured).
Once confirmed, click Retry Connection in the Zaperon Client App.
2. Reboot the device.
Restart the device. Will automatically Launch the Zaperon Client App at startup and after 1–2 minutes restart Zaperon client background services.
3. Check Client app Logged in or not.
if not, Sign in to the Zaperon Desktop Client first.
Retry browser login after the client establishes a secure session.
4. Verify certificate availability
Confirm the correct Zaperon certificate is present on the device.
Select the correct certificate when prompted by the browser.
Reinstall or regenerate the certificate if deleted.
5. In case you are getting MFA incorrect errors.
Verify MFA code:
Enter the latest code generated in the Zaperon Verify mobile app.
Ensure the device time is synced automatically.
Retry login with a new code.
Check proximity status:
Ensure the mobile device is near the login device.
Enable Bluetooth, location services, and internet on the MFA (Zaperon Verify app) mobile device.
Retry MFA verification.
6. In case you are getting agent-based policy errors for an agentless user.
Verify the user’s access type in the Zaperon Admin Dashboard and confirm whether the user is configured as agentless or agent-based.
Ensure that only agentless-compatible ZTA policies are applied to the user group containing the agentless user, or remove any agent-based policies assigned to that group.