RSA Product/Service Type: Application Portal
When using Microsoft Integrated Windows Authentication (IWA) as an Identity Provider, the IWA server is typically only accessible by users on an enterprise's internal network. If IWA is configured to be used automatically this can prevent external users from being able to access the application portal.
Restricting Access to Automated SSO Agent IdPs Using Authentication Source Access Rules can be used to force external users to the portal login page.
However, the IWA icon will still be displayed on the portal which may cause confusion for end users.
This is functioning as designed for the default application portal. Possible workarounds include:
- Sending an end-user communication explaining that external users must log in with username/password.
- Changing the IWA icon (Users > Identity Providers > Edit > Portal Display) to something less visible or that somehow conveys to the end user not to use this option.
- Replacing the default portal with a custom portal as described in the RSA ID Plus IDR SSO Agent Custom Web Portal Developer's Guide and the article on how to Configure a Custom Portal Page for Web Applications.
RSA SecurID Access product improvement suggestions can be made by RSA customers on the RSA Ideas for the RSA SecurID Suite page in RSA Link.
Related Articles
How users can generate a temporary emergency access tokencode from RSA Authentication Manager 8.x Self-Service Console 575Number of Views How to verify that RSA Authentication Agent for Windows can perform challenge user lookups across different Active Directo… 476Number of Views Can I change the email associated with my RSA Community account if my company changes its name or is acquired? 160Number of Views Running script to determine if hardware appliance can successfully upgrade to Authentication Manager 8.7 SP1 460Number of Views Users cannot authenticiate to the RSA SecurID Access Portal or protected applications using Microsoft Integrated Windows A… 195Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device How to replace the RSA Authentication Manager self signed console certificate with a signed certificate from Microsoft Act… RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide How to Request Access to the RSA Authentication Manager AMI for AWS via RSA Support