Enabled and Disabled Tokens
An enabled token can be used for authentication. Tokens that are not assigned to users are disabled. Tokens are automatically enabled when they are assigned by an administrator. You can enable and disable tokens only in security domains that are included in your administrative scope.
Tokencode-only software tokens that are provisioned through Self-Service are disabled by default. Users can enable these tokens through the Self-Service Console.
A disabled token does not lock a user’s account. Lockout applies to a user’s account, not to a user’s token. Disabling a token does not remove the user’s account from the deployment. You can view disabled tokens using the Security Console.
You should disable an assigned token in the following situations:
Before a hardware token is mailed to a user. Re-enable the token after you know that it has been successfully delivered to the user to whom it has been assigned and the user is ready to use it.
If you know that a user does not need to authenticate for an extended period of time. For example, you may want to disable a token before a user takes a short-term leave or an extended vacation. After you disable the token, that user cannot authenticate with that token until it is re-enabled.
Enable or Disable a Token
Before a user can authenticate with an assigned token, you must enable the token. A disabled token cannot be used to authenticate.
Procedure
In the Security Console, click Authentication > SecurID Tokens > Manage Existing.
Click the Assigned or Unassigned tab to view the list of tokens that you want to enable or disable.
Select the checkbox next to the tokens that you want to enable or disable.
From the Action menu, click Enable or Disable.
Click Go.
Related Articles
RSA SecurID software token is distributed in a disabled state when requested with modified software token profiles via the… 545Number of Views How can I re-enable my RSA Community and myRSA account if it becomes disabled? 170Number of Views IMG: How to setup a request form that allows users to lock/unlock and enable/disable user accounts from IMG 236Number of Views RSA Error "Offline Authentication is not enabled or not available" in MFA agent 668Number of Views Unable to re-use a deleted account name if the account was previously disabled in RSA Identity Governance & Lifecycle 443Number of Views
Trending Articles
Change Requests stuck in the AFX Fulfillment Handler Workflow Node and Workflows Stalled in RSA Identity Governance & Life… Collector Stuck in Data Collection Phase with "Sent Request to Agent Hosting the Collector" RSA Authentication Manager 8.9 Patches and Hotfixes Readme How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Workflows stuck in AFX fulfillment and/or Provisioning nodes in RSA Identity Governance & Lifecycle