How to Restrict users from using certain PIN's that are less secure
Originally Published: 2018-08-01
Last Modified: 2023-09-22
Article Number
Applies To
RSA Product/Service Type: Authentication Manager
RSA Version/Condition: 8.X
Issue
Tasks
Create a password dictionary. Create a text file and enter each dictionary entry on a separate line. When you save the file, verify that the file is not larger than 20 MB.
Example
1111 2222 3333 1234 5678
Resolution
Section 1:
- In the Security Console, click Setup > System Settings.
- Under Authentication Settings, click Password Dictionary.
- Under Password Dictionary, make sure that the status is No password dictionary found. If the status is Password dictionary imported, you must first delete the existing password dictionary before adding a new one. For instructions, see Delete a Password Dictionary.
- In the Password Dictionary Name list, click Import Password Dictionary File.
- Under Password Dictionary Basics, enter the name of the password dictionary that you are importing in the Password Dictionary Name field.
- Under Password Dictionary File, browse to the password dictionary file that you are importing.
- When prompted, select the password dictionary filename, and click Open.
- Click Import File and the import process can take several minutes.
- Click Update Status to refresh. When the status shows Password dictionary imported, the name of the new password dictionary is displayed in the Password Dictionary Name list.
- Click Done.
- In the Security Console, click Authentication > Policies > Token Policies > Manage Existing.
- Use the search fields to find the token policy that you want to edit.
- From the search results, click the token policy that you want to edit.
- Click edit on the token policy dropdown.
- Navigate to section SecurID PIN Format
- Change Excluded Words Dictionary from "none" to the dictionary file imported earlier.
- Click Save.
Notes
Error: PIN change failed dictionary check
Related Articles
"Error - could not execute query" shows instead of the role name when listing roles in RSA Identity Governance & Lifecycle 40Number of Views Terminated Users not correctly removed from Roles in RSA Identity Governance & Lifecycle 115Number of Views Absolute Secure Access - SAML My Page SSO Configuration - RSA Ready Implementation Guide 5Number of Views Imported business descriptions are not updated correctly for groups in different applications having the same name in RSA … 46Number of Views Anomalix idGenius - SAML Relying Party Configuration - RSA Ready Implementation Guide 11Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Reporting on RSA Authentication Manager 8.x users with On-Demand Token, a fixed passcode or a hardware/software token assi… How to Download OTP Token Seed Files from myRSA Anomalix idGenius - SAML Relying Party Configuration - RSA Ready Implementation Guide RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide
Don't see what you're looking for?