RSA Product/Service Type: Authentication Manager
RSA Version/Condition: 8.x
O/S Version: SUSE
- Change token policies on a subset of users
- Change policies to users in phases
Changing a policy assigned to a Security Domain changes the policy for all users in the Domain. It is not possible to change a policy for a subset of users in a Security Domain. However, it is possible to effectively change a policy on a subset of users by moving those users to a new Security Domain with the changed policy.
If a policy is assigned to more than one Security Domain and you want to change the policy for only one of the Security Domains, duplicate the existing policy. Then make the necessary changes to the duplicate policy, and assign it to the Security Domain you want to change.
- Open the Security Console and go to Administration > Security Domains > Manage Existing.
- The existing Security Domains are listed and each can be viewed to show the currently assigned policies.
- Go to Authentication > Policies >Token Policies > Manage Existing.
- Edit the policy to which you want to make a change.
- Click Save when done.
- Apply the token policy to a security domain.
If the policy is assigned to several Security Domains and you want to make a change to the policy for only some of the Security Domains,
- Go to Authentication > Policies >Token Policies > Manage Existing.
- Click on the policy and select Duplicate.
- Select the desired options on the duplicate policy and click Save.
- The policy can now be assigned to the Security Domains to which you want to make changes.
- Open the Security Console and go to Identity > Users > Manage Existing.
- Search for users, using the filters to select the subset of users you want to move.
- Check the box next to the users you want to move, and use the pull-down at the top of the screen to select Move to Security Domain....
- Click Go.
- On the next screen, select the new Security Domain.
- Click Move.
IMPORTANT: Administrators who are scoped to only have access to the previous Security Domain will not have access to the new Security Domain.
Related Articles
Add a Trusted Root Certificate 41Number of Views How to add a trusted root certificate to an RSA Authentication Manager Group Policy Object 63Number of Views Delete a RADIUS Profile 12Number of Views Delete a Trusted Root Certificate 21Number of Views How to set up a MySQL driver jar file for data collection using WebLogic server using RSA Via Lifecycle and Governance 80Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Reporting on RSA Authentication Manager 8.x users with On-Demand Token, a fixed passcode or a hardware/software token assi… How to Download OTP Token Seed Files from myRSA Anomalix idGenius - SAML Relying Party Configuration - RSA Ready Implementation Guide RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide