Set the Authentication Method for the Self-Service Console
Users must provide credentials to access the Self-Service Console. If users are not required to have a password, configure one or more other credentials. You can configure one or more of the following types:
RSA Password. For users whose identity source is the AM internal database. To use this credential, an RSA password must be assigned to the user’s account.
RSA SecurID. For users who have RSA SecurID authenticators.
On-Demand. For users who use on-demand tokencodes.
LDAP Password. For users whose identity source is an LDAP directory server.
Procedure
In the Security Console, click Setup > Self-Service Settings> Self-Service Console Authentication.
In the Console Authentication Method field, enter the authentication method that users must use to log on to the Self-Service Console.
For example, to require an on-demand tokencode and an LDAP password, enter OnDemand+LDAP_Password.
Click Save.
After you finish
If you change the authentication method, notify the users because all users currently logged on to the Self-Service Console must re-authenticate using the new method.
Related Articles
!X509PEMFileRequest: wrong password or pin value given 5Number of Views Can you disable the SOAP services in FIM 3.0 / 3.1? 4Number of Views Backup Authentication Method for Risk-Based Authentication 7Number of Views Failing to open the invitation URL on the Prime Self Service Portal 29Number of Views RSA Governance & Lifecycle Recipes: Reporting on Reports 15Number of Views
Trending Articles
Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA Authentication Manager 8.9 Release Notes (January 2026) RSA Governance & Lifecycle 8.0.0 Administrators Guide RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide