Enable Users to Reset Passwords After User and Token Export
When users are exported from a deployment that uses an external identity source and imported to a deployment that uses the internal database, the users’ LDAP passwords are not imported. Password authentication is disabled in the target deployment. Before re-enabling these users for password authentication, you can allow users to reset their passwords using the Self-Service Console, as described in the following procedure. As an alternative, you can reset the passwords yourself.
Perform this task only if you are exporting from an external identity source to the internal database.
By default, a password is required for users in the internal database. If you have to edit the user record for any reason and the user has not reset the password, when you save the user record an error will indicate that the password is a required field. You can create a new password before saving the user record, or you can make the password optional.To make the password optional, see Edit the Internal Database.
Procedure
In the target deployment, log on to the Security Console and click Set Up > Self Service Settings > Self Service Console Authentication.
Make sure the Console Authentication Method includes SecurID_Native and click Save.
From the Self-Service Settings page, click Enable or Disable Self Service Features.
Select Display Forgot your password link.
Click Save.
Inform the imported users that they need to perform these steps:
Log on to the Self-Service Console using a token.
Configure and answer security questions.
Note: Users’ security questions are only imported if the same questions are found on the target deployment. If the security questions cannot be found, they aren’t imported and users must configure their security questions and answers when they log on to the target deployment for the first time.
Log off the Self - Service Console.
Click the Forgot Your Password link on the log on page, answer the security questions, and change your password.
Related Concepts
Related Articles
Identity Confirmation questions not displayed for RSA Via Lifecycle & Governance while using external password reset 49Number of Views Cloud Administration Void Password Reset Code API 13Number of Views When attempting to reset the RSA Identity Governance & Lifecycle passwords with the generateLoginKey.sh command, the error… 68Number of Views RSA Via Lifecycle and Governance access control setting for web services gets reset to default on server restart 95Number of Views Error launching the Aveksa Kiosk Password-Reset-form aka Desktop Based Password Reset in RSA Identity Governance and Lifec… 57Number of Views
Trending Articles
Change Requests stuck in the AFX Fulfillment Handler Workflow Node and Workflows Stalled in RSA Identity Governance & Life… Collector Stuck in Data Collection Phase with "Sent Request to Agent Hosting the Collector" RSA Authentication Manager 8.9 Patches and Hotfixes Readme How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Workflows stuck in AFX fulfillment and/or Provisioning nodes in RSA Identity Governance & Lifecycle