RSA Product/Service Type: Application Portal
When using Microsoft Integrated Windows Authentication (IWA) as an Identity Provider, the IWA server is typically only accessible by users on an enterprise's internal network. If IWA is configured to be used automatically this can prevent external users from being able to access the application portal.
Restricting Access to Automated SSO Agent IdPs Using Authentication Source Access Rules can be used to force external users to the portal login page.
However, the IWA icon will still be displayed on the portal which may cause confusion for end users.
This is functioning as designed for the default application portal. Possible workarounds include:
- Sending an end-user communication explaining that external users must log in with username/password.
- Changing the IWA icon (Users > Identity Providers > Edit > Portal Display) to something less visible or that somehow conveys to the end user not to use this option.
- Replacing the default portal with a custom portal as described in the RSA ID Plus IDR SSO Agent Custom Web Portal Developer's Guide and the article on how to Configure a Custom Portal Page for Web Applications.
RSA SecurID Access product improvement suggestions can be made by RSA customers on the RSA Ideas for the RSA SecurID Suite page in RSA Link.
Related Articles
How users can generate a temporary emergency access tokencode from RSA Authentication Manager 8.x Self-Service Console 580Number of Views Can archived aveksa.ear files stored in $AVEKSA_HOME/archive be deleted in RSA Identity Governance & Lifecycle? 140Number of Views Can a running review be refreshed without losing the completed work in RSA Identity Governance & Lifecycle? 171Number of Views Running script to determine if hardware appliance can successfully upgrade to Authentication Manager 8.7 SP1 465Number of Views Users cannot authenticiate to the RSA SecurID Access Portal or protected applications using Microsoft Integrated Windows A… 196Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Manual synchronization introduced in RSA Authentication Manager 8.2 Service Pack 1 patch 6 Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory How to verify NTP server synchronization is not working in RSA Authentication Manager 8.x RSA Governance & Lifecycle 8.0.0 Installation Guide