We found, that there is not possibility now to change/translate RADIUS response messages from Identity Router.
Because changes based on previous authentication mechanism, it's little bit complicated to make universal manual for end users. It would be great to get possibility to translate this messages to another language and make them easier for end user.
For example message "Enter your SecurID OTP or select another method: 1 to Approve on your registered authenticator, 2 for Biometrics" is really tricky for end user who is not speaking English.
... View more
Would it be possible to have some global setting in the Security Console where if the token “Last Used to Authenticate” date goes beyond a set period, the system would automatically unassign the token and put it back in the available pool. So if for example, I set it to that if the tokens have not authenticated with 90 days, then from this post (27/01/2023), all tokens that had not authenticated since 29 October 2022 would be unassigned. There would have to be some feature to exclude certain users (like users on long term leave) but if this could be an overnight maintenance task, it would help keep our licenced number of users in balance and add more tokens to the available pool.
... View more
It would be a helpful feature to have a section of the SecurID Cloud admin portal, preferably the dashboard page, where we could see our total license count next to the number of licenses in use. Currently this is only available in Authentication Manager, but would be useful for customers who have transitioned to the Cloud service as well. Please consider this in the next monthly release.
Thank you!
... View more
We have just rolled this out and these are some wish list items
Would like:
The option to start the registration of a soft token for a user and have it text/email them the QR/Manual Registration information would be very helpful for our less technically inclined users.
Perhaps an "invite user" button that sends their email address a link to "My Page" with some basic steps/information. (Lastpass has this)
Being able to display a list of users or search/filter for users based on various information (currently we have to lookup their email address because our email addresses don't match our usernames). I also have to generate a report and export it just to get a list of who hasn't setup an authenticator.
On the user's information/details page. The ability to add more user information, such as Job Title/Mobile phone number etc. (attributes that are synchronized over from Active Directory). Also show the "last logon" date/time and what method. Also last failure/method.
Ability to schedule AD synchronizations in the event of username/email changes.
In Custom Policies it would be nice to have the option to not rely on an Assurance level, and instead just let you manully pick the authentication methods. Or provide the option to have many different Assurance levels and the option to not automatically allow higher.
When the status shows "Changes Pending" - have the ability to see what changes.
We do like the new product very much 😊
Thanks,
Jackie
... View more