Set the Authentication Method for the Self-Service Console
Users must provide credentials to access the Self-Service Console. If users are not required to have a password, configure one or more other credentials. You can configure one or more of the following types:
RSA Password. For users whose identity source is the AM internal database. To use this credential, an RSA password must be assigned to the user’s account.
RSA SecurID. For users who have RSA SecurID authenticators.
On-Demand. For users who use on-demand tokencodes.
LDAP Password. For users whose identity source is an LDAP directory server.
Procedure
In the Security Console, click Setup > Self-Service Settings> Self-Service Console Authentication.
In the Console Authentication Method field, enter the authentication method that users must use to log on to the Self-Service Console.
For example, to require an on-demand tokencode and an LDAP password, enter OnDemand+LDAP_Password.
Click Save.
After you finish
If you change the authentication method, notify the users because all users currently logged on to the Self-Service Console must re-authenticate using the new method.
Related Articles
Failing to open the invitation URL on the Prime Self Service Portal 28Number of Views !X509PEMFileRequest: wrong password or pin value given 5Number of Views Backup Authentication Method for Risk-Based Authentication 7Number of Views RSA Identity Governance & Lifecycle ServiceNow connector fails with "handshake_failure" 140Number of Views Can you disable the SOAP services in FIM 3.0 / 3.1? 4Number of Views
Trending Articles
RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide RSA Release Notes for RSA Authentication Manager 8.8 RSA Authentication Manager 8.9 Release Notes (January 2026) Deploying RSA Authenticator 6.2.2 for Windows Using DISM RSA MFA Agent 2.4 for Microsoft Windows Installation and Administration Guide