- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
RSA SecurID Integration with OWA
Hello,
When we protect the OWA with RSA SecurID, it challenges all users. Even if we select the "Enable Selective Users" from the IIS Agent it comes up with the default RSA SecurID Username and Passcode screen. It doesnot accepts the password in that screen for other users, for which we don't want to challenge.
Can you please let me know the steps to only challenge the users of a particular group and not all users?
Thanking You
Zia
- Tags:
- AM
- Auth Manager
- Authentication Manager
- Community Thread
- Discussion
- Forum Thread
- microsoft®_internet_information_server_(iis)
- microsoft®_outlook_web_access_(owa)
- RSA Authentication Manager
- RSA SecurID
- RSA SecurID Access
- SecurID
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
The problem got solved. Actually although I was signed in with the Administrator user, still I was supposed to open the agent with "Run as Administrator".
Since I was not doing this, it showed that it is working but actually it didn't applied the settings. As soon as I did it with "Run as Administrator: it worked for me.
Regards
Zia
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
Hello Zia,
You need to enable challenge configuration to either a group of users, or challenge all except a group of users, through:
- Control Panel (the machine with the web agent) -> RSA Authentication Agent -> Advanced TAB
- Challenge configuration, choose the needed option
- Type in the group name that you either want to challenge or exclude from challenge
For all users, they will be seeing the RSA page page, and passcode, the difference is that upon entering the password for an unchallenged user, they will be able to login.
You can also check the Authentication Activity monitor on the Security Console for reference.
P. 55 of the Web Agent guide, in the .zip of the installer .zip of the installer contains further details of the process.
Best Regards,
Peter
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
Yes I have tried to select a specific group. It is working fine for those users which are assigned the passcodes. But it is not allowing other users to login with Passwords. In just a second it gives the error: " 100: Access denied: The RSA ACE/Server rejected the Passcode. Please try again."
I also enabled Real time Activity Monitor, but no events are shown for login attempt.
I tried one more thing , that I removed one user from the Group which is to be challenged. Still it is allowing that user to login with the Passcode.
I think I am doing something wrong in Challenge Configuration. I have selected All Users In {Domain Name}\{Group Name}
Regards
Zia
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
The problem got solved. Actually although I was signed in with the Administrator user, still I was supposed to open the agent with "Run as Administrator".
Since I was not doing this, it showed that it is working but actually it didn't applied the settings. As soon as I did it with "Run as Administrator: it worked for me.
Regards
Zia
