This tab allows you to configure settings for sending SMS messages containing one-time passwords to users’ SMS-capable devices. On this tab, you can use the following options:
- Enable SMS token Enables the SMS token for the users to whom this Defender Security Policy applies.
- Send SMS to user as required Enables Defender to send an SMS message containing new one-time passwords to the user when the user is about to expend the one-time passwords provided in the previous SMS message.
- Only send SMS when user enters keyword Causes the Defender Security Server to send an SMS message containing one-time passwords only when the user enters the specified trigger keyword during authentication.
- Responses per SMS Allows you to specify the number of one-time passwords you want to include in each SMS message to be sent to the user. You can specify a value from 1 to 10.
- Keyword Specify the keyword that will trigger the sending of an SMS message containing one-time passwords to the user. The keyword works as a trigger when it is entered by the user during authentication. If the SMS token has a PIN assigned, you can specify that PIN as the trigger keyword as well.
You can select the Use AD Password check box to make the user’s Active Directory password act as the keyword that causes the Defender Security Server to send the SMS message.
If this check box is selected and an account lockout policy is enforced in the domain, then a number of unsuccessful authentication attempts may lock out the user’s Active Directory account. Use this check box with caution.
- Phone attribute Select the Active Directory attribute that stores user’s mobile phone number to which you want to send SMS messages containing one-time passwords.
- Mobile provider URL Type the URL of the mobile service provider through which you want to send SMS messages containing one-time passwords.
- [USERID] Type the user name of the account under which you want to access the mobile service provider’s Web site.
- [PASSWORD] Type the password that matches the user name in the [USERID] text box.
- POST Data Click this button to enter the information you want to send to the mobile service provider at the URL specified on this tab. The default POST data provided in this option is only applicable to the 2sms mobile service provider. Contact your mobile service provider for more information about the syntax you need to use in this option.
- Test Click to test the settings specified on this tab.