As mentioned in Section 1., "Overview", the user object refers to the user himself, a group of users or an organizational unit that contains users. Thus, user security profiles can be applied to the following LDAP directory objects listed in the highest to lowest order of priority:
|
1. |
In the tree structure of the Directory panel, right-click the Organizational Unit that must contain your user security profile and select New\User Security Profile. |
2. |
1. |
2. |
• |
2. |
In the Authentication tab, select the authentication methods available for the users that will be associated with the user security profile, and define the authentication parameters of the user security profile, as described in Section 5.3.2.1, "Authentication Tab". |
3. |
In the Security tab, define the single sign-on parameters of the user security profile, as described in Section 5.3.2.2, "Security Tab". |
4. |
In the Unlocking tab, activate and use the Fast User Switching feature, define the unlocking parameters of the user security profile, as described in Section 5.3.2.3, "Unlocking Tab (Fast User Switching Feature)". |
5. |
In the Self Service Password Request tab, activate and use the SSPR feature, define the password and PIN reset parameters of the user security profile, as described in Section 5.3.2.4, " Self Service Password Request Tab". |
6. |
In the Biometrics tab, define the biometrics policy, as described in Section 5.3.2.5, "Biometrics Tab". |
7. |
In the Session delegation tab, define the authorization parameters of session delegation, as described in Section 5.3.2.6, "Session Delegation Tab". |
8. |
In the Audit tab, assign an audit filter to user security profile to generate only relevant audit events, as described in Section 5.3.2.7, "Audit Tab". |
9. |
In the OTP tab, define the OTP authentication parameters, as described in Section 5.3.2.8, "OTP Tab". |
© 2022 One Identity LLC. ALL RIGHTS RESERVED. Feedback Terms of Use Privacy