3.64.5. Policy

This optional parameter specifies the authentication policy that is to be used. Defaults to RSA_Password.
Options are:
  • SecurID_Native
    Traditional SecurID two-factor token cards. User enters their PIN followed by the tokencode currently showing on their token card.
  • OnDemand
    User enters their PIN. AM sends a temporary tokencode to the user by email or SMS, according to however AM is configured. User then enters the tokencode they receive.
  • RSA_Password
    Static password stored in the RSA internal database.
  • LDAP_Password
    Static password stored in an LDAP database.
  • Security_Questions
    User is asked a series of security questions, and enters answers that they have previously configured using the RSA Self-Service Console.
  • SecurID_Proxy