13.04.2013 Views

Digipass Plug-In for IAS Product Guide - Vasco

Digipass Plug-In for IAS Product Guide - Vasco

Digipass Plug-In for IAS Product Guide - Vasco

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

<strong>Digipass</strong> <strong>Plug</strong>-<strong>In</strong> <strong>for</strong> <strong>IAS</strong> <strong>Product</strong> <strong>Guide</strong> Policies<br />

4.5 Pre-Loaded Policies<br />

These Policies are created <strong>for</strong> the <strong>IAS</strong> <strong>Plug</strong>-<strong>In</strong> on installation of the <strong>Digipass</strong> <strong>Plug</strong>-<strong>In</strong> <strong>for</strong> <strong>IAS</strong>.<br />

They provide an example <strong>for</strong> setting up Policies in a typical environment.<br />

Policy Name Parent<br />

Policy<br />

Base Policy - Globally applicable settings.<br />

<strong>In</strong> general, all other Policies<br />

should inherit from this,<br />

directly or indirectly.<br />

<strong>IAS</strong> Base Policy Base Policy Settings applicable to all <strong>IAS</strong><br />

<strong>Plug</strong>-<strong>In</strong> Policies, including<br />

local authentication. <strong>In</strong><br />

general, all other <strong>IAS</strong><br />

policies should inherit from<br />

this, directly or indirectly.<br />

<strong>IAS</strong> Windows Auto-<br />

Assignment<br />

<strong>IAS</strong> Windows Self-<br />

Assignment<br />

<strong>IAS</strong> Base<br />

Policy<br />

<strong>IAS</strong> Base<br />

Policy<br />

Description Non-Default Settings<br />

<strong>IAS</strong> <strong>Plug</strong>-<strong>In</strong> model <strong>for</strong> Auto-<br />

Assignment with Dynamic<br />

User Registration, using<br />

Windows back-end<br />

authentication and a<br />

Windows group check.<br />

<strong>IAS</strong> <strong>Plug</strong>-<strong>In</strong> model <strong>for</strong> Self-<br />

Assignment with Dynamic<br />

User Registration, using<br />

Windows back-end<br />

authentication.<br />

User Lock Threshold = 3,<br />

PIN Change Allowed = Yes<br />

Challenge Request Method = Keyword (Note:<br />

the keyword is blank though)<br />

PVDP Request Method = Password<br />

BVDP Request Method = KeywordPassword<br />

BVDP Keyword = “otp”<br />

ITimeWindow = 100, EventWindow = 100<br />

SyncWindow = 6, IThreshold = 0<br />

Local Authentication = <strong>Digipass</strong>/Password<br />

Back-End Authentication = If Needed<br />

Back-End Protocol = Windows<br />

Dynamic User Registration = Yes<br />

Assignment Mode = Auto-Assignment<br />

Search up OU Path = Yes<br />

Grace Period = 7<br />

Group Check Mode = Passthrough<br />

Group List = “<strong>Digipass</strong> Users”<br />

Back-End Authentication = If Needed<br />

Back-End Protocol = Windows<br />

Dynamic User Registration = Yes<br />

Assignment Mode = Self-Assignment<br />

Search up OU Path = Yes<br />

Serial No. Separator = “|”<br />

© 2005 VASCO Data Security <strong>In</strong>c. 57

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!