Previous Topic: Assign a Default RADIUS Credential Type Resolution ConfigurationNext Topic: Refresh the Cache


Configure an Authentication Policy

If you are configuring CA AuthMinder as a RADIUS proxy, then create or update an authentication policy for the credential type for which you are configuring CA AuthMinder as a RADIUS proxy. Set this policy as the default authentication policy for that credential type. In the authentication policy, specify the conditions under which authentication requests must be forwarded by CA AuthMinder to the RADIUS server.

Note: Perform the procedure described in this section only if you want to configure CA AuthMinder as a RADIUS proxy. Do not perform this procedure when you configure CA AuthMinder as a RADIUS server.

Follow these steps:

  1. Perform the following steps if you want to add RADIUS clients at the global level:
    1. Click the Services and Server Configurations tab on the main menu.
    2. Ensure that the CA Strong Authentication tab is selected.
  2. Perform the following steps if you want to add RADIUS clients at the organization level:
    1. Click the Organizations tab.
    2. Search for the organization.
    3. Select the organization from the search results.
    4. Click the CA Strong Authentication tab.
  3. In the left pane, click the Authentication link for the credential type for which you are configuring CA AuthMinder as a RADIUS proxy server.

    The Password Authentication Policy screen opens.

  4. Click Create if you want to create a policy configuration. Alternatively, click Update if you want to update an existing policy configuration.
  5. Enter the required data in the remaining fields of the Policy Configuration section.

    Note: For detailed information about the fields of the Policy Configuration section, see the CA Strong Authentication Administration Guide.

  6. Expand Advanced Configurations.
  7. Select one or both of the following options:
    User not Found

    Specifies that the authentication request must be forwarded to the RADIUS server if the user does not exist in the CA AuthMinder database.

    Credential not Found

    Specifies that the authentication request must be forwarded to the RADIUS server if the credential with which the user is trying to authenticate does not exist in the CA AuthMinder database.

  8. Enter the required data in the remaining fields of the Advanced Configurations section.
  9. Click Save.

    The authentication policy is configured.