Previous Topic: Delete an Account TemplateNext Topic: Move a Local or Trusted User into a Different Security Domain


Create a Trusted User

To create a user that can authenticate through realms other than their own you can create a trusted user. When you create a user account, you append the name of the trusted realm you want the user to authenticate through to the users login id, which identifies the user as a trusted user.

To create a trusted user

  1. In the Provisioning Manager, click the Endpoints button and select the RSA SecurID 7 [DYN Endpoint] type in the Object Type drop-down list.
  2. Click Search.

    The RSA 7.1 endpoints appear in the list view.

  3. Right-click the endpoint on which you want to create a trusted user and then select Content.

    The Endpoint Content dialog appears.

  4. Select the System Domain container in the Container tree.
  5. Select User Account in the Object Type list and click New.

    The User Account dialog appears General 1 tab appears.

  6. On the General 1 tab, define a login id for the user, then select the trusted realm you want the trusted user to authenticate through from the drop-down list next to the Login Id field.
  7. Complete the Notes field if required.
  8. If required complete the Default Shell field in the General 2 tab on the User Account dialog, then click OK.
  9. Complete the required fields on the other tabs on the User Account dialog, then click OK.
  10. On the RADIUS profile tab, assign a RADIUS profile to the user.
  11. On the Member of (Trusted Group) tab, add the user to a trusted group.

    The trusted user is created, and is assigned a login id in the following format:

    Remote_username< delimiter >Realm_name

    For example, UserName01 % CA.

More information:

Local and Remote User Support