Configuration
In this section of Management Console, you can configure authenticators and set access rights.
Access rights
Roles
In the Roles section, you can view the rights that roles have across the entire Axidian Access system — global administrator, operator, or inspector. Each role has its own set of rights. For more information about roles, see Roles.
Global administrators
In the Global administrators section, you can view and add users with the global administrator, operator, or inspector roles, which grant rights to administer the entire Axidian Access system.
To assign a role:
- Go to the Global administrators tab.
- Click Add and select the required role.
- In the Name field, enter the username, part of the name, or UPN.
- In the Object type field, select the type — User or Group.
- In the Location field, select the object location. It can be the entire user catalog or a separate container. If you leave the Name field empty, the search results will display all objects of the specified type in the selected location.
- Select an object.
- Click Add.
The user with the assigned role appears in the list on the Global administrators tab.
You can also assign a user a role within a single policy.
Authenticators
In this section, you can view and configure the authenticators installed on this server.
Enable/Disable using and editing
To configure using and editing authenticators:
Select an authenticator.
In the Main settings section:
- In the Disable using setting, specify whether users can use or register the selected authenticator.
- Configure other settings depending on the authenticator type.
For authenticators that require registration, in the Actions available to users section:
- In the Registration of new authenticators setting, specify whether users can register new authenticators.
- In the Editing existing authenticators setting, specify whether users can modify already registered authenticators.
- In the Deleting of existing authenticators setting, specify whether users can delete already registered authenticators.
- In the Enable editing authenticator comment setting, specify when users can edit comments for already registered authenticators.
Change the maximum number
In this section, you can define the maximum number of authenticators that a single user can register. This setting is available for the following authenticators:
To set the maximum number:
- Select an authenticator.
- In the Maximum number field, enter a value.
- Click Save.