Provisioning scenarios
The following scenarios show how provisioning works for different authenticators in different situations.
The user authentication method during the provisioning process may vary depending on the local authentication policy setting, and on whether the user already has an activated authenticator (see User authentication during provisioning).
Table: Provisioning scenarios
|
Mobile Authenticator Studio
online activation |
Multi-device activation |
User account? |
Yes |
No |
User knows static password? |
Yes (at least for first provisioning operation) |
Yes (at least for first provisioning operation) |
Provisioning policy |
Local authentication |
DIGIPASS/Password during Grace Period or DIGIPASS or Password |
DIGIPASS/Password during Grace Period or DIGIPASS or Password |
Back-end authentication |
None
|
Always or If Needed |
DIGIPASS type |
MOB40 |
DAL10 |
Back-end protocol |
n/a |
Windows, RADIUS, LDAP, custom |
Dynamic User Registration |
n/a |
Enabled |