Enabling User Access to Authenticator Manager
As a Thales Authenticator Lifecycle Manager administrator, complete the following tasks to enable end-user access to the Authenticator Manager portal:
-
Register the external identity provider (IdP) used to authenticate end users with OneWelcome Identity Broker. For more information, see External IDP Configuration for Self Service.
-
Configure the identity provider (for example, Microsoft Entra ID) in FIDO Provisioning for self-service FIDO device enrollment. For more information, see FIDO Provisioning.
-
Configure a policy by enabling the Enable for self-service setting. This policy is automatically applied when end users enroll FIDO devices through the Authenticator Manager portal. For more information, see Policy Management.
-
Provide end users with the Authenticator Manager URL to access the portal and start the self-service registration process. The URL is automatically generated for the selected identity provider and is available in the IdP's Self-service settings.
Note
For more information about enabling and configuring self-service, see FIDO Provisioning, where self-service is configured as part of a Microsoft Entra ID identity provider.