2.0 Configuring Local Authentication

To guard against unauthorized access, Access Manager supports a number of ways for users to authenticate. These include name/password, RADIUS token-based authentication, and X.509 digital certificates. You configure authentication at the Identity Server by creating authentication contracts that the components of Access Manager (such as an Access Gateway) can use to protect a resource.

Figure 2-1 illustrates the components of a contract:

Figure 2-1 Local Authentication

This section also explains how to configure authentication when the user store supports password expiration services, when a request allows any contract to be used for authentication, and when you want to control authenticating directly to the Identity Server.