Configure authentication methods

This topic describes the authentication methods that can be used to authenticate to Privilege Cloud.

Supported authentication methods

All of the following authentication method are supported for both LDAP and CyberArk users. For details on user provisioning, see Add and manage users.

Method

Description

CyberArk password

You can assign this method when you create or edit a CyberArk user or when you edit an LDAP user.

Password policy: the default is a minimum of 6 alphanumeric, mixed case characters. To configure the password policy, contact Privilege Cloud support.

LDAP

To apply this method to a user, Privilege Cloud must be connected to the organization's LDAP server. For details, see Connect your LDAP directory server.

By default, users provisioned from LDAP can use their LDAP credentials to authenticate to Privilege Cloud.

SAML

To apply this method, you must configure SAML authentication in Privilege Cloud and in your IdP. For details, see Configure SAML authentication.

RADIUS

To apply this method, you must configure RADIUS authentication in Privilege Cloud For details, see Configure RADIUS authentication

Smart card

 

This authentication method is used for RDP connections from your desktop, not to authenticate to Privilege Cloud Portal.

To apply this method, you must configure PKI authentication in Privilege Cloud For details, see Configure PKI authentication for RDP connections