40.1 Ensuring Rapid Response to Authentication Requests

You can configure OSP so users can log in with an email address or another attribute available in the Identity Vault. If you use a non-default attribute, the server might take longer to respond to authentication requests. Also, OSP automatically times out LDAP connections after 15 seconds. To ensure a rapid response time, the LDAP authentication server should have an index for the login attribute. You also must specify that attribute in the RBPM Configuration Utility.

  1. To specify the login attribute, complete the following steps:

    1. Run the RBPM Configuration utility.

      For more information, see Configuring the Settings for the Identity Applications in the NetIQ Identity Manager Setup Guide for Linux or Configuring the Settings for the Identity Applications in the NetIQ Identity Manager Setup Guide for Windows.

    2. Select Authentication > Show Advanced Options.

    3. For Duplicate resolution naming attribute, specify the attribute that you want to use for login activities. For example, Internet Email Address.

    4. Save your changes.

  2. (Conditional) To create an index for the login attribute in the Identity Vault, complete the following steps:

    1. Create the index.

      For more information, see Creating Compound Indexes in NetIQ Identity Manager Setup Guide for Windows.

    2. For the attribute, select the same attribute that you specified for Duplicate resolution naming attribute in the configuration utility.

    3. For the index rule, specify Value.

    4. Complete the process for creating the index.