Integrate Imprivata Enterprise Access Management

Mobile Access Management's Check Out feature requires customers to connect to a web service to handle the translation of proximity badge IDs to user IDs.

This topic describes how to integrate with Imprivata Enterprise Access Management (formerly Imprivata OneSign) for identity lookup.

If you don’t have EAM, you may use a custom identity lookup service.

Prerequisites

Take note of the following prerequisites:

Available Authentication Methods for MAM Check Out

MAM supports a variety of EAM authentication methods for Check Out.

The integration of MAM and Enterprise Access Management supports the following primary and secondary factors for authentication.

  • For some first factors, you can allow a limited user choice for the second factor. For example, if proximity card is the first factor, you can allow network password as the second factor.

  • The authentication methods are configured in the Imprivata Admin Console in user policies.

  • The Authentication tab of a user policy controls the authentication methods and options (authentication rules) that define authentication behavior for Enterprise Access Management.

  • Some combinations of authentication factors are not supported by Mobile Access Management for device Check Out. The following table illustrates the EAM primary and secondary authentication method selections and the resulting Check Out behaviors in MAM.

Primary Secondary Check Out Behavior
Check Out is initiated by the user taking a device out of the Smart Hub
Password No second factor
  • User taps unlock with password on the Imprivata Locker lock screen.

  • User enters username and password.

  • The device unlocks.

Check Out is initiated by the user tapping their proximity card on a Launchpad
Proximity Card No second factor
  • User taps their proximity card on the Launchpad's proximity card reader.

  • The device is selected.

  • Imprivata Locker lights up the device's display screen.

  • The device is unlocked.

Proximity Card Password
  • User taps their proximity card on the Launchpad's proximity card reader.

  • The device is selected.

  • Imprivata Locker lights up the device's display screen.

 

Proximity Card Imprivata PIN
  • User taps their proximity card on the Launchpad's proximity card reader.

  • The device is selected.

  • Imprivata Locker lights up the device's display screen.

Configure Imprivata Enterprise Access Management

Configure Mobile Access Management

Next

Configure Password Autofill