You can configure the GUI details including the tenant name, Client ID, secret, and user roles in IBM® Security Verify (ISV) to enable the multi-factor authentication feature through ISV. As a first step, you need to create an account in ISV that authenticates your credentials and verifies your email before providing you with access to configure the tenant and client details.
Follow the procedure to configure the GUI client for multi-factor authentication with IBM Security Verify:
-
Create an account at the following URL:
https://www.ibm.com/in-en/products/verify-for-workforce-iam
- Click Try free edition.
- On the Set up your tenant page, type the tenant name.
Note: Copy the tenant name. You need it for configuring multi-factor authentication in IBM Storage Scale GUI.
- Click Create tenant.
An email notification from
the ISV team confirms that your account is successfully created.
- Click Go To IBM Security Verify in the email that you received. The IBM Security Verify GUI is displayed.
- On the Welcome page, agree to the terms and conditions.
- From the navigation menu, click
.
- Click Add API client.
- On the Create API client page, choose the relevant entitlements for
the client you are configuring.
Note: You can use the Select all checkbox to select all the listed
entitlements.
- Click Next.
- On the Custom scope page, select Allow configured scopes
only to define scopes to limit access to the access tokens.
- Click Next.
- On the IP filter page, select Enable IP
filtering to limit token creation requests to a specific range of IP addresses.
- Click Next.
- On the Additional properties page, provide any additional attributes
that you need to define for the client.
Note: Steps 11 - 13 are optional steps.
- Click Next.
- On the Confirm configuration page, type the client name and provide
a description, if necessary. For example, scale-gui.
- Click Create API client.
- From the navigation menu, click
and
select the API client that you have added in step 17.
- Click
to
view the configuration details.
- From the Configuration list copy the Client
ID and Client secret that are automatically generated when the
client is created and are available under the API credentials
section.
- From the navigation menu, select
and then click Add user.
- On the Add user page, create a user and their related information
that includes their mobile number and email address.
Note:
- Mobile number is necessary only if you want to enable mobile OTP as an authentication option for
the user. If required, the user can change this number later. It is important to provide a number
with a valid country code.
- The username that you add here must be the same as the one configured in IBM Storage Scale GUI.
- Click Save.
Your GUI client is now configured and
GUI user is successfully added in the ISV repository.