Step2: Configure ADSelfService Plus for RSA SecurID.
- Navigate to Access tab -> Authentication Agents-> Generate Configuration File.
- Click Generate Config File.

- Download AM_Config.zip (Authentication Manager config).

- Extract sdconf.rec file from the zip to <ADSelfService Plus-installation-dir>/bin. Copy the file named securid (node secret file ) as well.
Note: By default, the installation directory will be C:\ManageEngine\ADSelfService Plus.
Step 3: Enable Two-Factor Authentication via RSA SecurID.
- Log in to ADSelfService Plus using Administrator credentials.
- Navigate to Admin -> customize -> Logon settings.
- In the Logon Settings page that appears, click on Two-Factor Authentication tab.
- Check the Enable Two-Factor Authentication checkbox.
- Select the RSA SecurID radio button.

- Click Save.
Note: Each ADSelfService Plus user’s Active Directory/LDAP domain username must match his or her RSA username.
Once configured, users will be authenticated through RSA server, every time they try to login to ADSelfService Plus.