This section covers how eADM controls password creation, delivery, and reset for provisioned user accounts, as well as the authentication methods available for accessing managed systems. It is intended for administrators configuring password policies and authentication settings, and for end users who need to reset or regain access to their accounts.

Authentication Methods

eADM supports two methods for password recovery and account access.

  • BankID / ID-porten. The recommended method where available (Norway, Sweden, Finland, Denmark). Users verify their identity and set a password themselves, without administrator involvement.

  • SMS-based password recovery. Used where BankID/ID-porten is not available or not configured for the organisation.

Note: Identum recommends BankID/ID-porten wherever possible. See Best Practices for Password Management Using ID-porten.

SMS-Based Password Recovery

Where BankID/ID-porten is not available, eADM offers two ways to reset a password via SMS.

Self-service through the password portal

The password portal can be configured to let users reset their own password via SMS, without contacting an administrator. See Password Management with the Password Portal.

Administrator and manager actions

By default, department managers, service desk users, and administrators can send a new password to a user via SMS. This is done from the user's profile, using the Send new password by SMS button. The sender does not see the password.

If Department managers can change the password is enabled for the organisation (Customer setup > Permissions), department managers can also set a new password directly, instead of sending it via SMS.