Symptom
Multiple device change RBA rules always trigger TFA on every login regardless of API key inclusions
Example scenario:
Global Device Change for apikey A will prompt for TFA after 60 seconds (i.e., TFA for every user on every login)
Global Device Change for apikey B,C,D will prompt for TFA after 1 week
Results: For apikeys A,B,C or D, 60 seconds is used for device expiration
Read more...
Environment
- SAP Customer Data Cloud
- Risk-Based Authentication (RBA)
Product
SAP Customer Data Cloud all versions
Keywords
Gigya, RBA, MFA, two factor authentication , KBA , CEC-PRO-PNS , Privacy & Safety (Consent, RBA - Risk-Based Authentication) , Problem
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.
SAP Knowledge Base Article - Preview