SAP Knowledge Base Article - Preview

3720638 - How-to set up RBA rules for both device and country change while excluding certain API Keys?

Symptom

  • Two-Factor Authentication (TFA) is not triggered despite setting up the RBA rule when logging in via a private/incognito browser within the scoped site.
  • When the "AND" condition is set, TFA does not trigger unless both device and country change criteria are met during login.
  • When the "OR" condition is set, the TFA verification screen is displayed repeatedly due to the "apikey" condition.


Read more...

Environment

  • Customer Data Cloud
  • Privacy & Safety (Consent, RBA - Risk-Based Authentication)

Product

SAP Customer Data Cloud all versions

Keywords

rba rule, tfa issue, two-factor authentication, private browser, incognito mode, device change, country change, api key condition, repeated tfa screen, risk-based authentication, authentication rule configuration, tfa not triggered, rba troubleshooting. , KBA , CEC-PRO-PNS , Privacy & Safety (Consent, RBA - Risk-Based Authentication) , How To

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.