SAP Knowledge Base Article - Preview

3790650 - Known Issue: TFA is prompted for site after Passkey login

Symptom

  • After the user authenticates with a passkey (Webauthn/FIDO), the site prompts two-factor authentication (TFA).
  • This occurs with the following conditions:
    • Risk-Based Authentication is configured to require TFA on device change.
    • There is an updated Consent requirement.
  • There may be other undocumented conditions that causes TFA to trigger.


Read more...

Environment

  • SAP Customer Data Cloud
  • Passkey Login
  • Risk-Based Authentication (RBA)

Product

SAP Customer Data Cloud all versions

Keywords

tfa, two-factor, rba, risk-based authentication, passkey, webauthn, fido, device change, Gigya, CDC , KBA , CEC-PRO-PNS , Privacy & Safety (Consent, RBA - Risk-Based Authentication) , Known Error

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.