Symptom
- After the user authenticates with a passkey (Webauthn/FIDO), the site prompts two-factor authentication (TFA).
- This occurs with the following conditions:
- Risk-Based Authentication is configured to require TFA on device change.
- There is an updated Consent requirement.
- There may be other undocumented conditions that causes TFA to trigger.
Read more...
Environment
- SAP Customer Data Cloud
- Passkey Login
- Risk-Based Authentication (RBA)
Product
SAP Customer Data Cloud all versions
Keywords
tfa, two-factor, rba, risk-based authentication, passkey, webauthn, fido, device change, Gigya, CDC , KBA , CEC-PRO-PNS , Privacy & Safety (Consent, RBA - Risk-Based Authentication) , Known Error
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.
SAP Knowledge Base Article - Preview