Configure FIDO2 as an MFA factor

  • 릴리스 버전: Australia
  • 업데이트 날짜 2026년 03월 12일
  • 소요 시간: 3분
  • Configure policy input and condition to display FIDO2 as an MFA factor policy for authentication.

    시작하기 전에

    Role required: adaptive_auth_admin

    프로시저

    1. Navigate to All > Multi-factor Authentication > MFA Context.
    2. Select the MFA Factor Policies tab.
    3. Select the Display FIDO2 as an MFA Factor Policy.
    4. Select New to add Policy Inputs.
    5. Select the filter criteria that you want to create.

      Following are the types of filter criteria:

      For example, Role Filter Criteria.

      Filter Criteria.
    6. Select Role Filter Criteria, fill the fields for the role filter criteria and submit the record.

      The new policy is created. For more information, see Role Filter Criteria.

      Let's take an example of using ITIL role for the user (andrew.och) as the policy input and submit.

      Policy input
    7. On the Policy - Display FIDO2 as an MFA Factor Policy page, select Policy Conditions.
    8. Select New to add policy conditions.
    9. On the form, fill in the fields.
      표 1. Condition form
      Field Description
      Label Name to identify the condition.
      Description Description of the condition.
      Condition Logical combination of multiple policy inputs (filter criteria) that is used to evaluate authentication requests.

      Select the role-based filter criteria policy that was created for the condition.

      MFA FIDO - Policy conditions
    10. Select Submit.

      Based on the policy input and condition, if the user (andrew.och) tries to log in to the instance, the user is shown as the FIDO screen to either enroll and register.


      MFA- Biometric or Hardware keys

      To know more about different configuration example and user behaviors, see Example Configurations and User Behaviors.

    11. 옵션: Repeat step 8 to create additional policy conditions.
      주:
      If you create multiple policy conditions, the final output of the access policy depends on the logical OR output of the all policy conditions. Based on the conditions the policy is evaluated.