MFA for web application access
Before you configure MFA for web application access, you must first deploy and configure the application. If you have not done this, see Get Started with Single Sign-on.
MFA requirements for web application access can be as simple or sophisticated as you would like. The simplest rule is un-conditional MFA -- users must provide additional authentication anytime they access web applications from the User Portal.
- Log in to the Identity Administration portal.
- Click Apps > Web Apps and select the relevant application.
- Click Policy.
- Select Add New Profile from the Authentication Profile dropdown list.
- Enter a profile name.
- Select the authentication methods.
- Click OK.
- Click Save.
The authentication profile is where you define the authentication methods you want users to use for MFA.
If you only require MFA when certain conditions are met, for example when users are accessing the application from a specific country, use the following instructions.
- Log in to the Identity Administration portal.
- Click Apps > Web Apps and select the relevant application.
- Click Policy.
- Click Add Rule .
- Click Add Filter .
- Select Country from the Filter dropdown list.
- Select equal to from the Condition dropdown list and the relevant country from the Value dropdown list.
- Click the Add button associated with the filter and condition.
- Select Add New Profile from the Authentication Profile drop-down list.
- Enter a profile name.
- Select the authentication methods.
- Click OK.
- Click Save.
The Authentication Rule window opens.
The authentication profile is where you define the authentication methods you want users to use for MFA.