Risk-Based Authentication Message Policy
The risk-based authentication (RBA) message policy defines the message that users see when they are prompted to configure their identity confirmation method. You might use this message to inform users about why they need to configure an identity confirmation method. This message displays when all of the following conditions exist:
The user authenticates to a web-based application, such as an SSL-VPN, thin client, or web portal.
The user has not configured an identity confirmation method.
The user attempts to authenticate using a high assurance device.
You can assign an RBA message policy to any security domain. A deployment can have multiple RBA message policies, which you assign by editing the security domain. Security domains use the deployment’s default RBA message policy until you assign a different RBA message policy.
Related Tasks
Add a Risk-Based Authentication Message Policy
Edit a Risk-Based Authentication Message Policy
Delete a Risk-Based Authentication Message Policy
Duplicate a Risk-Based Authentication Message Policy
Change the Default Risk-Based Authentication Message Policy
Assign a Risk-Based Authentication Message Policy to a Security Domain
Related Articles
XudaJurisdictionGetCA() call returns XrcNOTFOUND even though the CA object exists 15Number of Views The ntpq command gives the error "Request timed out" in RSA Authentication Manager 12Number of Views Add a Service Provider 56Number of Views Resynchronize a Token 41Number of Views Prompt Authenticate Tokencode Users for PINs on Their First Authentication to Cloud Access Service 51Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device RSA Governance & Lifecycle Generic Database Collector Guide RSA Authentication Manager 8.7 SP2 Administrator's Guide RSA Authentication Manager 8.9 Release Notes (January 2026) RSA Authentication Manager 8.9 Setup and Configuration Guide