User is not enrolled for any of the allowed identity confirmation authentication methods error during RSA Authentication Manager Risk Based Authentication
Originally Published: 2020-05-28
Article Number
Applies To
RSA Product/Service Type: Authentication Manager
RSA Version/Condition: 8.x
Issue
User is not enrolled for any of the allowed identity confirmation authentication methods
Resolution
- The authentication generated an assurance level below the configured assurance threshold, AND
- The user has not configured a secondary challenge (identity confirmation) method for their account.
This error occurs during initial authentication with silent collection disallowed. It can also occur with silent collection allowed, but after the silent collection period has expired and without configuring a secondary challenge method.
If silent collection is not allowed, users must be instructed to configure their secondary challenge methods using the Self-Service Console before their first RBA authentication. If silent collection is allowed, then risk-based enabled clients will prompt a user to set up their identity confirmation method after a high assurance authentication (for example, from a known device). If this has not been done before the silent collection period ends, then the user must use the Self-Service Console to configure their identity confirmation method.
Notes
Related Articles
How a User Configures an Identity Confirmation Method 5Number of Views Troubleshoot 'User is not enrolled for identity confirmation methods' error 46Number of Views Enable Identity Confirmation Methods for a Risk-Based Authentication Policy 4Number of Views Identity Confirmation questions not displayed for RSA Via Lifecycle & Governance while using external password reset 46Number of Views Configure Silent Collection for a Risk-Based Authentication Policy 5Number of Views
Trending Articles
Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA Authentication Manager 8.9 Release Notes (January 2026) How to factory reset an RSA Authentication Manager 8.x hardware appliance without a factory reset button from the Operatio… Deploying RSA Authenticator 6.2.2 for Windows Using DISM Artifacts to gather in RSA Identity Governance & Lifecycle
Don't see what you're looking for?