Step-up rules
17.4.1.14.2. Configuration of step-up rules

Where in the Config Editor:

  • Loginapp >>  Authentication Settings >>  Step-Up Authenticators
  • Add one or more Role-based Authenticators as in the following example:

33991817.png

The configuration defines the following:

  • Missing Role: The role defining this Step-Up configuration: if the user is missing that role ("strong" in this example), this configuration defines how to obtain it. This role must match one of the "Required Roles" from the "Application Settings" above.
  • Authenticator: The plugin used to perform the Step-Up. Choose plugins that are suitable for a second authentication step.
  • All other settings are optional: please consult the information in the Config Editor by clicking on the information.svg for more details.