Skip to content

Latest commit

 

History

History
109 lines (51 loc) · 9.25 KB

configure-trust-this-browser-option-5b8377e.md

File metadata and controls

109 lines (51 loc) · 9.25 KB

Configure Trust this browser Option

Tenant administrator can set the number of days for which the users won't get prompted for second-factor authentication, if they sign in from the same browser.

You are assigned the Manage Tenant Configuration role. For more information about how to assign administrator roles, see Edit Administrator Authorizations.

Context

The validity of Trust this browser can be set between 1 and 14 days.

If the option for trust this browser is set at Disabled, and a user chooses to always provide second factor when authenticating, the validity of Trust this browser is 3 months. But if the administrator sets a validity from 1 to 14 days, the 3-month validity is overridden with the validity set by the tenant administrator.

The Trust this browser checkbox appears at sign-in when a second factor is required for the users. When users chose the Trust this browser checkbox, the second factor is required only with the first sign-in. The validity depends on the configuration in the administration console.

Note:

If the device for time-based one-time password (TOTP) or Web Two-Factor Authentication is deactivated, all the related tokens for the user will be removed.

Procedure

  1. Sign in to the administration console for SAP Cloud Identity Services.

  2. Under Applications and Resources, choose the Tenant Settings tile.

    At the top of the page, you can view the administrative and license relevant information of the tenant.

  3. Under Authentication, choose the Multi-Factor Authentication list item.

  4. Manually configure the trust this browser option under Additional Settings for Multi-Factor Authentication.

    If the operation is successful, the system displays the message Additional Multi-Factor Authentication Settings updated.

Related Information

Tenant SAML 2.0 Configuration

Tenant OpenID Connect Configurations

Change Tenant Texts Via Administration Console

Configure Master Data Texts Via Administration Console

Configure Links Section on Sign-In Screen

Add Instructions Section on Sign-In Screen

Configure X.509 Client Certificates for User Authentication

Configure Tenant Images

Configure Allowed Logon Identifiers

Configure User Identifier Attributes

Enable Back-Up Channels to Send Passcode for Deactivation of TOTP Two-Factor Authentication Devices

Enable Users to Recover Password with Security Questions

Enable Users to Recover Password with PIN Code

Configure Initial Password and Email Link Validity

Configure Session Timeout

Configure Trusted Domains

Use Custom Domain in Identity Authentication

Change a Tenant's Display Name

Configure Default Risk-Based Authentication for All Applications in the Tenant

Configure Sinch Service in Administration Console

Configure RADIUS Server Settings (Beta)

Configure Mail Server for Application Processes

Configure IdP-Initiated SSO

Send Security Alert Emails

Send System Notifications via Emails

Configure Customer-Controlled Encryption Keys in Administration Console (Restricted Availability)

Configure Default Language for End User Screens

Configure P-User Next Index

Reuse SAP Cloud Identity Services Tenants for Different Customer IDs

Configure Risk-Based Authentication for an Application

Configure Default Risk-Based Authentication for All Applications in the Tenant