Navigating to the Policies Search Page

Managing Policies, Rules, and Conditions 10-13 Figure 10–6 New Policy

3. In the Summary tab, in the Policy Name box, type the name of the new policy.

Enter between 1 and 255 characters for the policy name and for the description. 4. If you want the policy to be enabled as soon as it is created, keep the default, Active , for the Policy Status. If you want to policy to be disabled, select Disabled. A policy that is disabled is not enforced at the checkpoint. Disabling a policy does not remove it from the system. You are able to enable the policy at a later date.

5. From the Checkpoint list, select the point before and during the session when you

want the policy to be executed. For example, if you want to initiate an action after successful authentication select post-authentication as a checkpoint. For more information on checkpoints, see Section 10.1.4, Checkpoints. 10-14 Oracle Fusion Middleware Administrators Guide for Oracle Adaptive Access Manager

6. From the Scoring Engine list, select the fraud analytic engine you want to use to

calculate the numeric score that determines the risk level. For more information on the Scoring Engine, see Chapter 14, Using the Scoring Engine.

7. From the Weight list, enter a value from 0 to 100 as the multiplier if you want to

use a weighted scoring engine to influence the total score. If the policy uses a weighted scoring engine, both score and weight multiplier value are used to influence the total score calculations. If the policy is not using a weighted scoring engine, only the score is used to influence the total score.

8. Enter a description for the policy in the Description box.

9. Click Apply to create the policy.

A confirmation dialog appears with a message that the policy was created successfully.

10. Click OK to dismiss the confirmation dialog.

The Rules, Trigger Combinations, and Group Linking tabs are enabled after you click OK. The Copy Policy button is enabled if you want to copy the policy to another checkpoint. For details, see Section 10.16, Copying a Policy to Another Checkpoint. To edit the policy so that it functions: 1. When the policy is created, you can add a rule to the policy by creating a new rule within a policy Section 10.12, Adding a New Rule . When you add a rule, you can specify: ■ Preconditions . For information, see Section 10.21.2, Specifying Preconditions. ■ Conditions . For information, see Section 10.27, Adding Conditions to a Rule. ■ Order of conditionsparameter values ■ Results . For information, see Section 10.21.3, Specifying the Results for a Rule. 2. Then, you must link the policy to a group of type, User ID, or all users in order for the policy to execute. Group linking enables the policy to executerun for that set of users or all users. For information, see Section 10.9, Linking Policy to All Users or a User ID Group. 3. Configure trigger combinations if you want to specify outcomes different from the ones for the individual rules. For information, see Section 10.13, Working with Trigger Combinations.

10.9 Linking Policy to All Users or a User ID Group

Group linking enables you to specify the users that a policy links to. You must link the policy to a group in order for the policy to function. Linking a policy to a group enables the policy to executerun for the set of users within the linked group.