Auto-learning Pattern-Based Policy: OAAM Users vs. Themselves

OAAM Security and Autolearning Policies 11-19

11.5.3.5.2 OAAM Users vs. All Users Flow Diagram

Figure 11–10 Auto-learning Pattern-Based Policy: OAAM Users vs. All Users Flow

11.5.3.5.3 OAAM Users vs. All Users: Details of Rules

Table 11–16 Auto-learning Pattern-Based Policy: OAAM users vs. All Users Summary Summary Details Purpose Evaluates the users current behavior against the historical behavior of all other users. This policy uses pattern-based rules to evaluate risk. Scoring Engine Maximum Weight 100 Group Linking Linked Users It is a nested policy 11-20 Oracle Fusion Middleware Administrators Guide for Oracle Adaptive Access Manager Table 11–17 Auto-learning Pattern-Based Policy Rules Details: OAAM Users vs. All User Rule Rule Condition and Parameters Results Users: Day of the week ENTITY: Entity is member of pattern bucket less than some percent with all entities in picture Pattern Bucket Hit Percent less than = 5 Pattern name for membership= User: Day of the week profiling pattern Is membership count less than pattern hit percent = true Time period type for pattern membership = Months Time period for pattern membership = 6 Member Type for pattern membership = User Action = OAAM Challenge Alert = Users: Day of the week Score = 300 Users: Country ENTITY: Entity is member of pattern bucket less than some percent with all entities in picture Pattern Bucket Hit Percent less than = 3 Pattern name for membership= User: Country profiling pattern Is membership count less than pattern hit percent = true Time period type for pattern membership = Months Time period for pattern membership = 6 Member Type for pattern membership = User Action = OAAM Challenge Alert = Users: Country Score = 500 OAAM Security and Autolearning Policies 11-21

11.5.3.5.4 OAAM Users vs. All Users: Trigger Combinations

None

11.5.4 Registration Policies

Registration policies are summarized in this section.

11.5.4.1 OAAM Registration

This policy is used to determine the user information that needs to be registered.

11.5.4.1.1 OAAM Registration Policy Summary

Users: Time of Day ENTITY: Entity is member of pattern bucket less than some percent with all entities in picture Pattern Bucket Hit Percent less than = 5 Pattern name for membership= User: Time of day profiling pattern Is membership count less than pattern hit percent = true Time period type for pattern membership = Months Time period for pattern membership = 6 Member Type for pattern membership = User Action = OAAM Challenge Alert = Users: Time of day Score = 300 Users: Connection type ENTITY: Entity is member of pattern bucket less than some percent with all entities in picture Pattern Bucket Hit Percent less than = 5 Pattern name for membership= User: Connection type profiling pattern Is membership count less than pattern hit percent = true Time period type for pattern membership = Months Time period for pattern membership = 6 Member Type for pattern membership = User Action = OAAM Challenge Alert = Users: Connection type Score = 500 Users: Locale ENTITY: Entity is member of pattern bucket less than some percent with all entities in picture Pattern Bucket Hit Percent less than = 3 Pattern name for membership= User: Time of day profiling pattern Is membership count less than pattern hit percent = true Time period type for pattern membership = Years Time period for pattern membership = 6 Member Type for pattern membership = User Action = OAAM Challenge Alert = Users: Locale Score = 500 Table 11–17 Cont. Auto-learning Pattern-Based Policy Rules Details: OAAM Users vs. All User Rule Rule Condition and Parameters Results 11-22 Oracle Fusion Middleware Administrators Guide for Oracle Adaptive Access Manager

11.5.4.1.2 OAAM Registration Flow Diagram

Figure 11–11 OAAM Registration Flow

11.5.4.1.3 OAAM Registration: Details of Rules

Table 11–18 OAAM Registration Policy Summary Summary Details Purpose Determines what parts of user information has to be registered Scoring Engine Weighted Average Weight 100 Group Linking All Users Table 11–19 OAAM Registration Policy Rules Details Rule Rule Condition and Parameters Results Check Registration User: Account Status User Account Status = ACTIVE Is = FALSE Action = OAAM Register Alert = NONE Score = 0 Register Questions User: Question Status User Question Status = Set Is = FALSE Action = OAAM Register Challenge Questions Alert = NONE Score = 0