Viewing the Condition Details of a Rule

Managing Policies, Rules, and Conditions 10-43 d. Modify the policy status, scoring engine, and weight according to your requirements. By default, the policy status is Active. A policy that is disabled is not enforced at the checkpoint. For more information on the Scoring Engine, see Chapter 14, Using the Scoring Engine.

e. Click Apply.

A confirmation dialog displays the status of the operation. If you click Apply and the required fields are not filled in an error message is displayed.

f. Click OK to dismiss the confirmation dialog.

5. Configure the policy to run for all users.

a. Click the Group Linking tab.

b. For Run Mode, select All Users.

Since All Users is selected for the run mode, the policy is executed run for all users. Specifying a run mode is a mandatory step in order for the policy to execute. It enables the policy to executerun for a set of users or all users. For information, see Section 10.9, Linking Policy to All Users or a User ID Group.

c. Click Apply.

A confirmation dialog displays the status of the operation.

d. Click OK to dismiss the confirmation dialog.

If the KBA Challenge policy was created successfully, it would be listed in the Search Results table of the Policies Search page. Although not covered in this use case, for the policy to function, you must add a rule to the policy either by creating a new rule within a policy Section 10.12, Adding a New Rule or by copying an existing one Section 10.15, Copying a Rule to a Policy to the policy.

10.34.4 Use Case: Add New Rule

After you have created a security policy see Section 10.34.3, Use Case: Create a Policy. you are ready to create a new rule to perform the risk evaluation in your use case. The use case requires an evaluation of the physical distance between the location a user is logging in from now verses the last location he came from. This rule calculates the velocityspeed required to travel between the location given the time. The security team has determined that if the user appears to travel faster then 500 miles per hour between location and the device used is different then the user should be given a KBA challenge. Directions: Create a new rule, User Velocity and use the out-of-the-box condition, User: Velocity from last successful login. To add a new rule: 1. Log in to OAAM Admin as an administrator.

2. In the Navigation tree, double-click Policies. The Policies Search page is

displayed. 3. Search for KBA Challenge.