Risk Based Authentication

Risk-Based Authentication (RBA) is an additional layer of security used to trigger actions and notifications based on a customer's current behavior relative to their past activity. The customer's location, IP, browser and device can be used as parameters to assess potentially risky behavior.

To access the RBA configurations, log in to your LoginRadius account and navigate to Platform Security > Multi-Layered Security > Risk-Based Authentication. On the left-hand panel, you will be provided with the supported RBA Settings.

Note: For further details on implementing Risk-Based Authentication on your site, see Advanced Customization.

RBA Settings

  • Toggle the switch corresponding to the available risk factor options to enable them. Accordingly, the risk criteria for City, Country, IP, Browser and Device will then be displayed. Here is a quick snapshot of the Risk-Based Authentication configuration in your LoginRadius user account.

    Step 1

  • Configure the risk criteria settings as per your requirements. It is to be noted that, only when you select Multi Factor Authentication in the Actions drop-down, for any of the risk criteria, the Multi factor Settings tab will become configurable.

    Step 2

Multi-Factor Settings

Configure the Multi-Factor Authentication settings. These settings will be used when an MFA action is triggered through RBA.

enter image description here

Admin Email

Add emails of your admins who will receive triggered RBA notifications.

enter image description here

Email Templates

This section allows you to fully customize the email template that will be sent to customers and admins in case a risk is detected. Please see Email Template Customization for more details.

enter image description here

SMS Templates

This section allows you to fully customize the SMS template that will be sent to customers in case a risk is detected.

enter image description here