Zetect Usage Guide Admin PortalSwitch portal ⇄

Authentication Rules

Authentication Rules decide, per sign-in, which provider verifies the first factor and which second factors are demanded. Conditions can target group membership, attributes or the risk level computed for the attempt.

Authentication Rules screen
Authentication Rules — captured from the h-technova tenant.

How to use it

  1. Open Authentication → Auth Rules and add a rule.
  2. Name it and set a sort order — lower numbers are evaluated first.
  3. Add conditions, for example membership of the Platform Admin group.
  4. Choose the first-factor provider, such as CyIAM Store or Corporate AD.
  5. Optionally require one or more MFA factors.
  6. Save. The rule takes effect on the next sign-in attempt.

Field reference

FieldDescription
Sort orderEvaluation order. The first matching rule wins, so put specific rules above general ones.
ConditionsGroup, attribute or risk-level tests that determine whether the rule applies.
First factor providerCyIAM Store for local passwords, LDAP for directory authentication, or an external IdP for federated sign-in.
MFA factorsSecond factors required when this rule matches.

Example — Demo rules

User Loginorder 0 · Corporate AD
Admin Authenticationorder 0 · CyIAM Store
Default Authenticationorder 999 · CyIAM Store