Risk-based authentication whitelisting allows trusted devices to bypass second-factor authentication. Agents can enable or disable this setting to streamline login for known environments.
Steps to manage RBA whitelist settings:
Select Users from the left navigation pane.
Use the search bar to find the user by name, email, or username, etc.
Open the user profile and go to Account settings tab.
In RBA whitelist:
Use the toggle button to enable or disable the whitelist.
Result
Note:
When enabled, users can log in using only their username and password or passkey.
When disabled, users must enter a one-time password (OTP) during every login attempt.