Device registration allows a user to flag the computer, PDA, mobile phone, or other devices he is logging in with as a safe device.
The device is added to the user's profile as a registered device.
In native integration, to enable device registration:
Set bharosa.tracker.send.devideId
to true, so the device ID can be captured.
Call these APIs directly:
In Oracle Adaptive Access Manager out-of-the-box, to enable device registration for all applications:
Add the following properties to oaam_custom.properties
:
# Adds device registration to the challenge question registration page bharosa.uio.default.register.questions.registerdevice.enabled=true # Adds device registration to the Contact Information registration page bharosa.uio.default.register.userinfo.registerdevice.enabled=true # Enables device registration bharosa.uio.default.registerdevice.enabled=true # Enables user to be able to unregister current device in user preferences bharosa.uio.default.userpreferences.unregister.this.enabled=true # Enables user to be able to unregister all devices in user preferences bharosa.uio.default.userpreferences.unregister.all.enabled=true
You can also enable these properties through user preferences in the OAAM server.
To enable the features on an application-specific bases, "default" can be replaced with the appropriate appId
in each of the prior property names.
Once the feature is enabled, information about the device is collected for that user. To make use of the information you are collecting, you must create policies and configure them properly. For example, you can create a policy with rules to challenge a user that is not logging in from one of the registered devices.