Which are the conditions when the Secondary Auth Status in Risk Evaluation Detail Activity Report becomes Abandoned?
Risk Authentication
Release : All
The Secondary Authentication Status will transition to "Abandoned" under certain conditions where the user does not successfully complete the step-up authentication process. This typically occurs after receiving an INCREASEAUTH
advice, indicating that additional authentication is required. The "Abandoned" status may result from scenarios such as the user actively canceling the authentication page or failing to complete the process within the allotted time, leading to a timeout.
Additionally, the "Abandoned" status can appear when the advice type is set to ALLOW
. In this scenario, the system determines that no step-up authentication is required, and therefore, no One-Time Password (OTP) is generated or sent to the user. This status reflects that the step-up authentication process was either bypassed due to the ALLOW
advice or left incomplete in the absence of user interaction.