๐ Enabling MFA in Oracle Fusion Cloud Applications via OCI IAM
Here's a clear and structured summary of how to enable and manage Multifactor Authentication (MFA) in Oracle Fusion Cloud Applications after migrating to OCI IAM Identity Domains, along with the available factors and key business benefits:
๐ Enabling MFA in Oracle Fusion Cloud Applications via OCI IAM
✅ Available MFA Authentication Factors
Security admins can enable any combination of the following six authentication methods:
One-Time PIN over Email
One-Time PIN over SMS
Passcode on Oracle Mobile Authenticator App
Push Notification from Oracle Mobile Authenticator App
FIDO Passkey Authenticator (e.g., biometric devices)
Bypass Code (temporary use, typically admin-generated)
⚙️ Steps for Admins: Configure MFA Settings
๐ง 1. Restrict or Allow MFA Factors (Optional)
To control which factors users can use:
Go to Security Console
Navigate to User Categories
Select a user category
Click Two-Factor Authentication > Edit
Select only the desired authentication methods
Click Save and Close
Default Enabled Factors:
One-Time PIN over Email
One-Time PIN over SMS
Passcode on Oracle Mobile Authenticator
๐ค Steps for Users: Enable MFA
๐ 2. Enroll in MFA (User Self-Service)
Sign in with your user ID and password.
Click your user name/image in the global header.
Select Set Preferences > Password > Manage Secure Verification.
You’ll be redirected to Oracle Cloud Console.
Click Enable Secure Verification.
Choose a method (e.g., mobile app, email, FIDO, SMS).
Complete the verification setup:
Mobile App: Use Oracle Mobile Authenticator (Push or Offline Passcode)
Email/SMS: Receive and enter the OTP
FIDO Authenticator: Register a passkey using biometric or hardware token
Once one method is verified, you can add more from the Security tab.
๐ Business Benefits of Enabling MFA
| Benefit | Description |
|---|---|
| ๐ Enhanced Security | Reduces risk of compromised accounts with an additional authentication layer |
| ๐ Reduced Breaches | Helps prevent unauthorized access to sensitive HCM data |
| ๐ Secure Remote Access | Ideal for supporting remote and hybrid workforce |
| ๐งญ Compliance Support | Assists in meeting regulatory and audit requirements |
| ✅ User Self-Service | Simplified setup and management for users |
Reference: https://docs.oracle.com/en/cloud/saas/readiness/common/25b/common25b/25B-common-wn-f37839.htm#Steps-to-Enable
Comments
Post a Comment