---
sourceDocument: Australia Platform security
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/platform-security

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia Platform security

ft:clusterId :

    - psec

bundleId :

    - psec

workflow :

    - Platform


---

# MFA context

# Multi-factor Authentication context {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 Minuten Lesedauer

The Multi-factor Authentication (MFA) policy context uses a policy to define how and when MFA is enforced during the login process.

## MFA context record {#mfa-auth-context__section_fmr_pds_2qb}

The MFA policy context defines whether your users must provide a second form of authentication when logging in. This context does not deny access to your instance as the post-authentication and pre-authentication policies. The
policy you select in this context takes precedence over user or role-based configurations for multi-factor authentication.

To access the MFA context, navigate to AllMulti-factor AuthenticationMFA Context.

Use the fields in the Post-authentication policy context record to define how your instance
uses your policy.  
Hinweis:  
* If the default policy is Step-Up MFA Policy, users will be shown with Multi-factor Authentication if policy configured in Step-Up MFA Policy evaluates to true. Policy takes precedence over the user or role based configuration.
* MFA with SSO login will only be available if <kbd class="ph userinput">glide.authenticate.mfa.with.multisso.enabled</kbd> Property is set to true.
* You can navigate to the Authentication Policy record to Add or Edit the 'Policy Input(s)' to the referenced Policy field (Step-Up MFA Policy or Step-Down MFA Policy).
* MFA context policy applies only for user log ins. It does not apply for API authentication, basic auth, and OAuth resource owner password credential grant.
{#mfa-auth-context__ul_vtv_yyw_jrb}  
{#mfa-auth-context__table_otz_ngr_2qb__entry__2}

| Field | Description |
|-|-|
| Name | Name of the policy context. This field is static and cannot be changed. |
| Description | Description of the context |
| Default Policy | Defines the default behavior of this context when evaluating the policy. Select from the following options. Step-Up MFA Policy :   Enforces MFA to users when the policy conditions defined in the Step-Up MFA Policy field evaluate to true. Step-Down MFA Policy :   Enforces MFA by default. MFA is not enforced only when the policy conditions defined in the Step-Down MFA Policy field evaluate to true. |
| Step-Up MFA Policy | The policy used for this context uses. This field appears only when the Default Policy field is set to Step-Up MFA Policy. |
| Step-Down MFA Policy | The policy used for this context uses. This field appears only when the Default Policy field is set to Step-Down MFA Policy. |
[Tabelle : 1. MFA context form]

{#mfa-auth-context__table_otz_ngr_2qb}

## Policy inputs and conditions {#mfa-auth-context__section_uw4_vhr_2qb}

The Policy Input and Policy Conditions tabs
display the inputs and conditions of the policy selected in the Step-Up MFA Policy or Step-Down MFA Policy field. These tabs serve as a
reference, but cannot be used to change the policy inputs or conditions. To modify your policy
settings, navigate to the policy using the reference icon (![Reference icon]()) next to the Step-Up MFA Policy or Step-Down MFA Policy field.  
Hinweis:  
Policy conditions can be created from here, but as a good practise it is recommended to add new policy conditions from policy page.  
This example shows an MFA context record configured using a step-up MFA policy. This default policy means that MFA is enforced only when the conditions defined in the policy evaluate to true. The context uses a policy called Step-Up MFA policy. That policy has a set of inputs and conditions that are displayed in the Policy Input and Policy Condition tabs.Abbildung : 1. MFA policy context form

## MFA factor policies {#mfa-auth-context__section_qbk_xhx_bgc}

MFA factor policies are a critical component of an organization's security posture, enabling you to enforce additional verification steps beyond passwords. These policies define the authentication methods that users must employ
to access providing a flexible and customizable approach to authentication. For more information, see [Multi-Factor Authentication factor policies](https://servicenow-prod.fluidtopics.net/sfsV52pp10B1K~vfttnk8Q "Use the MFA factor policies to specify the types of authentication factors that you would like to permit for your instance.").

