---
sourceDocument: Australia Platform security
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/platform-security

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia Platform security

ft:clusterId :

    - psec

bundleId :

    - psec

workflow :

    - Platform


---

# Prohibit Use of KBA as Single Factor for AI Voice

# Prohibit Use of KBA as Single Factor for AI Voice {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

Use a system property to prevent Knowledge Based Authentication (KBA) from being the only factor of authentication required to authenticate to the platform for AI voice.
Use the glide.voice.authenticate.allow_kba_as_only_factor system property to prevent security questions from being the only factor of authentication required to authenticate to the platform in the AI voice
agent authentication feature. Knowledge Based Authentication (KBA) allows users to answer security questions as an authentication factor. Learn more about authentication factors for AI voice agents at [Explore authentication factors for AI voice agents](https://servicenow-prod.fluidtopics.net/PL17taq2Aj4c7V3y5unp~g "Authentication factors are the elements used for caller identification and authentication. In secure voice agent environments, the process begins with identifying the caller, followed by authenticating their identity before granting access. A robust security strategy combines multiple factors to confirm that only authorized users interact with AI voice agents.").

Ensure that the glide.voice.authenticate.allow_kba_as_only_factor system property is set to <kbd class="ph userinput">false</kbd>.

## More information {#sc-prohibit-use-of-kba-as-single-factor-for-ai-voice__section_wc1_cqn_phc}

{#sc-prohibit-use-of-kba-as-single-factor-for-ai-voice__table_ajc_b43_3kb__entry__2}

| Attribute | Description |
|-|-|
| Configuration name | glide.voice.authenticate.allow_kba_as_only_factor |
| Configuration type | System Properties (/sys_properties_list.do) |
| Data type | Boolean |
| Recommended value | false |
| Default value | false |
| Fallback value | false |
| Category | [Authentication](https://servicenow-prod.fluidtopics.net/faHnGPrE5YkSR8Xq~3OW5g "The authentication category covers the main elements of modern authentication to confirm an entity and its claims are authentic and correct, resistant to impersonation and prevent interception of passwords.") |
| Security risk | * Severity score: 3.3 * CVSS score: Low * Security risk details: Allowing users to authenticate with a single factor increases the risk of account compromise if that factor is compromised. Enforcing Multi-factor Authentication (MFA) is recommended. If single-factor access is allowed, then KBA security questions aren't recommended as the single factor. Security questions can be guessed, learned through social engineering, or obtained from public records, increasing the risk of account compromise. {#sc-prohibit-use-of-kba-as-single-factor-for-ai-voice__ul_g1g_3sf_xwb} |
| Functional impact | If KBA can't be used as a single factor of authentication, then users must use another form to authenticate to the platform for the Voice Authentication feature, such as SoftPin or SMS OTP. |
| Dependencies and prerequisites | AI voice agent authentication feature is setup and enabled. |
[ ]

{#sc-prohibit-use-of-kba-as-single-factor-for-ai-voice__table_ajc_b43_3kb}

