---
sourceDocument: Australia Platform security
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/platform-security

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia Platform security

ft:clusterId :

    - psec

bundleId :

    - psec

workflow :

    - Platform


---

# Pre-work for CA

# Pre-work for Continuous Authentication {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

Ensure to perform the following pre-work before using Continuous Authentication (CA).

CA is built on ServiceNow's zero trust access security architecture that aims to enhance security by ensuring that the user remains who they claim to be, even after the initial authentication process.  
Hinweis:  
You must install the Zero Trust - Continuous Authentication (`com.snc.zero_trust_continuous_authentication`) for opting CA which requires a license.

CA configuration can be performed based on the following:

* [LDAP or Local login (Username and Password)](https://servicenow-prod.fluidtopics.net/fRWAJJwkvHoeR8vYcd7Onw#pre-work-ca__section_jqr_nhw_ycc)
* [SSO login (SAML or OIDC)](https://servicenow-prod.fluidtopics.net/fRWAJJwkvHoeR8vYcd7Onw#pre-work-ca__section_plh_4hw_ycc).

{#pre-work-ca__ul_fj1_pj2_ddc}

## CA for Local login {#pre-work-ca__section_jqr_nhw_ycc}

When the users are performing local login and to verify the Identity of the users, MFA is used as an authentication mechanism. If the users haven't setup MFA, it is compulsory to complete the setup.  
Hinweis:  
* From Yokohama, MFA is enforced to users for every login to ServiceNow performing local login.
* Make sure the MFA properties are Active and configured based on your requirement. To know more about MFA properties, see [Multi-factor Authentication system properties](https://servicenow-prod.fluidtopics.net/t9SgpdqdLvtj_Rkhwu01iw "Use system properties to enable and customize MFA to meet your security requirements.").
{#pre-work-ca__ul_tzb_ydc_d2c}

To know more, see [High Assurance session for non-SSO login](https://servicenow-prod.fluidtopics.net/_lxL0kGDrWbslo3GV2nPqw "Establish high assurance session for non-SSO logins (local or LDAP) using ServiceNow's continuous authentication.").

## CA for SSO login {#pre-work-ca__section_plh_4hw_ycc}

When the users are performing SSO based login (SAML or OIDC). To verify the Identity of the users, the same SSO used during initial login is shown as the re verification with re-authentication or IdP's MFA.  
Hinweis:  
* You must install the Zero Trust - Continuous Authentication (`com.snc.zero_trust_continuous_authentication`) for opting CA which requires a license.
* Activate the Integration - Multiple Provider Single Sign-On Installer (com.snc.integration.sso.multi.installer) plugin.
{#pre-work-ca__ul_crf_1kc_d2c}  
You must configure the IDP for CA as follows:

* Enable the check box that is required to be set on a given multi SSO record to validate that set ready for using CA.
* For OIDC, CA relies on redirecting back to the `api/now/continuous_authentication/high_assurance/oidc/consumer` endpoint, which must be configured on the IDP. Both re-authentication and IdP's MFA options are available.
* For SAML, the SSO records use the default re-athentication script for all Identity Providers (IdP) to support re-authentication.  
  Hinweis:  
  * To configure step up for Okta you can use the ContinuousAuth_Okta_StepUp_Script in the IdP record. To know more, see this [documentation](https://developer.okta.com/docs/guides/step-up-authentication/main/).
  * To configure step up for Entra ID or Azure you can use the ContinuousAuth_Azure_StepUp_Script and add the required claim. To know more, see this [documentation](https://learn.microsoft.com/en-us/entra/identity-platform/developer-guide-conditional-access-authentication-context).
  {#pre-work-ca__ul_d2s_phy_mdc}
{#pre-work-ca__ul_yn3_ljz_3dc}

To know more, see [High Assurance for SSO login](https://servicenow-prod.fluidtopics.net/AAswyijQqTWq5_Dru_wdsg "Establish high assurance session for SSO login using ServiceNow's continuous authentication.").
**Zugehörige Konzepte**   

* [Exploring Continuous Authentication](https://servicenow-prod.fluidtopics.net/fMbsn97SSru4LU1WEADEzw "ServiceNow's continuous authentication (CA) enables you to re-verify and authenticate a user if they access resources that are protected by you.")  
**Zugehörige Tasks**   

* [Activating Continuous Authentication](https://servicenow-prod.fluidtopics.net/8lkBYDMBa3s71wipjkkyuA "For activating the Continuous Authentication feature on your instance, install the Zero Trust - Continuous Authentication (com.snc.zero_trust_continuous_authentication) plugin.")
* [Configuring Continuous Authentication](https://servicenow-prod.fluidtopics.net/vxILJeY6MlUQ2JYcUouTNA "Configure continuous authentication (CA) policies to re-authenticate the users if there's an attempt to access resources that are protected by you.")

