Test Objective
Within the specified access period, accessing business resources triggers challenge authentication. Access succeeds after the authentication is passed.
Prerequisites
1. The iOA client is successfully deployed.
2. Complete account creation and authentication source configuration.
3. Complete adding the business resource.
4. Complete authorization for the corresponding users and resources.
Test Examples
Example scenario: During off-work hours from 00:00 to 6:00, accessing specified business resources triggers challenge authentication.
Step 1: Defining Off-Hours
2. On the User Behavior Security page, select Detection Item Configuration and click Edit for Non-working hours login.
3. Example: To set account login during off-work hours from 0:00 to 6:00, click confirm.
Step 2: Configuring an Authentication Policy
2. Select the directory name and click Add Authentication Policy.
3. Configuration example: Set the authentication source for the PC-side challenge authentication method to iOA Local Account Password and click Add.
Step 3: Configuring an Access Security Policy
2. On the Create Policy page, configure the relevant parameters. For Access Action, select Access After Challenge Authentication. Set Access Period to 00:00–6:00 and click Save.
Step 4: Terminal Verification
When an account logs in during off-work hours (0:00–6:00), accessing specified business resources triggers challenge authentication. Access at other times does not trigger challenge authentication.