IBM Verify

IBM Verify

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only

Using IBM Verify Identity Access for MFA

  • 1.  Using IBM Verify Identity Access for MFA

    Posted Fri September 19, 2025 12:00 PM

    Dear Team,

    We would like to request guidance on using IBM Verify Identity Access (ISVA) as an MFA solution without federation.

    Currently, we are always using federation (SAML or OIDC) with enforced MFA. However, our new requirement is to use ISVA only as MFA, and the environment is not accessible through the internet.

    We are considering using Protected Applications and Access Policies to apply MFA. The challenge is how to obtain the user ID from the login session in order to identify the user and enforce MFA, without prompting for the user ID and password again.

    Since this environment has no internet access, we cannot use mobile push notifications. Our plan is to rely on email and SMS as the MFA factors.

    Could you please advise on the best approach to achieve this requirement?

    Thanks & Best Regards,



    ------------------------------
    Mohamed Ahmed
    ------------------------------