問題文
A service must raise the authentication requirement only when the circumstances of a request look unusual, and must not add friction for ordinary requests. Which authentication approach fits that requirement?
選択肢
- The service should apply certificate bound device authentication at that point.
- The service should apply single factor password authentication at that point.
- The service should apply risk responsive elevation authentication at that point.
- The service should apply uniformly mandatory multifactor authentication at that point.