---
title: Configuring an authenticating from new device rule (web policy)
description: Define which authentication action to prompt the user with when a user signs on through the web and attempts to authenticate with a new device for the first time.
component: pingid
page_id: pingid:pingid_service_management:pid_configuring_authenticating_from_new_device_rule_web_policy
canonical_url: http://docs.pingidentity.com/pingid/pingid_service_management/pid_configuring_authenticating_from_new_device_rule_web_policy.html
revdate: January 28, 2024
section_ids:
  steps: Steps
  result: Result:
  choose-from: Choose from:
  next-steps: Next steps
---

# Configuring an authenticating from new device rule (web policy)

Define which authentication action to prompt the user with when a user signs on through the web and attempts to authenticate with a new device for the first time.

## Steps

1. From within the relevant policy, click**[icon: plus, set=fa] Add Rule** and select **Authenticating From New Device**.

   ![A screen capture of the Authenticating From New Device rule.](_images/rlc1564020576890.png)

   ### Result:

   The **Authenticating From New Device** rule is added to the policy.

2. From the **Action** list, select the action to use when authenticating with a device for the first time.

   ### Choose from:

   * **Authenticate**: Allow the user to authenticate using any of the authentication methods allowed at the policy level.

   * **Allowed Methods**: Click **Allowed Methods** to reveal a list of authentication methods allowed by this policy, and then select the check box of each authentication method that you want to allow for this rule. See [Rule authentication actions](pid_rule_auth_actions.html) for description per authentication type.

3. Click **Save**.

4. In the **Policy** list, click and drag the new policy and place it in the order in which you want it to be considered. Click **Save Order**.

## Next steps

To ensure the policy is applied to your organization, go to **PingID → Configuration** and ensure **Enforce Policy** is set to **Enabled**.
