misc: added mention of authenticator in the docs

This commit is contained in:
Sheen Capadngan
2024-11-16 00:10:56 +08:00
parent c4b54de303
commit 774371a218
3 changed files with 40 additions and 34 deletions
+23 -17
View File
@@ -4,19 +4,18 @@ sidebarTitle: "MFA"
description: "Learn how to secure your Infisical account with MFA." description: "Learn how to secure your Infisical account with MFA."
--- ---
MFA requires users to provide multiple forms of identification to access their account. Currently, this means logging in with your password and a 6-digit code sent to your email. MFA requires users to provide multiple forms of identification to access their account.
## Email 2FA ## Email 2FA
Check the box in Personal Settings > Two-factor Authentication to enable email-based 2FA. If 2-factor authentication is enabled in the Personal settings page, email will be used for MFA by default.
![Email-based MFA](../../images/mfa-email.png) ![Email-based MFA](/images/mfa-email.png)
<Note> ## Mobile Authenticator 2FA
Infisical currently supports email-based 2FA. We're actively working on
building support for other forms of identification via SMS and Authenticator You can use any mobile authenticator app (Authy, Google Authenticator, Duo, etc.) to secure your account. After registration with an authenticator, select **Mobile Authenticator** as your 2FA method.
App. ![Authenticator-based MFA](/images/mfa-authenticator.png)
</Note>
## Entra ID / Azure AD MFA ## Entra ID / Azure AD MFA
@@ -25,32 +24,39 @@ Check the box in Personal Settings > Two-factor Authentication to enable email-b
We also encourage you to have your team download and setup the We also encourage you to have your team download and setup the
[Microsoft Authenticator App](https://www.microsoft.com/en-us/security/mobile-authenticator-app) prior to enabling MFA. [Microsoft Authenticator App](https://www.microsoft.com/en-us/security/mobile-authenticator-app) prior to enabling MFA.
</Note> </Note>
<Steps> <Steps>
<Step title="Open your Infisical Application in the Microsoft Entra Admin Center"> <Step title="Open your Infisical Application in the Microsoft Entra Admin Center">
![Entra Infisical app](../../images/platform/mfa/entra/mfa_entra_infisical_app.png) ![Entra Infisical
app](/images/platform/mfa/entra/mfa_entra_infisical_app.png)
</Step> </Step>
<Step title="Tap on Conditional Access under the Security Tab"> <Step title="Tap on Conditional Access under the Security Tab">
![conditional access](../../images/platform/mfa/entra/mfa_entra_conditional_access.png) ![conditional
access](/images/platform/mfa/entra/mfa_entra_conditional_access.png)
</Step> </Step>
<Step title="Tap on Create New Policy from Templates"> <Step title="Tap on Create New Policy from Templates">
![create policy](../../images/platform/mfa/entra/mfa_entra_create_policy.png) ![create policy](/images/platform/mfa/entra/mfa_entra_create_policy.png)
</Step> </Step>
<Step title="Select Require MFA for All Users and Tap on Review + Create"> <Step title="Select Require MFA for All Users and Tap on Review + Create">
![require MFA and review policy](../../images/platform/mfa/entra/mfa_entra_review_policy.png) ![require MFA and review
policy](/images/platform/mfa/entra/mfa_entra_review_policy.png)
<Note> <Note>
By default all users except the configuring admin will be setup to require MFA. By default all users except the configuring admin will be setup to require
Microsoft encourages keeping at least one admin excluded from MFA to prevent accidental lockout. MFA. Microsoft encourages keeping at least one admin excluded from MFA to
prevent accidental lockout.
</Note> </Note>
</Step> </Step>
<Step title="Set Policy State to Enabled and Tap on Create"> <Step title="Set Policy State to Enabled and Tap on Create">
![enable policy and confirm](../../images/platform/mfa/entra/mfa_entra_confirm_policy.png) ![enable policy and
confirm](/images/platform/mfa/entra/mfa_entra_confirm_policy.png)
</Step> </Step>
<Step title="MFA is now Required When Accessing Infisical"> <Step title="MFA is now Required When Accessing Infisical">
![mfa login](../../images/platform/mfa/entra/mfa_entra_login.png) ![mfa login](/images/platform/mfa/entra/mfa_entra_login.png)
<Note> <Note>
If users have not setup MFA for Entra / Azure they will be prompted to do so at this time. If users have not setup MFA for Entra / Azure they will be prompted to do
so at this time.
</Note> </Note>
</Step> </Step>
</Steps> </Steps>
Binary file not shown.

After

Width:  |  Height:  |  Size: 557 KiB

Binary file not shown.

Before

Width:  |  Height:  |  Size: 236 KiB

After

Width:  |  Height:  |  Size: 555 KiB