misc: added mention of authenticator in the docs

This commit is contained in:
Sheen Capadngan
2024-11-16 00:10:56 +08:00
parent c4b54de303
commit 774371a218
3 changed files with 40 additions and 34 deletions
+40 -34
View File
@@ -4,19 +4,18 @@ sidebarTitle: "MFA"
description: "Learn how to secure your Infisical account with MFA." description: "Learn how to secure your Infisical account with MFA."
--- ---
MFA requires users to provide multiple forms of identification to access their account. Currently, this means logging in with your password and a 6-digit code sent to your email. MFA requires users to provide multiple forms of identification to access their account.
## Email 2FA ## Email 2FA
Check the box in Personal Settings > Two-factor Authentication to enable email-based 2FA. If 2-factor authentication is enabled in the Personal settings page, email will be used for MFA by default.
![Email-based MFA](../../images/mfa-email.png) ![Email-based MFA](/images/mfa-email.png)
<Note> ## Mobile Authenticator 2FA
Infisical currently supports email-based 2FA. We're actively working on
building support for other forms of identification via SMS and Authenticator You can use any mobile authenticator app (Authy, Google Authenticator, Duo, etc.) to secure your account. After registration with an authenticator, select **Mobile Authenticator** as your 2FA method.
App. ![Authenticator-based MFA](/images/mfa-authenticator.png)
</Note>
## Entra ID / Azure AD MFA ## Entra ID / Azure AD MFA
@@ -25,32 +24,39 @@ Check the box in Personal Settings > Two-factor Authentication to enable email-b
We also encourage you to have your team download and setup the We also encourage you to have your team download and setup the
[Microsoft Authenticator App](https://www.microsoft.com/en-us/security/mobile-authenticator-app) prior to enabling MFA. [Microsoft Authenticator App](https://www.microsoft.com/en-us/security/mobile-authenticator-app) prior to enabling MFA.
</Note> </Note>
<Steps> <Steps>
<Step title="Open your Infisical Application in the Microsoft Entra Admin Center"> <Step title="Open your Infisical Application in the Microsoft Entra Admin Center">
![Entra Infisical app](../../images/platform/mfa/entra/mfa_entra_infisical_app.png) ![Entra Infisical
</Step> app](/images/platform/mfa/entra/mfa_entra_infisical_app.png)
<Step title="Tap on Conditional Access under the Security Tab"> </Step>
![conditional access](../../images/platform/mfa/entra/mfa_entra_conditional_access.png) <Step title="Tap on Conditional Access under the Security Tab">
</Step> ![conditional
<Step title="Tap on Create New Policy from Templates"> access](/images/platform/mfa/entra/mfa_entra_conditional_access.png)
![create policy](../../images/platform/mfa/entra/mfa_entra_create_policy.png) </Step>
</Step> <Step title="Tap on Create New Policy from Templates">
<Step title="Select Require MFA for All Users and Tap on Review + Create"> ![create policy](/images/platform/mfa/entra/mfa_entra_create_policy.png)
![require MFA and review policy](../../images/platform/mfa/entra/mfa_entra_review_policy.png) </Step>
<Note> <Step title="Select Require MFA for All Users and Tap on Review + Create">
By default all users except the configuring admin will be setup to require MFA. ![require MFA and review
Microsoft encourages keeping at least one admin excluded from MFA to prevent accidental lockout. policy](/images/platform/mfa/entra/mfa_entra_review_policy.png)
</Note> <Note>
</Step> By default all users except the configuring admin will be setup to require
<Step title="Set Policy State to Enabled and Tap on Create"> MFA. Microsoft encourages keeping at least one admin excluded from MFA to
![enable policy and confirm](../../images/platform/mfa/entra/mfa_entra_confirm_policy.png) prevent accidental lockout.
</Step> </Note>
<Step title="MFA is now Required When Accessing Infisical"> </Step>
![mfa login](../../images/platform/mfa/entra/mfa_entra_login.png) <Step title="Set Policy State to Enabled and Tap on Create">
<Note> ![enable policy and
If users have not setup MFA for Entra / Azure they will be prompted to do so at this time. confirm](/images/platform/mfa/entra/mfa_entra_confirm_policy.png)
</Note> </Step>
</Step> <Step title="MFA is now Required When Accessing Infisical">
</Steps> ![mfa login](/images/platform/mfa/entra/mfa_entra_login.png)
<Note>
If users have not setup MFA for Entra / Azure they will be prompted to do
so at this time.
</Note>
</Step>
</Steps>
Binary file not shown.

After

Width:  |  Height:  |  Size: 557 KiB

Binary file not shown.

Before

Width:  |  Height:  |  Size: 236 KiB

After

Width:  |  Height:  |  Size: 555 KiB