Uploaded image for project: 'Ansible Automation Platform RFEs'
  1. Ansible Automation Platform RFEs
  2. AAPRFE-1200

MFA for users with AAP Controller, Hub, EDA, etc

XMLWordPrintable

    • Icon: Feature Request Feature Request
    • Resolution: Unresolved
    • Icon: Major Major
    • None
    • 2.4
    • platform-gateway
    • False
    • Hide

      None

      Show
      None
    • False

      As part of VERIZON WIRELESS security requirement, they need to have Multi-Factor Authentication for users logging into AAP components.

      Specific use cases where They believe MFA should be integrated:

      MFA at Login: This matches your current understanding and is one essential aspect of our security needs. 
      MFA for Asset Deletion: We require MFA when deleting assets within the AAP UI, such as Job Templates (JT), Workflows (WF), Organizations (ORG), Projects, and Inventory.**
      MFA for Job Cancellations: Implementing MFA when cancelling a job belonging to another user within the same organization is crucial for us.
      MFA for Launching Jobs: Similarly, launching a job on behalf of another user in the same organization should require MFA verification.
      MFA for System Level Settings Changes: Alterations to system-level settings should be safeguarded with MFA to prevent unauthorized access or modifications.
      MFA for Organization Level Settings: We also see the need for MFA when making changes to organization-level settings for added security.

      IdP might solve MFA at Login but they still need MFA capability in the product to achieve enhanced security which is a strong requirement of enterprise grade product.

            bcoursen@redhat.com Brian Coursen
            rhn-support-ksuthar Komal Suthar
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Created:
              Updated: