March 12, 2019 By Ben Lopez
Martin Smolny
Michelle Kaufman
2 min read

Multifactor authentication for IBM Cloud users

We are excited to deliver a highly requested feature to our IBM Cloud account owners that supports multifactor authentication (MFA) for federated IDs. A user with a federated ID can log in by using their corporate or enterprise single sign-on (SSO) ID. The enhanced MFA functionality now allows account owners or users with the administrator role on the billing account management service to enable MFA for all users in the account, whether they have a federated or non-federated ID.

For those unfamiliar with MFA, it is also known as two-factor authentication. It adds an extra layer of security to the login process by requiring a user to provide a time-based, one-time passcode (TOTP) that is set up using an authenticator app in addition to their standard ID and password. To put it simply, MFA support strengthens security by preventing unauthorized account access and protecting your data.

What you need to know about enabling MFA

While this is exciting news, there are a few things all account owners and billing service administrators should know prior to enabling MFA for their users for the first time:

  • When MFA is enabled, users need an authenticator app. We will walk users through how to get the authenticator app on a smartphone device via our UI when they log in. 
  • Any user without an authenticator app won’t be able to log in because after MFA is turned on, every user is required to provide their passcode the next time they log in.
  • If you require MFA for your account and you have users in your account that do not have an IBMid, you must enable one of the other MFA options for that user from their User details page in the IBM Cloud console. For more information, see Types of MFA.
  • If you are using CLI, you must use API keys or SSO after MFA is enabled for the account.

Before you turn on MFA, we recommend alerting all IBM Cloud users of the upcoming change and providing instructions for configuring the authenticator smartphone app. These two practices will help prepare your users for the change and prevent any login delays when you enable MFA. See below for a step-by-step walkthrough:

Spread the news

We are ready when you are. Spread the news to your users and head to the IAM Settings page to take the next step towards stronger security and better flexibility with MFA. For more information on the step-by-step process, check out the documentation. Feel free to use the feedback button located on every page in IBM Cloud to provide feedback. Good or bad, we are listening. Lastly, we welcome you to join us on your hybrid and multicloud journey, and we look forward to constantly improving your experience with IBM Cloud.

Was this article helpful?
YesNo

More from Cloud

Top 6 innovations from the IBM – AWS GenAI Hackathon

5 min read - Generative AI innovations can transform industries. Eight client teams collaborated with IBM® and AWS this spring to develop generative AI prototypes to address real-world business challenges in the public sector, financial services, energy, healthcare and other industries. Over the course of several weeks, cross-functional teams comprising client teams, IBM and AWS representatives worked to design, develop and iterate on prototypes that push the boundaries of what's possible with generative AI. IBM used design thinking and user-centric approach to guide the…

IBM + AWS: Transforming Software Development Lifecycle (SDLC) with generative AI

7 min read - Generative AI is not only changing the way applications are built, but the way they are envisioned, designed, tested, documented, and deployed. It’s also revolutionizing the software development lifecycle (SDLC). IBM and AWS are infusing Amazon Bedrock generative AI capabilities into the IBM® SDLC solution to drive increased efficiency, speed, quality and value in every application lifecycle consistently and at scale. The evolution of the SDLC landscape The software development lifecycle has undergone several silent revolutions in recent decades. The…

How digital solutions increase efficiency in warehouse management

3 min read - In the evolving landscape of modern business, the significance of robust operational and maintenance systems cannot be overstated. Efficient warehouse management helps businesses to operate seamlessly, ensure precision and drive productivity to new heights. In our increasingly digital world, bar coding stands out as a cornerstone technology, revolutionizing warehouses by enabling meticulous data tracking and streamlined workflows. With this knowledge, A3J Group is focused on using IBM® Maximo® Application Suite and the Red Hat® Marketplace to help bring inventory solutions…

IBM Newsletters

Get our newsletters and topic updates that deliver the latest thought leadership and insights on emerging trends.
Subscribe now More newsletters