IBM Support

Enhanced Two-Factor authentication for critical actions

News


Abstract

IBM® MaaS360® introduces an enhanced security feature that adds two-factor authentication (2FA) for critical administrative actions. This feature provides an extra layer of security by requiring administrators to verify their identity by using a one-time passcode (OTP) when performing irreversible actions such as device wipes, profile updates. The OTP can be delivered through SMS and email, or through a time-based one-time password (TOTP) in the authenticator app if configured.

Content

To protect against unauthorized access and potential security breaches, IBM® MaaS360® introduced two-factor authentication for critical administrative actions. When you attempt to perform an action that cannot be reversed, the system prompts you to enter a one-time passcode instead of your standard password. This feature helps ensure that even if your credentials are compromised, unauthorized users cannot run critical operations.

Note: The two-factor authentication functionality will be available in the IBM® MaaS360® portal from 13 July 2026.

Impact

This enhancement affects how administrators perform critical actions in IBM® MaaS360®. When the administrator initiates a critical action, IBM® MaaS360® prompts for a one-time passcode instead of the standard password prompt. The administrator must enter the passcode received through email and SMS, or from the authenticator app to proceed. Administrators with appropriate permissions can also customize which actions require two-factor authentication. Administrators can authenticate by using OTP through SMS and email, or TOTP through an authenticator app if strong authentication is configured.

By default, the following actions are configured as critical:

  •  Wipe
  • Profile Update 
  • Settings Change

 

 

 

[{"Type":"MASTER","Line of Business":{"code":"LOB77","label":"Automation Platform"},"Business Unit":{"code":"BU048","label":"IBM Software"},"Product":{"code":"SSYSXX","label":"IBM MaaS360"},"ARM Category":[{"code":"a8m3p000000hCHmAAM","label":"PLATFORM-\u003EAUTHENTICATION"}],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":""}]

Document Information

Modified date:
17 June 2026

UID

ibm17274863