Two-factor authentication (2FA) for Akamai Cloud

📘

This information is for account admins. If you're looking for information on using 2FA as an individual user, see Manage 2FA on a user account

Two-factor authentication adds a second layer of security to your Cloud Manager login. In addition to your password, you confirm your identity with a one-time code generated by an authenticator app on a separate device. Even if your password is compromised, an attacker can't log in without also having your authenticator app.

When enforced, selected users need to configure 2FA before they can log in. Users you exempt from enforcement can still log in with a password only.

What happens when you turn enforcement on

  • Existing users. Users you newly require to use 2FA receive an email with setup instructions. They are blocked from logging in until they configure 2FA.
  • Existing users who have already configured 2FA. These users won't receive any emails or see any difference when they login.
  • New users. Any user added to the account after enforcement is enabled is automatically required to set up 2FA before their first login.
  • SSO-Required users . Cloud Manager handles 2FA for direct logins. Anyone required to log in through single-sign on needs to configure their 2FA settings through their SSO identity provider.
  • SSO User exceptions. If two-factor authentication is enforced, these users need to configure two-factor authentication in Cloud Manager so they can log in. Accounts omitted from SSO requirements use native username and password authentication, so Cloud Manager's MFA enforcement applies to them directly.

What happens when you turn enforcement off

  • Existing users. Users who were previously required to use 2FA can now log in with just a password. 2FA becomes optional for them.
  • New users. 2FA is completely optional for any new users added going forward.

Next step:

Enforce two-factor authentication for an account




Did this page help you?