Two-factor authentication requires you to enter two forms of identification before you can access your CSP Vault.
- The first form is your standard username and password combination,
- The second is a one-time password (OTP) generated by an authorization app. The OTP is appended to your existing password.
See below for how to enable and manage it.
- Requirements for enabling two-factor authentication in Vault for Secrets
- Enforcing two-factor authentication in Vault for Secrets
- Disabling two-factor authentication in Vault for Secrets
Two-factor authentication is supported with local authentication only. If you want to use two-factor authentication for non-local users, we recommend enabling it in your remote authentication provider.