For the complete documentation index, see llms.txt. This page is also available as Markdown.

Security

The organization-level Security settings in Autify Genesis control the allowed login methods for the organization and enforce two-factor authentication across every member.

Screenshot of the Security page
Security page

Prerequisites

  • To change security settings, you need the organization Admin or Owner role.

Requiring two-factor authentication for the organization

Require every member of the organization to register an authenticator app to reduce the risk of account takeover.

  1. Open Settings from the account menu in the lower-left corner, and click Organization > Security in the left sidebar.

  2. On the Two-factor authentication enforcement card, turn on the Require two-factor authentication switch.

  3. Enter the Grace period (days) in the dialog that appears (0 to 90 days). Setting it to 0 blocks members immediately.

    Screenshot of the two-factor authentication enforcement dialog
    Two-factor authentication enforcement dialog
  4. Click Enable enforcement.

For the steps individual members take to enable two-factor authentication, see Personal settings.

Disabling two-factor authentication enforcement

  1. Open the Security page.

  2. Turn off the Require two-factor authentication switch.

Restricting login methods for the organization

Restrict the authentication providers allowed for the organization. When every method is enabled, there is no restriction.

  1. Open the Security page.

  2. On the Login method enforcement card, turn on the switches for the methods you want to allow.

    Method
    Description

    Email & password

    Sign in with credentials registered directly in Genesis.

    Google

    Sign in with a Google account.

    Single Sign-On (SSO)

    Sign in through a registered SSO provider (OIDC / SAML). Configure providers in Single Sign-On.

    When only one method is enabled, it cannot be turned off.

Further reading

Last updated