Skip to main content
Question

Security configuration

  • August 21, 2023
  • 2 replies
  • 84 views

Forum|alt.badge.img+4

Unfortunantly, I’ve discovered that IFS Cloud does not  enforce hard password . Meaning, a user can create a acount and configuration a very fragile password with 4 letters. 

 

do you know where to find document about the security hardening of IFS App.

 

Thank you

2 replies

Forum|alt.badge.img+6
  • Do Gooder (Customer)
  • August 21, 2023

Hi Jnagati,

For the native IAM in IFS Cloud this can be done via this screen: “Solution Manager\Users and Permissions\Identity and Access Manager\Password Policies”

However if your IFS Cloud is publicly available I would recommend using an external identity provider that can provide MFA (Such as Azure AD).
 


Forum|alt.badge.img+8
  • Sidekick (Customer)
  • August 21, 2023

Agreed! We implemented SSO with Azure AD and it works like a charm. It eliminates the need for separate password resets, account deactivation, etc. since it’s all controlled centrally. We are configuring as many of our applications to use SSO as we can.