Question

Security configuration

  • 21 August 2023
  • 2 replies
  • 55 views

Badge +3

Unfortunantly, I’ve discovered that IFS Cloud does not  enforce hard password . Meaning, a user can create a acount and configuration a very fragile password with 4 letters. 

 

do you know where to find document about the security hardening of IFS App.

 

Thank you


2 replies

Userlevel 2
Badge +4

Hi Jnagati,

For the native IAM in IFS Cloud this can be done via this screen: “Solution Manager\Users and Permissions\Identity and Access Manager\Password Policies”

However if your IFS Cloud is publicly available I would recommend using an external identity provider that can provide MFA (Such as Azure AD).
 

Userlevel 3
Badge +8

Agreed! We implemented SSO with Azure AD and it works like a charm. It eliminates the need for separate password resets, account deactivation, etc. since it’s all controlled centrally. We are configuring as many of our applications to use SSO as we can.

Reply