Abiquo Documentation Cookies Policy

Our Documentation website uses cookies to improve your experience. Please visit our Cookie Policy page for more information about cookies and how we use them.


Abiquo 4.6

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Excerpt

To configure the authentication system do these steps:

  1. Synchronize system time: two-factor codes are dependent on the system time
  2. For a multi-datacenter configuration, configure Appliance manager for template upload and download as described in Uploading and downloading templates in multi datacenter

  3. For each enterprise that requires 2FA, migrate automation and integrations to OAuth, see Authentication#OAuthv1.0VersionAAuthentication. To implement two-factor authentication for a portal, see Authentication

  4. For events and event streaming, if the M-user belongs to a tenant that must use 2FA, configure the M-user to use OAuth.Enter the OAuth credentials in the Abiquo properties file. See Abiquo Configuration Properties#m. See Authentication#OAuthv1.0VersionAAuthentication

  5. Configure Google Authenticator properties. Set the name of the issuer of authentication codes. See Abiquo Configuration Properties#2fa 

  6. Configure email authentication properties:

    1. Set the email server configuration, including the sender with the "from" property. See Abiquo Configuration Properties#server

    2. Set the length of time that the email codes will be valid for. See Abiquo Configuration Properties#2fa

  7. For email authentication, you can edit the email message. See Configure Email Templates

Troubleshooting two-factor authentication

  • Check server date and time synchronization as part of the user issue troubleshooting process.

Manage two-factor authentication in the

Abiquo

UI

To enable 2fa for the platform:

  • Go to Configuration → Security
  • Edit the options and select Enable

    Include Page
    Manage two factor authentication

    Image Removed

    To require 2fa for a tenant:

    1. Go to Users → edit enterprise → General
    2. Select the option to Require two-factor authentication for all users in the enterprise.

    Image Removed

    If two-factor authentication is not required, a user can still enable it for own user only. See Enable two factor authentication

    Image Removed

    in the UI
    Manage two factor authentication in the UI

    Manage two factor authentication via the API

    To require 2fa mandatory for a tenant, edit the enterprise and set the value of the twoFactorAuthenticationMandatory attribute to true.

    To enable or disable 2fa for a user, post the authentication method to the action link of the user.

    ...