How can we enable Multifactor Authentication (MFA) for Applications Manager?
Is there a way MFA can be implemented?
Applications Manager can only authenticate a user’s login credentials using user name and password. This can be done via the Applications Manager database or via an ldap server. At the client level additional authentication can exist using user_keystore, which would require a matching key to present on the user’s pc and master server. At this time there is no ability to use a Multi-Factor Authentication such as requiring a user to enter randomized pin sent to another device.
Applications Manager version 9.7 (current does not have a release date) will include support for SAML (Security Assertion Markup Language). This will in turn add support for SSO (Single Sign-On).
While Applications Manager will not natively support MFA, when using the SSO, there is always an Identity Provider (IdP). If the IdP offers MFA as an extra layer for authentication, then you should be able to add MFA through the IdP.
PLEASE NOTE that Applications Manager version 9.7's features such as SAML support are subject to change.