Enhancement: SSO and MFA
- Editing MFA text and emails. Eg. The page that prompts the user to set TOTP. Change naming convention when MFA is added to authenticator app. When a user scans the QR code to set their TOTP, change default text based on the SmartSimple environment.
- MFA batch reset functionality. Right now we manually have to reset MFA for each user.
- Enable automatic redirect to SSO link for users when they log in with username/password instead of showing them an error page asking them to login again using SSO link. This is a standard feature available for most apps that offer single sign-on
- Allow for the creation of SSO exempt users irrespective of the Role assignment. Currently users that need to be SSO exempt have to not have the SF Staff role but there should be a way to create breakglass accounts that may have the necessary roles but may be SSO exempt.
- Login History for users should include information on whether the user is logging in with SSO or via username/password. This is currently not available in the logging.
                1
                 vote
              
            
 Lewis Kim
    
 shared this idea
Lewis Kim
    
 shared this idea
      
    