Get the inside scoop with LoginTC and learn about relevant security news and insights.
July 08, 2024 •
The popular VPN and firewall service provider, Fortinet, is taking a strong stance on security by enforcing the adoption of two-factor authentication (2FA) across its entire user base. Learn about the new Fortinet 2FA requirement and how to get your organization ready before the deadline.
Starting on July 24, 2024 all Fortinet customers are required to have two-factor authentication (2FA) enabled on their accounts. This requirement applies to all types of users, including master users, sub users, IAM users, and organizational unit users.
If 2FA has not been enabled by the administrator by the cut off date, Fortinet has said they will be automatically configuring 2FA on accounts. The default method will be Email OTP, and if users no longer have access to the email address on file for their Fortinet account, login complications could arise.
Fortinet has stated a commitment to higher security standards, and cited two factor authentication as a necessary tool to achieve strong security that protects people and organizations from malicious actors.
This is in line with guidance from the National Institute of Standards and Technology (NIST) who recommend two-factor authentication — also known as multi-factor authentication (MFA) — to be implemented to prevent cyber attacks. Research shows that MFA can prevent up to 99.99% of attacks caused by compromised accounts.
Companies have been under pressure recently to take a stronger stance on enforcing MFA, as cyber threats continue to escalate. The cloud data warehouse company, Snowflake, is being criticized for poor MFA management controls that caused a damaging attack, which has seen cascading breaches ripple through the supply chain.
Fortinet’s new MFA enforcement rules will ensure better baseline security for all its customers.
Fortinet has released the following steps to enable 2FA:
If you want more flexibility and control over 2FA for your Fortinet appliances, you should consider a third-party 2FA/MFA solution.
Third party 2FA tools allow administrators to centrally manage 2FA operations across all their applications and services. End-users can login everywhere with the same 2FA token, eliminating friction and confusion when it comes to logging in, and reducing help desk calls.
Third party 2FA solutions also offer additional authentication methods other than just software tokens and email one-time-passwords. You can choose from a wide range of methods that work for your end users.
If you’re interested in trying a third party 2FA solution to meet your Fortinet 2FA requirement, then LoginTC might be right for you.
LoginTC is an easy to use 2FA solution that connects seamlessly to your Fortinet appliances, and leverages your existing environment and user information for a fast deployment.
Start a free trial today to get started.