Skip to content

Becky's Bits & Bytes

Musings from an Aspiring #ExtraCreditKid

Menu
  • About Becky
  • Blog
  • Media
  • Contact
  • BeckyElliottWrites.com
  • Subscribe
Menu

Multi-Factor Authentication, FTW!

Posted on 2018-02-252019-04-29 by Becky Elliott

I was super excited when ONTAP 9.3 came out with multi-factor authentication support. I tweeted about it and even went on a Tech ONTAP recap podcast for NetApp Insight 2017 and talked about it.

Usually, there is a trade-off with convenience when it comes to security. Security is typically inconvenient. Multi-factor authentication is the exception to this.   Having something like a token (something you have) and a pin (something you know) is so much more convenient than having to remember a 15 character (at least two uppercase and two special characters) password that you are required to change every two months.  People end up writing those types of passwords down and putting them under their keyboard.

Because of the improved security with 2FA/MFA, DoD began pushing about three years to get all applications to use smart card authentication. The end goal was to have no user accounts in Active Directory with the ability to authenticate with a password.   Every account would need to have the “smartcard required” checkbox enabled.  Exceptions were only permitted when users had critical applications that did not support smartcard authentication.

For any existing application that wasn’t able to meet the “smartcard required” requirement, we were required to document why we needed that software and WHEN it would be smart card enabled. Any new applications that didn’t support smartcard logon wouldn’t get through procurement

Subscribe to this blog!

We keep your data private and share your data only with third parties that make this service possible. Read our Privacy Policy.

Check your inbox or spam folder to confirm your subscription.

Tags

#awordpresstale (3) #cfd9 (1) #DoDSysAdmin (1) #ghc (1) #ghc19 (6) #ghc20 (2) #includesaffiliatelink (3) #momlife (1) #pureaccelerate (1) #SFD19 (1) #techfieldday (14) #xfd3 (1) #yearinreview (4) #yolo (3) a-team (3) community (1) ghc (9) gracehopper (1) hopperx1nyc (2) hybridcloud (1) netapp (3) opportunity (1) sabbatical (8) SGRID (1) womenintech (1)
© 2023 Becky's Bits & Bytes | Powered by Minimalist Blog WordPress Theme