Skip to main content
Enabling org-wide MFA makes multi-factor authentication mandatory for every user in your organization. When enabled, if you haven’t enrolled, you’re prompted to set up an authenticator app on your next login.

Enforce MFA for all users

  1. In ION, go to Settings > Organization > Authentication.
  2. In the Multi-Factor Authentication card, turn on Require MFA for all users.
Org-wide MFA applies to everyone the moment you turn it on. To avoid locking users out, confirm your team can enroll an authenticator app, and validate the change in a sandbox tenant first if you have one.

Enforce MFA for yourself

You can enable MFA on your own profile without org-wide enforcement enabled. After enabling, log out and sign back in to start the MFA setup flow. If you lose access to your MFA device, see Troubleshooting sign-in issues.