ONTAP 9.13

to Japanese version

Multifactor authentication overview

Multifactor authentication (MFA) allows you to enhance security by requiring users to provide two authentication methods to log in to an admin or data SVM.

Depending upon your version of ONTAP, you can use a combination of an SSH public key, user password, and time-based one-time password (TOTP) to set up multifactor authentication.

ONTAP version First authentication method Second authentication method

9.13.1 and later

SSH public key

TOTP

User password

TOTP

9.3 and later

SSH public key

User password

If MFA is configured with TOTP, the cluster administrator must first enable the local user account, then the account must be configured by the local user.

workflow for enabling mfa with totp

Top of Page