Possible to setup MFA on connect console

0

Are you able to setup MFA 2-factory authentication on AWS Connect Console? So far, I've only been able to find SSO integration, but nothing for MFA based on Yubikey or Duo access.

I saw this: Multi-Factor Authentication For extra security, we recommend that you require multi-factor authentication (MFA) for all IAM users in your account. MFA can be set up through AWS IAM or your SAML 2.0 identity provider, or Radius server, if that's more applicable for your use case. After MFA is set up, a third text box becomes visible on the Amazon Connect login page to provide the second factor. https://docs.aws.amazon.com/connect/latest/adminguide/security-bp.html

My AWS IAM user has MFA setup. Not seeing the box on the connect login page.

2 Answers
3
Accepted Answer

Amazon Connect's built-in authentication does not support MFA directly. MFA support would be accomplished through using a SAML 2.0 identity provider. If you are looking for an AWS-supported identity provider that supports MFA, AWS IAM Identity Center could be used. Third-party IdP's like Azure AD, Okta, etc would also work. Note, the authentication method on your Amazon Connect instance cannot be changed after creation. If you need to switch authentication methods, you need to create a new Amazon Connect instance.

Some additional reading on this architecture: https://docs.aws.amazon.com/connect/latest/adminguide/configure-saml.html

profile pictureAWS
EXPERT
answered 3 months ago
profile picture
EXPERT
reviewed a month ago
0

How does this relate to setting up on Amazon connect?

answered 4 months ago

You are not logged in. Log in to post an answer.

A good answer clearly answers the question and provides constructive feedback and encourages professional growth in the question asker.

Guidelines for Answering Questions