Skip to main content

Is it possible to support multi-factor authentication for the service account when setting up Lightning Sync?  Like a certificate if using the true service account option? Or if using OAuth with O365 if it's behind an IdP that is configured to require multi-factor (like Okta)?  I think the latter is most likely but wanted to see if anyone has run into this. @Damien Joly 

4 comentarios
  1. 26 sept 2023, 11:09

    Yes, it is possible to support multi-factor authentication (MFA) for a service account when setting up Lightning Sync, depending on the authentication method and configurations you choose. Here are some scenarios:

     

    Certificate-Based Authentication: If you're using a true service account with certificate-based authentication, it can enhance security. Certificate-based authentication typically involves the use of a digital certificate to authenticate the service account. If your certificate provider and configuration support MFA, then MFA can be enabled for the certificate-based authentication process.

     

    OAuth with Office 365: When using OAuth for integration with Office 365, it often involves setting up an Identity Provider (IdP) like Okta. In this case, the MFA requirements are typically enforced by the IdP. If your IdP (e.g., Okta) is configured to require MFA, then any authentication requests made by the service account, including those for Lightning Sync, will also be subject to MFA.

     

    In both scenarios, it's essential to ensure that your service account configuration aligns with your security and MFA policies. Additionally, consider the specific requirements and capabilities of the applications and services you're integrating with to determine how MFA is enforced.

     

    Keep in mind that the exact configuration and steps may vary based on the specific technologies and platforms you're using, so it's always a good practice to consult the documentation provided by your Identity Provider and Salesforce Lightning Sync to ensure proper setup and adherence to security requirements.

     

    Suggested By- aPurple- Best Clone App Development Company

0/9000