Enabling MFA
Secure AWS accounts require Multi Factor Authentication. Polices are added to accounts that allow users to add their own MFA device to their account. Account access will be limited until an MFA device is enabled.
Steps to enable an MFA device:
- Log the into the AWS account. A password reset may be required
- From the console, choose the Identity and Access Management tab
- From the left side menu, choose your user name
- Choose the Security Credentials tab
- Choose the pencil beside Assigned MFA device
- Virtual MFA device is the default.
- Choose Next Step
- Suggested virtual MFA devices:
- Google Authenticator App
- 1password
- Use your virtual MFA device to finalize the set up
Users must login with the MFA device to lift account restrictions.