Login Settings
It’s possible to disable the possibilty to login via WebUI or REST to this StoredSafe instance, as well as configure what MFA mechanisms should be enabled and available.
Warning
There is no built-in guardrail preventing you from disabling every MFA method at once, which would leave username/password as the only remaining factor for Web GUI and REST logins. Before disabling a method, confirm at least one other method remains enabled and that your users actually have credentials for it.
Note
Disabling “Login” here (item 2 below) only affects the Web GUI and REST API — it does not affect console/SSH access to this menu, so you cannot lock yourself out of the console this way.
┌────────────────────────────────────────────────────────────────────────────┐
│ Service Management on node1 (Version X.X.X build XXXX) │
└────────────────────────────────────────────────────────────────────────────┘
┌─┬───────────────────────────────────────────────────────────────────────────┐
│1│Show Current Settings │
│2│Login Setting │
│3│YubiOTP Settings │
│4│TOTP Settings │
│5│X.509 Smartcard Settings │
│6│Smart-ID Settings │
│7│BankID Settings │
│8│DUO Settings │
└─┴───────────────────────────────────────────────────────────────────────────┘
Enable/Disable the use of Smart-ID as MFA
Main> System Settings> Service> Login Settings>