The Security section allows you to set various security policies for the tenant:

  • Enable Tenant Override: Toggle this switch to enable overrides for security policies for this tenant. This allows you to customize security policies at the tenant level.
  • Auth Session Policies: Configure settings for user authentication sessions, including:
    • Allow persistent cookies: Control whether session cookies remain even after the user closes their browser.
    • Session Lifetime: Define how long a user's session remains valid (in minutes, hours, or days).
  • Password Policies: Define specific password requirements for users within the tenant.
    • Minimum Password Length: Set the minimum number of characters required for user passwords.
    • Password Strength Requirements: Require specific character types (lowercase, uppercase, numbers, special characters) to be included in user passwords.
    • Enable Password Breach Detection: Turn on password breach detection to prevent users from using compromised passwords.
  • MFA Policies: Configure multi-factor authentication (MFA) settings for the tenant, including:
    • Enable MFA: Toggle MFA on or off.
    • MFA Enrollment Policy: Define whether users can optionally enroll in MFA or if it's mandatory.
    • MFA Provider: Select the MFA provider to be used (e.g., Google Authenticator).