Manage Your Multi-Factor Authentication Options
On this page
- OAuth 2.0 authentication for programmatic access to Cloud Manager is available as a Preview feature.
- The feature and the corresponding documentation might change at any time during the Preview period. To use OAuth 2.0 authentication, create a service account to use in your requests to the Cloud Manager Public API.
Multi-factor authentication provides an additional layer of security for your Cloud Manager account.
Considerations
Important
If an Organization Owner
enables multi-factor authentication, all members of
that organization must also enable MFA before they can
access the organization.
When MFA is enabled, a user must provide their password as well as verification from another mechanism.
Cloud Manager provides the following factors for multi-factor authentication:
Okta Verify Mobile App
Google Authenticator
Email
Set Up Backup Multi-Factor Authentication Methods
Warning
Enable a minimum of two methods so that you can still access your account if you lose access to one method.
While you can set up one, some, or all of the available methods, we strongly recommend that you set up at least two methods. When Cloud Manager requires multi-factor authentication, it offers you the choice of which method to use. If you have less than two methods set up, Cloud Manager prompts you to set up multi-factor authentication and a backup method at login.
Prerequisites
Disable Legacy Two-Factor Authentication
If you currently have legacy two-factor authentication set up for your account, you must disable it before you set up multi-factor authentication.
To disable legacy 2FA, navigate to your User Preferences panel.
Click on the dropdown menu labeled with your name in the upper right corner of the Cloud Manager UI.
Click Legacy 2FA in the dropdown menu.
Click the icon to edit your legacy 2FA settings.
Configure Multi-Factor Authentication
Set up an authentication method.
Choose your preferred authentication method.
Click Set up to the right of your chosen method.
Follow the procedure for your chosen method:
Download the Okta Verify app to your mobile device.
Add a new account to the app.
Scan the displayed bar code.
Download the Google Authenticator app to your mobile device.
Tap the + icon to add an account.
Scan the displayed bar code.
Enter the six-digit verification code.
Check the email address you used to sign up for your MongoDB account.
Note
The verification email will arrive from the address
mongodb-account@mongodb.com
. You may need to ensure that you can receive email from themongodb.com
domain.Enter the six-digit verification code.
Remove an Authentication Method
To remove an authentication method from your account, click the icon next to the method you want to remove.
Note
You must authenticate with an existing authentication method before removing an authentication method.