Multi-Factor Authentication (MFA) helps enhances account security by requiring a second form of verification—an email-based One-Time Passcode (OTP)—in addition to a password. When enabled, users are prompted to supply the additional OTP. This feature provides an extra layer of protection for accounts with administrator roles, safeguarding sensitive data and organizational settings.
For new organizations, MFA is enabled for all users by default, to enable secure access from the start.
Note
The Samsara dashboard logs an event when MFA is enabled or disabled. You can track these changes in the Activity Log.
Refer to the following topics for more information on MFA:
The following table outlines the custom permissions that constitute admin-level access in the Samsara platform. Users assigned any of the listed permissions will be required to use MFA when Enable for All Highly Privileged Roles is turned on.
Permission Category |
Custom Permissions |
---|---|
User and Driver Management |
|
Authentication and Identity Settings |
|
Gateway and Device Management |
|
Safety Workflows |
|
API and Integrations |
|
Billing and License Management |
|
Advanced Features |
|
Fleet Security |
|
Security Policies |
|
To disable MFA, you must have a Full Admin role or have a custom role with the Security Policies user permission Update Security Policies enabled.
To enable MFA, you must have a Full Admin role or have a custom role with the Security Policies user permission Update Security Policies enabled.
-
Log in to the Samsara dashboard.
-
Select the Settings icon (
) at the bottom of your Fleet menu to view dashboard settings.
-
In the Organization section, navigate to
. -
Review the MFA options:
-
Enable for Default Admin Roles: Requires MFA for users with predefined roles such as Full Admin, Standard Admin, and Read-Only Admin.
-
Enable for All Highly Privileged Roles: Requires MFA for users assigned a custom role with elevated privileges.
-
Enable for All Roles: Expands MFA enforcement to all users.
-
-
Save changes to activate MFA for the desired users in your organization.
For any new accounts, MFA will also be enabled by default for these roles.
After MFA is enabled for the organization, users can log in to the Samsara dashboard as follows:
-
Go to your Samsara dashboard login page and enter your user name and password.
-
After successful credential entry and MFA setup, you’ll be prompted to enter a six-digit One-Time Passcode (OTP) sent to your registered email address from
<noreply@samsara.com>
. The code is valid for 10 minutes. -
Check your inbox for the OTP email. If you don’t receive it, check your spam folder.
Tip
When you locate the email, mark the email as not spam to ensure future OTPs are delivered to your inbox.
-
Enter the OTP on the login screen. If the code expires,
to receive a new OTP.
Comments
0 comments
Article is closed for comments.