-
Suggestion
-
Resolution: Duplicate
-
None
Problem Definition
The Insights page under Security->Insights has a section at the bottom that details Two-step verification coverage.
It shows the number of accounts using/not using each security type. For example it shows how many accounts Log in without two-step verification. However, it only shows the number of accounts and doesn't show who those accounts actually are.
An organization could be forcing all of their managed accounts to use SSO but they may have external accounts accessing their products that they cannot manage, and it would be helpful to know who those accounts are.
Suggested Solution
It would be great if you could click on the number and it would take you to a screen that showed which accounts were not using 2FA, or if there was a way to export those accounts. That would make it easier for an administrator to quickly audit which accounts are not using 2FA.
Workaround
A user list can be exported from the site and managed accounts can be filtered out but that can be tedious and it won't provide you with the exact accounts that the Insights page is referring to.
- duplicates
-
ACCESS-797 Ability to see which accounts do not have 2FA enabled in an organization
- Gathering Interest