<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.appian.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/"><channel><title>Configuring Multi-Factor Authentication (MFA)</title><link>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa</link><description /><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>Configuring Multi-Factor Authentication (MFA)</title><link>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa</link><pubDate>Thu, 18 Apr 2024 15:54:14 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:20549525-9d93-497e-bd4e-de4e01bade2f</guid><dc:creator>Appian Max Team</dc:creator><comments>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa#comments</comments><description>Current Revision posted to Article by Appian Max Team on 4/18/2024 3:54:14 PM&lt;br /&gt;
&lt;div&gt;
&lt;h2&gt;&lt;strong&gt;SAML&lt;/strong&gt;&lt;/h2&gt;
&lt;p&gt;The following section provides resources that can help in configuring multi-factor authentication using SAML authentication for an Appian installation. SAML provides a secure method for users to be authenticated by an external identity provider in order to enable single sign-on capabilities. For enhanced security, customers can use multi-factor authentication mechanisms provided by SAML 2.0 supported identity providers.&lt;/p&gt;
&lt;p&gt;If an Appian environment has been configured to work with &lt;a href="https://docs.appian.com/suite/help/latest/SAML_for_Single_Sign-On.html"&gt;SAML using the Admin Console&lt;/a&gt;, make sure all the settings work correctly by testing the connectivity and save the changes. There are no further changes required in Appian to enable MFA. MFA can now be configured on the identity provider&amp;#39;s side.&lt;/p&gt;
&lt;p&gt;The specific steps to perform this configuration varies with each identity provider and the multi-factor authentication methods they support. The following are examples of SAML identity providers that support MFA:&lt;/p&gt;
&lt;ul style="font-size:115%;"&gt;
&lt;li&gt;&lt;a href="https://www.pingidentity.com/en/platform.html"&gt;PingIdentity&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://help.okta.com/en-us/Content/Topics/Security/mfa/mfa-factors.htm"&gt;Okta&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;strong&gt;LDAP and DUO Security&lt;/strong&gt;&lt;/h2&gt;
&lt;p&gt;The following section provides instructions on configuring &lt;a href="https://www.duosecurity.com/"&gt;Duo Security&lt;/a&gt; (multi-factor authentication) with an existing Appian installation configured with LDAP.&lt;/p&gt;
&lt;ol style="font-size:115%;"&gt;
&lt;li&gt;If LDAP is not already configured, please review&amp;nbsp;&lt;a href="https://docs.appian.com/suite/help/latest/Appian_Administration_Console.html#ldap-authentication"&gt;LDAP Authentication&lt;/a&gt;&amp;nbsp;to configure LDAP with Appian.&lt;/li&gt;
&lt;li&gt;Follow&amp;nbsp;&lt;a href="https://www.duosecurity.com/docs/ldap"&gt;Duo&amp;#39;s instructions&lt;/a&gt;&amp;nbsp;on integrating Duo Security with an existing LDAP device. This guide provides instructions on installing a Duo proxy. Ensure that the Duo proxy and the AD machine are on the same subnet/can communicate with each other.&lt;/li&gt;
&lt;li&gt;Update your existing Appian installation to point the LDAP server to the newly created Duo proxy server.&lt;/li&gt;
&lt;li&gt;Open the&amp;nbsp;&lt;strong&gt;Admin Console&amp;nbsp;&lt;/strong&gt;(/suite/admin).&lt;/li&gt;
&lt;li&gt;Under&amp;nbsp;&lt;strong&gt;Authentication&amp;nbsp;&lt;/strong&gt;&amp;gt;&amp;nbsp;&lt;strong&gt;LDAP&lt;/strong&gt;, update the URL to point to the Duo proxy server.&lt;/li&gt;
&lt;/ol&gt;
&lt;/div&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: Security, Architecture, configuration-management&lt;/div&gt;
</description></item><item><title>Configuring Multi-Factor Authentication (MFA)</title><link>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa/revision/7</link><pubDate>Wed, 01 Nov 2023 13:57:34 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:20549525-9d93-497e-bd4e-de4e01bade2f</guid><dc:creator>joel.larin</dc:creator><comments>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa#comments</comments><description>Revision 7 posted to Article by joel.larin on 11/1/2023 1:57:34 PM&lt;br /&gt;
&lt;div&gt;
&lt;h2&gt;&lt;strong&gt;SAML&lt;/strong&gt;&lt;/h2&gt;
&lt;p&gt;The following section provides resources that can help in configuring multi-factor authentication using SAML authentication for an Appian installation. SAML provides a secure method for users to be authenticated by an external identity provider in order to enable single sign-on capabilities. For enhanced security, customers can use multi-factor authentication mechanisms provided by SAML 2.0 supported identity providers.&lt;/p&gt;
&lt;p&gt;If an Appian environment has been configured to work with &lt;a href="https://docs.appian.com/suite/help/latest/SAML_for_Single_Sign-On.html"&gt;SAML using the Admin Console&lt;/a&gt;, make sure all the settings work correctly by testing the connectivity and save the changes. There are no further changes required in Appian to enable MFA. MFA can now be configured on the identity provider&amp;#39;s side.&lt;/p&gt;
&lt;p&gt;The specific steps to perform this configuration varies with each identity provider and the multi-factor authentication methods they support. The following are examples of SAML identity providers that support MFA:&lt;/p&gt;
&lt;ul style="font-size:115%;"&gt;
&lt;li&gt;&lt;a href="https://www.pingidentity.com/en/platform.html"&gt;PingIdentity&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://help.okta.com/en-us/Content/Topics/Security/mfa/mfa-factors.htm"&gt;Okta&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;strong&gt;LDAP and DUO Security&lt;/strong&gt;&lt;/h2&gt;
&lt;p&gt;The following section provides instructions on configuring &lt;a href="https://www.duosecurity.com/"&gt;Duo Security&lt;/a&gt; (multi-factor authentication) with an existing Appian installation configured with LDAP.&lt;/p&gt;
&lt;ol style="font-size:115%;"&gt;
&lt;li&gt;If LDAP is not already configured, please review&amp;nbsp;&lt;a href="https://docs.appian.com/suite/help/latest/Appian_Administration_Console.html#ldap-authentication"&gt;LDAP Authentication&lt;/a&gt;&amp;nbsp;to configure LDAP with Appian.&lt;/li&gt;
&lt;li&gt;Follow&amp;nbsp;&lt;a href="https://www.duosecurity.com/docs/ldap"&gt;Duo&amp;#39;s instructions&lt;/a&gt;&amp;nbsp;on integrating Duo Security with an existing LDAP device. This guide provides instructions on installing a Duo proxy. Ensure that the Duo proxy and the AD machine are on the same subnet/can communicate with each other.&lt;/li&gt;
&lt;li&gt;Update your existing Appian installation to point the LDAP server to the newly created Duo proxy server.&lt;/li&gt;
&lt;li&gt;Open the&amp;nbsp;&lt;strong&gt;Admin Console&amp;nbsp;&lt;/strong&gt;(/suite/admin).&lt;/li&gt;
&lt;li&gt;Under&amp;nbsp;&lt;strong&gt;Authentication&amp;nbsp;&lt;/strong&gt;&amp;gt;&amp;nbsp;&lt;strong&gt;LDAP&lt;/strong&gt;, update the URL to point to the Duo proxy server.&lt;/li&gt;
&lt;/ol&gt;
&lt;/div&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: Security, Architecture, configuration-management&lt;/div&gt;
</description></item><item><title>Configuring Multi-Factor Authentication (MFA)</title><link>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa/revision/6</link><pubDate>Fri, 02 Jun 2023 18:42:40 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:20549525-9d93-497e-bd4e-de4e01bade2f</guid><dc:creator>joel.larin</dc:creator><comments>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa#comments</comments><description>Revision 6 posted to Article by joel.larin on 6/2/2023 6:42:40 PM&lt;br /&gt;
&lt;div&gt;
&lt;h2&gt;&lt;strong&gt;SAML&lt;/strong&gt;&lt;/h2&gt;
&lt;p&gt;The following section provides resources that can help in configuring multi-factor authentication using SAML authentication for an Appian installation. SAML provides a secure method for users to be authenticated by an external identity provider in order to enable single sign-on capabilities. For enhanced security, customers can use multi-factor authentication mechanisms provided by SAML 2.0 supported identity providers.&lt;/p&gt;
&lt;p&gt;If an Appian environment has been configured to work with &lt;a href="https://docs.appian.com/suite/help/latest/SAML_for_Single_Sign-On.html"&gt;SAML using the Admin Console&lt;/a&gt;, make sure all the settings work correctly by testing the connectivity and save the changes. There are no further changes required in Appian to enable MFA. MFA can now be configured on the identity provider&amp;#39;s side.&lt;/p&gt;
&lt;p&gt;The specific steps to perform this configuration varies with each identity provider and the multi-factor authentication methods they support. The following are examples of SAML identity providers that support MFA:&lt;/p&gt;
&lt;ul style="font-size:115%;"&gt;
&lt;li&gt;&lt;a href="https://www.pingidentity.com/en/platform.html"&gt;PingIdentity&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://help.okta.com/en-us/Content/Topics/Security/mfa/mfa-factors.htm"&gt;Okta&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;strong&gt;LDAP and DUO Security&lt;/strong&gt;&lt;/h2&gt;
&lt;p&gt;The following section provides instructions on configuring &lt;a href="https://www.duosecurity.com/"&gt;Duo Security&lt;/a&gt; (multi-factor authentication) with an existing Appian installation configured with LDAP.&lt;/p&gt;
&lt;ol style="font-size:115%;"&gt;
&lt;li&gt;If LDAP is not already configured, please review&amp;nbsp;&lt;a href="https://docs.appian.com/suite/help/latest/Appian_Administration_Console.html#ldap-authentication"&gt;LDAP Authentication&lt;/a&gt;&amp;nbsp;to configure LDAP with Appian.&lt;/li&gt;
&lt;li&gt;Follow&amp;nbsp;&lt;a href="https://www.duosecurity.com/docs/ldap"&gt;Duo&amp;#39;s instructions&lt;/a&gt;&amp;nbsp;on integrating Duo Security with an existing LDAP device. This guide provides instructions on installing a Duo proxy. Ensure that the Duo proxy and the AD machine are on the same subnet/can communicate with each other.&lt;/li&gt;
&lt;li&gt;Update your existing Appian installation to point the LDAP server to the newly created Duo proxy server.&lt;/li&gt;
&lt;li&gt;Open the&amp;nbsp;&lt;strong&gt;Admin Console&amp;nbsp;&lt;/strong&gt;(/suite/admin).&lt;/li&gt;
&lt;li&gt;Under&amp;nbsp;&lt;strong&gt;Authentication&lt;/strong&gt;&amp;gt;&lt;strong&gt;LDAP&lt;/strong&gt;, update the URL to point to the Duo proxy server.&lt;/li&gt;
&lt;/ol&gt;
&lt;/div&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: Security, Architecture, configuration-management&lt;/div&gt;
</description></item><item><title>Configuring Multi-Factor Authentication (MFA)</title><link>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa/revision/5</link><pubDate>Fri, 02 Jun 2023 18:40:42 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:20549525-9d93-497e-bd4e-de4e01bade2f</guid><dc:creator>joel.larin</dc:creator><comments>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa#comments</comments><description>Revision 5 posted to Article by joel.larin on 6/2/2023 6:40:42 PM&lt;br /&gt;
&lt;div&gt;
&lt;h2&gt;&lt;strong&gt;SAML&lt;/strong&gt;&lt;/h2&gt;
&lt;p&gt;The following section provides resources that can help in configuring multi-factor authentication using SAML authentication for an Appian installation. SAML provides a secure method for users to be authenticated by an external identity provider in order to enable single sign-on capabilities. For enhanced security, customers can use multi-factor authentication mechanisms provided by SAML 2.0 supported identity providers.&lt;/p&gt;
&lt;p&gt;If an Appian environment has been configured to work with &lt;a href="https://docs.appian.com/suite/help/latest/SAML_for_Single_Sign-On.html"&gt;SAML using the Admin Console&lt;/a&gt;, make sure all the settings work correctly by testing the connectivity and save the changes. There are no further changes required in Appian to enable MFA. MFA can now be configured on the identity provider&amp;#39;s side.&lt;/p&gt;
&lt;p&gt;The specific steps to perform this configuration varies with each identity provider and the multi-factor authentication methods they support. The following are examples of SAML identity providers that support MFA:&lt;/p&gt;
&lt;ul style="font-size:115%;"&gt;
&lt;li&gt;&lt;a href="https://www.pingidentity.com/en/platform.html"&gt;PingIdentity&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://help.okta.com/en-us/Content/Topics/Security/mfa/mfa-factors.htm"&gt;Okta&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;strong&gt;LDAP and DUO Security&lt;/strong&gt;&lt;/h2&gt;
&lt;p&gt;The following section provides instructions on configuring &lt;a href="https://www.duosecurity.com/"&gt;Duo Security&lt;/a&gt; (multi-factor authentication) with an existing Appian installation configured with LDAP.&lt;/p&gt;
&lt;ol style="font-size:115%;"&gt;
&lt;li&gt;If LDAP is not already configured, please review&lt;a href="https://docs.appian.com/suite/help/latest/Appian_Administration_Console.html#ldap-authentication"&gt;LDAP Authentication&lt;/a&gt;to configure LDAP with Appian.&lt;/li&gt;
&lt;li&gt;Follow&lt;a href="https://www.duosecurity.com/docs/ldap"&gt;Duo&amp;#39;s instructions&lt;/a&gt;on integrating Duo Security with an existing LDAP device. This guide provides instructions on installing a Duo proxy. Ensure that the Duo proxy and the AD machine are on the same subnet/can communicate with each other.&lt;/li&gt;
&lt;li&gt;Update your existing Appian installation to point the LDAP server to the newly created Duo proxy server.&lt;/li&gt;
&lt;li&gt;Open the&lt;strong&gt;Admin Console&lt;/strong&gt;(/suite/admin).&lt;/li&gt;
&lt;li&gt;Under&lt;strong&gt;Authentication&lt;/strong&gt;&amp;gt;&lt;strong&gt;LDAP&lt;/strong&gt;, update the URL to point to the Duo proxy server.&lt;/li&gt;
&lt;/ol&gt;
&lt;/div&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: Security, Architecture, configuration-management&lt;/div&gt;
</description></item><item><title>Configuring Multi-Factor Authentication (MFA)</title><link>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa/revision/4</link><pubDate>Tue, 18 Apr 2023 19:11:12 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:20549525-9d93-497e-bd4e-de4e01bade2f</guid><dc:creator>joel.larin</dc:creator><comments>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa#comments</comments><description>Revision 4 posted to Article by joel.larin on 4/18/2023 7:11:12 PM&lt;br /&gt;
&lt;div style="margin:10px 21% 10px 21%;"&gt;
&lt;h2&gt;&lt;strong&gt;SAML&lt;/strong&gt;&lt;/h2&gt;
&lt;p style="font-size:115%;"&gt;&lt;span style="font-weight:400;"&gt;The following section provides resources that can help in configuring multi-factor authentication using SAML authentication for an Appian installation. SAML provides a secure method for users to be authenticated by an external identity provider in order to enable single sign-on capabilities. For enhanced security, customers can use multi-factor authentication mechanisms provided by SAML 2.0 supported identity providers.&lt;/span&gt;&lt;/p&gt;
&lt;p style="font-size:115%;"&gt;&lt;span style="font-weight:400;"&gt;If an Appian environment has been configured to work with &lt;a href="https://docs.appian.com/suite/help/latest/SAML_for_Single_Sign-On.html"&gt;SAML using the Admin Console&lt;/a&gt;, make sure all the settings work correctly by testing the connectivity and save the changes. There are no further changes required in Appian to enable MFA. MFA can now be configured on the identity provider&amp;#39;s side.&lt;/span&gt;&lt;/p&gt;
&lt;p style="font-size:115%;"&gt;&lt;span style="font-weight:400;"&gt;The specific steps to perform this configuration varies with each identity provider and the multi-factor authentication methods they support. The following are examples of SAML identity providers that support MFA:&lt;/span&gt;&lt;/p&gt;
&lt;ul style="font-size:115%;"&gt;
&lt;li&gt;&lt;a href="https://www.pingidentity.com/en/platform.html"&gt;PingIdentity&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://help.okta.com/en-us/Content/Topics/Security/mfa/mfa-factors.htm"&gt;Okta&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;strong&gt;LDAP and DUO Security&lt;/strong&gt;&lt;/h2&gt;
&lt;p style="font-size:115%;"&gt;&lt;span style="font-weight:400;"&gt;The following section provides instructions on configuring &lt;a href="https://www.duosecurity.com/"&gt;Duo Security&lt;/a&gt; (multi-factor authentication) with an existing Appian installation configured with LDAP.&lt;/span&gt;&lt;/p&gt;
&lt;ol style="font-size:115%;"&gt;
&lt;li&gt;If LDAP is not already configured, please review&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;a href="https://docs.appian.com/suite/help/latest/Appian_Administration_Console.html#ldap-authentication"&gt;LDAP Authentication&lt;/a&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;to configure LDAP with Appian.&lt;/li&gt;
&lt;li&gt;Follow&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;a href="https://www.duosecurity.com/docs/ldap"&gt;Duo&amp;#39;s instructions&lt;/a&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;on integrating Duo Security with an existing LDAP device. This guide provides instructions on installing a Duo proxy. Ensure that the Duo proxy and the AD machine are on the same subnet/can communicate with each other.&lt;/li&gt;
&lt;li&gt;Update your existing Appian installation to point the LDAP server to the newly created Duo proxy server.&lt;/li&gt;
&lt;li&gt;Open the&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;Admin Console&lt;/strong&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;(/suite/admin).&lt;/li&gt;
&lt;li&gt;Under&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;Authentication&lt;/strong&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&amp;gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;LDAP&lt;/strong&gt;, update the URL to point to the Duo proxy server.&lt;/li&gt;
&lt;/ol&gt;
&lt;/div&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: Security, Architecture, configuration-management&lt;/div&gt;
</description></item><item><title>Configuring Multi-Factor Authentication (MFA)</title><link>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa/revision/3</link><pubDate>Tue, 07 Feb 2023 21:29:20 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:20549525-9d93-497e-bd4e-de4e01bade2f</guid><dc:creator>Devon Lee</dc:creator><comments>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa#comments</comments><description>Revision 3 posted to Article by Devon Lee on 2/7/2023 9:29:20 PM&lt;br /&gt;
&lt;div style="margin:10px 21% 10px 21%;"&gt;
&lt;h2&gt;&lt;strong&gt;SAML&lt;/strong&gt;&lt;/h2&gt;
&lt;p style="font-size:115%;"&gt;&lt;span style="font-weight:400;"&gt;The following section provides resources that can help in configuring multi-factor authentication using SAML authentication for an Appian installation. SAML provides a secure method for users to be authenticated by an external identity provider in order to enable single sign-on capabilities. For enhanced security, customers can use multi-factor authentication mechanisms provided by SAML 2.0 supported identity providers.&lt;/span&gt;&lt;/p&gt;
&lt;p style="font-size:115%;"&gt;&lt;span style="font-weight:400;"&gt;If an Appian environment has been configured to work with &lt;a href="https://docs.appian.com/suite/help/latest/SAML_for_Single_Sign-On.html"&gt;SAML using the Admin Console&lt;/a&gt;, make sure all the settings work correctly by testing the connectivity and save the changes. There are no further changes required in Appian to enable MFA. MFA can now be configured on the identity provider&amp;#39;s side.&lt;/span&gt;&lt;/p&gt;
&lt;p style="font-size:115%;"&gt;&lt;span style="font-weight:400;"&gt;The specific steps to perform this configuration varies with each identity provider and the multi-factor authentication methods they support. The following are examples of SAML identity providers that support MFA:&lt;/span&gt;&lt;/p&gt;
&lt;ul style="font-size:115%;"&gt;
&lt;li&gt;&lt;a href="https://www.pingidentity.com/en/platform.html"&gt;PingIdentity&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://help.okta.com/en-us/Content/Topics/Security/mfa/mfa-factors.htm"&gt;Okta&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;strong&gt;LDAP and DUO Security&lt;/strong&gt;&lt;/h2&gt;
&lt;p style="font-size:115%;"&gt;&lt;span style="font-weight:400;"&gt;The following section provides instructions on configuring &lt;a href="https://www.duosecurity.com/"&gt;Duo Security&lt;/a&gt; (multi-factor authentication) with an existing Appian installation configured with LDAP.&lt;/span&gt;&lt;/p&gt;
&lt;ol style="font-size:115%;"&gt;
&lt;li&gt;If LDAP is not already configured, please review&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;a href="https://docs.appian.com/suite/help/latest/Appian_Administration_Console.html#ldap-authentication"&gt;LDAP Authentication&lt;/a&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;to configure LDAP with Appian.&lt;/li&gt;
&lt;li&gt;Follow&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;a href="https://www.duosecurity.com/docs/ldap"&gt;Duo&amp;#39;s instructions&lt;/a&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;on integrating Duo Security with an existing LDAP device. This guide provides instructions on installing a Duo proxy. Ensure that the Duo proxy and the AD machine are on the same subnet/can communicate with each other.&lt;/li&gt;
&lt;li&gt;Update your existing Appian installation to point the LDAP server to the newly created Duo proxy server.&lt;/li&gt;
&lt;li&gt;Open the&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;Admin Console&lt;/strong&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;(/suite/admin).&lt;/li&gt;
&lt;li&gt;Under&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;Authentication&lt;/strong&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&amp;gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;LDAP&lt;/strong&gt;, update the URL to point to the Duo proxy server.&lt;/li&gt;
&lt;/ol&gt;
&lt;/div&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: Security, Platform, configuration-management&lt;/div&gt;
</description></item><item><title>Configuring Multi-Factor Authentication (MFA)</title><link>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa/revision/2</link><pubDate>Tue, 07 Feb 2023 20:31:30 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:20549525-9d93-497e-bd4e-de4e01bade2f</guid><dc:creator>joel.larin</dc:creator><comments>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa#comments</comments><description>Revision 2 posted to Article by joel.larin on 2/7/2023 8:31:30 PM&lt;br /&gt;
&lt;div style="margin:10px 21% 10px 21%;"&gt;
&lt;h2&gt;&lt;strong&gt;SAML&lt;/strong&gt;&lt;/h2&gt;
&lt;p style="font-size:115%;"&gt;&lt;span style="font-weight:400;"&gt;The following section provides resources that can help in configuring multi-factor authentication using SAML authentication for an Appian installation. SAML provides a secure method for users to be authenticated by an external identity provider in order to enable single sign-on capabilities. For enhanced security, customers can use multi-factor authentication mechanisms provided by SAML 2.0 supported identity providers.&lt;/span&gt;&lt;/p&gt;
&lt;p style="font-size:115%;"&gt;&lt;span style="font-weight:400;"&gt;If an Appian environment has been configured to work with &lt;a href="https://docs.appian.com/suite/help/latest/SAML_for_Single_Sign-On.html"&gt;SAML using the Admin Console&lt;/a&gt;, make sure all the settings work correctly by testing the connectivity and save the changes. There are no further changes required in Appian to enable MFA. MFA can now be configured on the identity provider&amp;#39;s side.&lt;/span&gt;&lt;/p&gt;
&lt;p style="font-size:115%;"&gt;&lt;span style="font-weight:400;"&gt;The specific steps to perform this configuration varies with each identity provider and the multi-factor authentication methods they support. The following are examples of SAML identity providers that support MFA:&lt;/span&gt;&lt;/p&gt;
&lt;ul style="font-size:115%;"&gt;
&lt;li&gt;&lt;a href="https://www.pingidentity.com/en/platform.html"&gt;PingIdentity&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://help.okta.com/en-us/Content/Topics/Security/mfa/mfa-factors.htm"&gt;Okta&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;strong&gt;LDAP and DUO Security&lt;/strong&gt;&lt;/h2&gt;
&lt;p style="font-size:115%;"&gt;&lt;span style="font-weight:400;"&gt;The following section provides instructions on configuring &lt;a href="https://www.duosecurity.com/"&gt;Duo Security&lt;/a&gt; (multi-factor authentication) with an existing Appian installation configured with LDAP.&lt;/span&gt;&lt;/p&gt;
&lt;ol style="font-size:115%;"&gt;
&lt;li&gt;If LDAP is not already configured, please review&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;a href="https://docs.appian.com/suite/help/latest/Appian_Administration_Console.html#ldap-authentication"&gt;LDAP Authentication&lt;/a&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;to configure LDAP with Appian.&lt;/li&gt;
&lt;li&gt;Follow&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;a href="https://www.duosecurity.com/docs/ldap"&gt;Duo&amp;#39;s instructions&lt;/a&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;on integrating Duo Security with an existing LDAP device. This guide provides instructions on installing a Duo proxy. Ensure that the Duo proxy and the AD machine are on the same subnet/can communicate with each other.&lt;/li&gt;
&lt;li&gt;Update your existing Appian installation to point the LDAP server to the newly created Duo proxy server.&lt;/li&gt;
&lt;li&gt;Open the&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;Admin Console&lt;/strong&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;(/suite/admin).&lt;/li&gt;
&lt;li&gt;Under&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;Authentication&lt;/strong&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&amp;gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;LDAP&lt;/strong&gt;, update the URL to point to the Duo proxy server.&lt;/li&gt;
&lt;/ol&gt;
&lt;/div&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: Security, configuration-management&lt;/div&gt;
</description></item><item><title>Configuring Multi-Factor Authentication (MFA)</title><link>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa/revision/1</link><pubDate>Thu, 02 Feb 2023 21:53:25 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:20549525-9d93-497e-bd4e-de4e01bade2f</guid><dc:creator>joel.larin</dc:creator><comments>https://community.appian.com/success/w/article/3057/configuring-multi-factor-authentication-mfa#comments</comments><description>Revision 1 posted to Article by joel.larin on 2/2/2023 9:53:25 PM&lt;br /&gt;
&lt;div style="margin:10px 21% 10px 21%;"&gt;
&lt;h2&gt;&lt;strong&gt;SAML&lt;/strong&gt;&lt;/h2&gt;
&lt;p style="font-size:115%;"&gt;&lt;span style="font-weight:400;"&gt;The following section provides resources that can help in configuring multi-factor authentication using SAML authentication for an Appian installation. SAML provides a secure method for users to be authenticated by an external identity provider in order to enable single sign-on capabilities. For enhanced security, customers can use multi-factor authentication mechanisms provided by SAML 2.0 supported identity providers.&lt;/span&gt;&lt;/p&gt;
&lt;p style="font-size:115%;"&gt;&lt;span style="font-weight:400;"&gt;If an Appian environment has been configured to work with SAML using the Admin Console, make sure all the settings work correctly by testing the connectivity and save the changes. There are no further changes required in Appian to enable MFA. MFA can now be configured on the identity provider&amp;#39;s side.&lt;/span&gt;&lt;/p&gt;
&lt;p style="font-size:115%;"&gt;&lt;span style="font-weight:400;"&gt;The specific steps to perform this configuration varies with each identity provider and the multi-factor authentication methods they support. The following are examples of SAML identity providers that support MFA:&lt;/span&gt;&lt;/p&gt;
&lt;ul style="font-size:115%;"&gt;
&lt;li&gt;&lt;a href="https://www.pingidentity.com/en/platform.html"&gt;PingIdentity&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://help.okta.com/en-us/Content/Topics/Security/mfa/mfa-factors.htm"&gt;Okta&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;strong&gt;LDAP and DUO Security&lt;/strong&gt;&lt;/h2&gt;
&lt;p style="font-size:115%;"&gt;&lt;span style="font-weight:400;"&gt;The following section provides instructions on configuring Duo Security (multi-factor authentication) with an existing Appian installation configured with LDAP.&lt;/span&gt;&lt;/p&gt;
&lt;ol style="font-size:115%;"&gt;
&lt;li&gt;If LDAP is not already configured, please review&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;a href="https://docs.appian.com/suite/help/latest/Appian_Administration_Console.html#ldap-authentication"&gt;LDAP Authentication&lt;/a&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;to configure LDAP with Appian.&lt;/li&gt;
&lt;li&gt;Follow&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;a href="https://www.duosecurity.com/docs/ldap"&gt;Duo&amp;#39;s instructions&lt;/a&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;on integrating Duo Security with an existing LDAP device. This guide provides instructions on installing a Duo proxy. Ensure that the Duo proxy and the AD machine are on the same subnet/can communicate with each other.&lt;/li&gt;
&lt;li&gt;Update your existing Appian installation to point the LDAP server to the newly created Duo proxy server.&lt;/li&gt;
&lt;li&gt;Open the&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;Admin Console&lt;/strong&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;(/suite/admin).&lt;/li&gt;
&lt;li&gt;Under&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;Authentication&lt;/strong&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&amp;gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;LDAP&lt;/strong&gt;, update the URL to point to the Duo proxy server.&lt;/li&gt;
&lt;/ol&gt;
&lt;/div&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;
</description></item></channel></rss>