[Sbs] Plans for multi-factor authentication for ifarm

Ole Hansen ole at jlab.org
Thu Mar 24 14:05:59 EDT 2022


Hi all,

there are discussions in the computer center about requiring 
multi-factor authentication (MFA) for the ifarm machines (and possibly 
other systems like jlabl*). As usual, the impetus seems to be coming 
from above, from DOE. This would mean NO LOGIN WITH SSH KEYS anymore. I 
am still short on details, but I assume that NFS access to the 
scientific computing disks (/work, /volatile etc.) will not be affected. 
The Jasmine certificates for jput etc. will presumably also continue to 
work.

Whether this MFA requirement will actually happen, and to which extent, 
depends in part on user feedback. If you are currently using ssh key 
login for any of your workflows on farm/ifarm, please let me know with a 
brief description of what you're doing and how it would be affected by 
MFA logins (annoyance, MAJOR productivity impact, show stopper etc).

For best results, I need this information by April 4.

Thanks and best regards,

Ole


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://mailman.jlab.org/pipermail/sbs/attachments/20220324/4a63858c/attachment.html>


More information about the Sbs mailing list