User Management Tab

This tab is for managing 2FA for all the users and groups. This section is further divided into 3 different sections 2FA for Users, 2FA for Groups and Locked Users.

2FA for Users -

This section handles 2FA related settings for users individually. Here admin can enable/disable 2FA for users and also reset the 2FA configurations for users so that they can configure them again later.

In this section, all the users and their information such as username, email, full name and 2FA configuration settings are displayed in a tabular format. This section also provides several options using which the admin can filter out the users based on their 2FA configuration status. Filtering options such as 2FA Enabled, 2FA Configured, 2FA DIsabled and All users are available.

Depending upon the user's 2FA configurations admin has 3 actions available for each user which are Enable 2FA, Disable 2FA and Reset 2FA for users.

2FA for users

Total 2FA Enabled Users: This shows the count of a total number of users for whom the 2FA is Enabled.

Total 2FA Configured Users: This shows the count of a total number of users who have Configured the 2FA for themselves.

This option is used to search users by their usernames. This feature is highly recommended when the number of users is high. Admins can search by entering part of the username as well. It can also be used along with different search options available such as All Users, 2FA Enabled Users, 2FA Disabled Users and 2FA Configured Users.

Enabled 2FA/MFA for All Users(Existing + Newly Created) -

This option can be used to enable 2FA for all the users. Here the 2FA will be enabled for all the users that are already present in the Atlassian application and if any user is created later then 2FA will get automatically enabled for that newly created user as well.

Enable 2 Factor Authentication

Export Users -

This feature allows the admin to export the list of users in a .csv format. Depending upon the applied search option this feature can export all, enabled, disabled or configured users. The exported .csv file contains details about users and their 2FA related details - 2FA enabled/disable status, 2FA configuration status, user active/inactive status, groups names of the user and application access(Jira software and JSM).

Export users

Bulk 2FA Action :

1. Enable 2FA - This feature allows the admin to enable 2FA for users. Once 2FA is enabled for selected users, now when these users try to log into their account they will be prompted for registration and later validation of 2FA.
2.Disable 2FA- This feature allows the admin to disable 2FA for users. Once 2FA is disabled for users, now when they try to log into their account they won’t be prompted for any 2FA validation. But all their 2FA configurations will remain saved. In future, if 2FA is enabled, users won’t have to reconfigure any 2FA methods. They will be validated based on their previously configured 2FA methods.
3.Reset 2FA - This feature allows the admin to reset 2FA configurations for users. Once 2FA is reset for users, all of their 2FA configurations will be cleared out and now when they try to log into their account they will have to reconfigure their 2FA authentication methods and log into their accounts.

There are two sections in the bulk 2FA option -

  1. Selected Users: Using options in this section, the admin has the ability to enable/disable/reset 2FA for the selected users (selected by checking the checkboxes for the users in the user table).

  2. All Users: Using options in this section, the admin can enable/disable/reset 2FA for all users in a bulk.

2FA for Groups -

In this section, all the groups present in the Atlassian application are displayed in a table format.

Total 2FA Enabled Groups: This shows the count of a total number of groups for whom 2FA is enabled.

2fa for groups

This feature is used to search for groups by their names. This feature is highly recommended when the number of groups is high. It can also be integrated with different search options available such as All Groups and 2FA Enabled Groups. Once a search option is applied, groups that are a part of that filtering option will only be displayed and from there the admin can search for any group with the help of the Search for Group feature.

Export Groups -

This feature allows the admin to export a list of groups in a .csv format. Depending upon the applied search option this feature can export All groups or 2FA Enabled Groups.

Search and export for groups

Bulk 2FA Action :

  1. Enable 2FA -This feature allows the admin to enable 2FA for groups. Once 2FA is enabled for selected groups, 2FA will automatically be enabled for all the users who are a part of that group. Now when users belonging to that group try to log into their account they will be prompted for registration and later validation of 2FA.
  2. Disable 2FA - This feature allows the admin to disable 2FA for groups. Once 2FA is disabled for any group, 2FA will automatically be disabled for users who are a part of that group. Now when users from that group try to log into their account they won’t be prompted for any 2FA validation. But all of their 2FA configurations will remain saved. In future, if 2FA is enabled for those groups, users won’t have to reconfigure any 2FA methods. They will be validated based on their previously configured 2FA methods.

There are two sections in the bulk 2FA option -

  1. Selected Groups: Using options in this section, the admin has the ability to enable/disable 2FA for all the selected groups. (selected by checking the checkboxes for the groups in the group’s table).

  2. All Groups: But unlike the above using this, the admin can enable/disable 2FA for all groups in a bulk.

Skip 2FA for Groups:

This feature allows the admin to configure some groups for whom 2FA should be skipped.

If a user tries to log in then the plugin checks if the 2FA is enabled for that user or not and based on that plugin prompts for 2FA validation. But if the user is part of any group configured in this option then, the user will not be asked to validate the 2FA. This means that 2FA will be skipped for all the users belonging to the group configured here.

Skip 2fa for groups