I use google compute engine in an organisation of ~100 people. How do I make sure that all the accounts I add to a compute engine project have two factor auth enabled?
I searched google documentation for (enforce|ensure|mandatory) two factor (gcloud|gce|google cloud)
but didn't find anything that answered my question.
This question is only partially answered. It is possible with Gsuite. It remains unknown if this can be done without Gsuite.
Google is automatically enrolling users to use the 2-step verification (2SV) feature starting November 9. The company announced the plan to auto-enable this security step for millions of users last month.
There is a new service called Cloud Identity.
Cloud Identity provides free, managed Google Accounts to users who don’t need G Suite Services, such as Gmail or Drive.
Relevant for you:
Directory and account security:
Create and manage users.
Create and manage groups.
Manage account security by setting up basic 2SV or enhanced 2SV using security keys.
etc...
Follow the instructions here to make 2-Step Verification mandatory in G Suite:
All users of the selected organization are now required to enter a secondary code from their mobile device.
Reference: https://support.google.com/a/answer/2548882?hl=en
If you love us? You can donate to us via Paypal or buy me a coffee so we can maintain and grow! Thank you!
Donate Us With