This article provides you with the step-by-step process to enable direct logins to your production org with MFA. You'll need to create and assign a permission set which enables the MFA for User Interface Logins system permission. You will also need to ensure that MFA is enable in your org. You can follow the steps in the article Enable and set-up Multi Factor Authentication (MFA) for Lumary DC to check or enable MFA in your production org.
Required packages and permissions
Supported in: Lumary DC
Permission: System administrator
To create the MFA for the direct logins permission set:
- Select the gear cog in the top-right hand side of Lumary DC and select Setup.
- In the Quick Find box on your left, type Permission Sets and select it from the results.
- Click the New button.
- Provide an appropriate name for your permission set. You can also provide a unique API Name; if you do not provide one, the system will generate it for you. Note the name specifications required.
- Click Save.
- Next add the system permissions for MFA. Scroll to the System section towards the bottom of the page. Click on the System Permissions link.
- Click the Edit button next to the System Permissions heading. (The top edit button edits the Properties of the Permission set).
- Search for the Multi-Factor Authentication for User Interface Logins permission. Tick the check box to enable the permission set.
- Click Save.
- Depending on what you have ticked, you will see the Permission Changes and Dependencies pop-up page with your selected inclusions.
- Click Save.
Show/hide animation
Set up MFA for the direct logins permission set
Next you'll need to assign the permissions to the relevant users. To assign permission sets to users, head to the assign permission set(s) help centre article.
For more information on the frequently asked questions on MFA, head to the Salesforce Multi-Factor Authentication FAQ.
For more information on MFA for users' logins, head to the Salesforce article Enable MFA for direct user logins to Salesforce orgs.