MFA for Community Edition? #14912
-
|
I have seen the post regarding the depreciating features moving to V3 of DefectDojo. Particularly the loss of SSO. Will MFA options be available natively in the community edition in place of SSO support? This is a very strong point for our business as we will be putting information onto the platform that can be considered sensitive and to my knowledge, MFA is not available for user accounts. If this is not currently going to be part of the June release, I very much implore to consider having MFA capabilities in the platform for free users. |
Beta Was this translation helpful? Give feedback.
Replies: 1 comment
-
|
Hi Chris, thanks for raising this. MFA will remain a DefectDojo Pro feature and isn't planned for the Community edition. The main reason is that reliably testing and maintaining authentication features across a wide range of configurations is difficult for an open source project to sustain. Keeping MFA in Pro lets us guarantee proper test coverage and confidently ship releases without regressions in authentication flows. We appreciate the input, and we'll keep the feedback in mind as the roadmap continues to evolve. |
Beta Was this translation helpful? Give feedback.
Hi Chris, thanks for raising this.
MFA will remain a DefectDojo Pro feature and isn't planned for the Community edition. The main reason is that reliably testing and maintaining authentication features across a wide range of configurations is difficult for an open source project to sustain. Keeping MFA in Pro lets us guarantee proper test coverage and confidently ship releases without regressions in authentication flows.
We appreciate the input, and we'll keep the feedback in mind as the roadmap continues to evolve.