Hi everyone! I'm still pretty new to DevOps, coming from a sysadmin background, so securing our team's tools is a big focus for me right now.
I just finished setting up 2FA enforcement for all our team vaults in 1Password Business. It was actually way smoother than I expected! I wanted to share the steps I took, in case it helps other folks who are figuring this out too. I've attached some screenshots from our admin console to show exactly where the settings are.
Basically, you go into the "Security" section for your team, find the "Two-Factor Authentication" policy, and toggle it from "Recommended" to "Required." The cool part is you can also set a grace period so people have a few days to get set up. Once I saved the change, it applied to all existing and any new vaults automatically. No more worrying about someone skipping it! 😅
Let me know if you have any other tips for tightening up access!