Skip to main content

Two-factor authentication (2FA)

2FA adds a second layer of security to your account. Users can sign in if they have two forms of authentication: something you know and something you have.

2FA is mandatory for all DigiCert​​®​​ account and you can’t disable it. If you need to disable 2FA, contact support to request an exception.

Two-factor authentication and single sign-on (SSO)

When two-factor authentication is enabled:

  • SSO using SAML

    DigiCert prompts you to enter an OTP when signing in, even if you have already provided an OTP to your identity provider (IdP).

  • SSO using OIDC

    DigiCert skips the OTP prompt if you have already provided an OTP to your IdP.