1. What This Feature Does
The Two-Factor Authentication (2FA) setting allows administrators to enforce an additional layer of security by requiring users to verify their identity using a second authentication method.
This helps protect user accounts and sensitive data from unauthorized access, even if login credentials are compromised.
You can define:
- Whether 2FA is enabled for your organization
- Whether 2FA can be assigned and enforced through roles
2. Who Can Use It
- Admin users can configure Two-Factor Authentication settings
Plan-Based Behavior
For Non-Enterprise Plans
- Settings are applied globally across the subscription
- When enabled, 2FA is required for all users
- Users cannot override this setting
For Enterprise Plans
- This setting acts as a feature control (similar to admin configuration)
When the setting is:
- Enabled → 2FA becomes available to assign in Manage Roles
- Disabled → 2FA is not available anywhere in the system
Important:
- Once enabled, Two-Factor Authentication cannot be disabled from this page
- To disable 2FA after it has been enabled, you must contact support@titanfile.com
3. Step-by-Step Instructions
- Navigate to Security Settings
- Locate the Two-Factor Authentication (2FA) section
- Configure the following option:
A. Require Two-Factor Authentication for All Users
- Toggle ON to enable 2FA for your organization
- Once enabled, this setting cannot be disabled from this page
Changes are saved automatically when toggles are enabled or disabled. There is no Save button.
4. What Happens After
For Non-Enterprise Plans
- 2FA is enforced across the entire subscription
- All users are required to set up and use 2FA
- Users cannot disable 2FA
For Enterprise Plans
- 2FA becomes available as a role-based setting
When enabled:
- 2FA can be assigned and enforced through Manage Roles
When disabled:
- 2FA is not available anywhere in the system
Important Behavior
- Once 2FA is enabled:
- It cannot be turned off from the Security Settings page
- To disable it, you must contact support@titanfile.com
- For Enterprise plans:
- Enforcement depends on role configuration
- Some roles may require 2FA, while others may not (based on setup)
- For Non-Enterprise plans:
- 2FA is enforced for all users with no exceptions
5. Best Practice for Enterprise
For greater flexibility and control:
- Enable 2FA in Security Settings
- Then enforce it using custom roles in Manage Roles
This ensures:
- High-risk users or roles require stronger authentication
- Security policies can be tailored by role
- Default roles (Admin/Standard) do not become overly restrictive