With the Full Site Protection feature on, users within the untrusted network cannot authenticate unless they have completed the initial activation of the second factor. The activation can only occur within the trusted network via User Access Security Broker from Secfense, which means the users need to visit the office.
The main purpose of Full Site Protection is to give security admins full control over the application security. With User Access Security Broker from Secfense, security admins can protect not only the login process but also the entire application.
Two-factor authentication increases the security of the authentication process, but applications may still contain inherent vulnerabilities. If that is the case, the breach can still take place, and data can be compromised, despite secure authentication.
With Secfense Full Site Protection in place, no one can gain access without pre-authenticating first. In this mode, User Access Security Broker will only accept people with the already registered second factor. People without the registered second factor will not even be able to access the login page.
This is especially useful for organizations that do not have an SSL VPN in place, as User Access Security Broker with Full Site Protection is an excellent alternative to VPN.
Full Site Protection is an extra measure against cyberthreats that any organization can take. All people who use the application with Full Site Protection must first visit the office and enable their second factor from within the trusted network. The decision which applications should be protected with Full Site Protection and which can be subject to a more lenient security policy is up to the security administrator. Full Site Protection can be switched on and off in the Secfense broker via the administrator dashboard and configured in the same place where two-factor authentication methods are chosen.
Want to test out Full Site Protection on your testing environment?