> ## Documentation Index
> Fetch the complete documentation index at: https://firebolt-aggregate-helm-docs-pr-30.mintlify.site/llms.txt
> Use this file to discover all available pages before exploring further.

> Learn about how to enable and disable multi-factor authentication in Firebolt.

# Multi-factor authentication

Enable multi-factor authentication (MFA) as an additional layer of security to protect data that is accessible through Firebolt. With MFA enabled, users must authenticate with a one-time code generated by their mobile device upon login. MFA can be enabled per login.

<Note>
  Enabling MFA for a login requires the org\_admin role.
</Note>

## Enable MFA for a login

### SQL

To enable MFA for a login using SQL, use the [ALTER LOGIN](/managed-service/organization/commands/alter-login) statement. For example:

```sql theme={"theme":{"light":"css-variables","dark":"css-variables"}}
ALTER LOGIN "alex@acme.com" SET IS_MFA_ENABLED = TRUE;
```

Multi-factor authentication can also be set for new logins, with the [CREATE LOGIN](/managed-service/organization/commands/create-login) command. For example:

```sql theme={"theme":{"light":"css-variables","dark":"css-variables"}}
CREATE LOGIN "betsy@acme.com" SET IS_MFA_ENABLED = TRUE;
```

### UI

To enable MFA for a login in the UI:

<img src="https://mintcdn.com/firebolt-aggregate-helm-docs-pr-30/i7aOQz4RlilHEGLs/assets/images/mfamanagement.png?fit=max&auto=format&n=i7aOQz4RlilHEGLs&q=85&s=e1b452ed502e83747e0b438ed1c35064" alt="Configure > MFA" data-og-width="3024" width="3024" data-og-height="622" height="622" data-path="assets/images/mfamanagement.png" data-optimize="true" data-opv="3" srcset="https://mintcdn.com/firebolt-aggregate-helm-docs-pr-30/i7aOQz4RlilHEGLs/assets/images/mfamanagement.png?w=280&fit=max&auto=format&n=i7aOQz4RlilHEGLs&q=85&s=f61fead4e04b34bc3d8eaf1bf9578d86 280w, https://mintcdn.com/firebolt-aggregate-helm-docs-pr-30/i7aOQz4RlilHEGLs/assets/images/mfamanagement.png?w=560&fit=max&auto=format&n=i7aOQz4RlilHEGLs&q=85&s=636c477553d807f8d412b13446a0dbe0 560w, https://mintcdn.com/firebolt-aggregate-helm-docs-pr-30/i7aOQz4RlilHEGLs/assets/images/mfamanagement.png?w=840&fit=max&auto=format&n=i7aOQz4RlilHEGLs&q=85&s=c556592fa091f3f26b889ae5f4544219 840w, https://mintcdn.com/firebolt-aggregate-helm-docs-pr-30/i7aOQz4RlilHEGLs/assets/images/mfamanagement.png?w=1100&fit=max&auto=format&n=i7aOQz4RlilHEGLs&q=85&s=5b943f8908cb19fcffa89bfb941b6146 1100w, https://mintcdn.com/firebolt-aggregate-helm-docs-pr-30/i7aOQz4RlilHEGLs/assets/images/mfamanagement.png?w=1650&fit=max&auto=format&n=i7aOQz4RlilHEGLs&q=85&s=7c5b63dc0f9bc4da007e8de56d07f984 1650w, https://mintcdn.com/firebolt-aggregate-helm-docs-pr-30/i7aOQz4RlilHEGLs/assets/images/mfamanagement.png?w=2500&fit=max&auto=format&n=i7aOQz4RlilHEGLs&q=85&s=34bc6ebe2fe7ac8fbf21fe14b4fa01b8 2500w" />

1. Click **Configure** to open the configure space, then choose **Logins** from the menu.

2. Search for the relevant login using the top search filters or by scrolling through the logins list. Toggle on **Is MFA enabled**.

<img src="https://mintcdn.com/firebolt-aggregate-helm-docs-pr-30/i7aOQz4RlilHEGLs/assets/images/mfaenabled.png?fit=max&auto=format&n=i7aOQz4RlilHEGLs&q=85&s=bcd54272ceea111726744454b3045a6f" alt="Is MFA enabled" width="3018" height="614" data-path="assets/images/mfaenabled.png" />

MFA can also be enabled when creating a login, by toggling **Is MFA enabled** in the **Create login** window:

<img src="https://mintcdn.com/firebolt-aggregate-helm-docs-pr-30/i7aOQz4RlilHEGLs/assets/images/mfaloginenabled.png?fit=max&auto=format&n=i7aOQz4RlilHEGLs&q=85&s=3fa9f0b16f6d100fd888e119d4e819fc" alt="Enable MFA" style={{"width": "500px"}} width="1398" height="758" data-path="assets/images/mfaloginenabled.png" />
