25.11.2024 | TD SYNNEX
Lizenz: Adobe Stock
Very often, the security of a perimeter or environment focuses particular attention on authentication processes as well as the means made available to users to achieve this. What methods, what conditions, what protocols should be implemented? MFA is a basic principle now acquired by all and is present in a majority of systems, but the password is still part of it.
The concept of Passwordless refers to an authentication method that allows users to log in to systems or services without having to use a traditional password.
In other words, the concept of Passwordless brings together several different authentication methods, such as:
The main goal of Passwordless is to reduce the risk of compromise linked to traditional passwords, such as phishing attacks, password theft, or bad practices linked to password management (weak or reused passwords).
Passwordless vs MFA?
Passwordless and MFA (Multi-Factor Authentication) are 2 secure authentication methods, but they differ in their approach and implementation.
Features like multi-factor authentication (MFA) are a great way to secure your organisation, but users are often frustrated by the extra layer of security on top of having to remember their passwords.
Passwordless authentication methods are more convenient because the password is removed and replaced with something you have or something you are or know.
Let’s compare these 2 concepts:
Characteristic | Passwordless | MFA (Multi-Factor Authentication) |
Use of passwords | No password use | Often uses password + other factor |
Security | Very secure (no passwords to compromise) | Very secure (requires multiple factors) |
User experience | Fluid and simplified | Can be more complex (multiple steps) |
Technology used | Biometrics, security keys, magic link, etc. | Password combination + SMS, email, biometrics |
Examples of use | Fingerprint login, magic link | Login by password + SMS code or Authenticator app |
You can find detailed instructions on how to set up Azure Bastion in a blog post by Jean-Loup Orgitello on jloulinux.azurewebsites.net. Click on the link to leave the TD SYNNEX blog.