Skip to main content
This guide explains how to enable, configure, and enforce two-factor authentication for users in your PlaneConnection workspace.
This feature requires administrator or workspace owner permissions. Changes made here affect all users in your workspace.
Who should read this: Workspace administrators responsible for security policy.Prerequisites: Admin or Account Owner role.

Why enforce 2FA

Two-factor authentication adds a second verification step beyond passwords, protecting your workspace even if a user’s password is compromised. For Part 135 operators handling safety-sensitive data, 2FA helps satisfy the access control expectations of 14 CFR Part 5 safety data protection.

Configure 2FA settings

Navigate to Settings > Security > Two-Factor Authentication.

2FA policy options

Supported 2FA methods

PlaneConnection supports multiple second-factor methods:

Enable 2FA enforcement

Start with Required for admins before rolling out to all users. This ensures your most privileged accounts are protected first while giving other users time to prepare.

Manage passkeys

If passkeys are enabled for your workspace, users can register hardware security keys or platform authenticators (Touch ID, Windows Hello) as their second factor. Navigate to Settings > Security > Passkeys to view passkey enrollment status across your workspace:
  • Number of users with passkeys registered
  • Users with no second factor configured
  • Recent passkey registrations

Reset a user’s 2FA

If a user loses access to their second factor (lost phone, broken security key):
  1. Navigate to Settings > Members and find the user.
  2. Click Edit on their profile.
  3. Click Reset 2FA. This removes all registered second factors for the user.
  4. The user must set up 2FA again on their next sign-in.
Resetting a user’s 2FA removes all their registered authenticators and passkeys. They will need to re-register from scratch. Only do this after verifying the user’s identity through an out-of-band channel (phone call, in-person verification).

Manage Security

Broader security settings including session policies.

Configure SSO

Set up single sign-on alongside 2FA.

Permissions Matrix

Role-based access control details.
Last modified on April 11, 2026