Identity & Access
Every action on VxCloud is tied to an authenticated identity. Tenants federate their corporate IdP, enforce MFA on sensitive paths, and scope what each role can see and change down to a single resource.
- SAML 2.0 and OpenID Connect SSO with Okta, Azure AD, Google Workspace, JumpCloud, OneLogin
- TOTP and WebAuthn multi-factor authentication, enforced per-role
- Fine-grained role-based access control (RBAC) at workspace, project, and resource scope
- Short-lived API tokens scoped to a single workspace; rotation without downtime
- Just-in-time access requests with approval workflows for production resources