Access Security


The Security section allows you to configure advanced protection measures for your organisation. It includes two key systems: Two-Factor Authentication (2FA) and the Authorised IP Address List (IP Whitelist).

These features significantly enhance your organisation’s security by adding extra layers of protection against unauthorised access.


Two-Factor Authentication (2FA)

Activer 2FA


Organisation-wide 2FA allows you to enforce the use of two-factor authentication for all members of your organisation. When this option is enabled, all users must set up and use 2FA to access your organisation.

Prerequisite to Enable 2FA
You must first enable 2FA on your own account before enforcing it across the organisation.

Note: Organisation-wide 2FA is not available for organisations using Single Sign-On (SSO). If your organisation uses an SSO domain, this feature will be automatically disabled.

How to Enable 2FA for the Organisation

  1. Go to the Security section in the side menu.
  2. Locate the Two-Factor Authentication card.
  3. Toggle the switch to Enabled.
  4. Click Confirm to apply the change.

Immediate effect: All members who haven’t set up 2FA will be required to do so the next time they log in.


Authorised IP Address List (IP Whitelist)

The IP Whitelist feature allows you to restrict access to your Boldo organisation to specific IP addresses. This is particularly useful for organisations that want to limit access to office networks, company VPNs, or other secure locations.


How Whitelisting Works

Once IP whitelisting is enabled:

  • Only the authorised IP addresses you specify will be able to access the organisation.
  • You can define individual IP addresses or entire ranges using CIDR notation.


How to Configure the IP Whitelist

  1. Go to the Security section in the side menu.
  2. Locate the Authorised IP List card.
  3. Click Manage to open the settings.
  4. Set up your rules.
  5. Click Confirm to save your configuration.


Enabling/Disabling Whitelisting

  • Use the toggle switch to activate or deactivate IP whitelisting.


Adding IP Addresses

  • IP Address: Enter the IP address you wish to authorise.
  • CIDR (optional): Specify an address range (e.g., /24 for a full subnet).


Important: Your current IP address must be included in the authorised list. Boldo will prevent you from accidentally locking yourself out of your own organisation.