How Cisco Duo Supports Zero Trust

By Lauren Bell | Mar 31, 2020 | Insights

What is 2FA?  

2FA stands for “Two factor authentication.”  

2FA strengthens access security by requiring two authentication factors, or credentials, to verify user identities. 

These factors can include combining: 

  • Something you know 
    • Such as: a passcode, PIN  
  • Something you have  
    • Such as: a smart phone, a token  

What does 2FA Protect Against? 

2FA protects against phishing, social engineering and password brute-force attacks and secures your logins from attackers exploiting weak or stolen credentials. 

How Duo supports Zero Trust

What is DUO and How Does it Work?

Duo is a security tool offering 2-factor authentication via mobile phone applicationWorking with the input of a username and password, a second authentication method is leveragedFor that second authentication method, Duo utilizes one of either: 

  • Push Notification  
  • Phone Call  
  • Text Message 

Upon setting up Duo, the admin can choose what the second form of authentication is. 

How does Duo Support Zero Trust?  

Zero Trust defense is built on the fundamental rule of don’t trust anyone.  

Duo upholds Zero Trust by assuming any log in attempt is the result of  compromised credentials. In order for access to be granted via log in, the user must verify their identity- proving they are who they claim to beThat verification comes from Duo’s mobile application.

How Cisco DUO Security Works Comic

What Makes Duo simple for Users?  

The less strain security measures put on users, the more likely users are to comply. Duo was designed for ease of use and because of this, Duo has been successful in delivering a solution that doesn’t significantly impede user workflow.  

Duo has become well known for:  

  • It’s ability to be easily to accessed 
  • Low cost 
  • Allowing users to react quickly  
  • Not overburdening users with security measures 
  • It’s push method ease of use 

