docs/netdata-cloud/authentication-and-authorization/README.md
Learn how to authenticate with Netdata Cloud and manage team member permissions through role-based authorization.
| Method | Description | Setup Process |
|---|---|---|
| • Standard email and password authentication | ||
| • Recommended for individual users | 1. Visit Netdata Cloud |
:::important
When using OAuth, your Netdata Cloud account will be automatically associated with the email address provided by the OAuth provider. Ensure you have access to this email address.
:::
Multi-factor authentication (MFA) adds an extra layer of protection to your Netdata Cloud account. The availability of MFA depends on which sign-in method you use.
| Method | MFA Availability |
|---|---|
| Netdata Cloud does not currently offer built-in MFA for email/password accounts. | |
| Google OAuth | MFA is managed by Google. Enable it in your Google Account security settings. |
| GitHub OAuth | MFA is managed by GitHub. Enable it in your GitHub account settings. |
| Enterprise SSO | MFA is configured and enforced by your identity provider (e.g., Okta, Microsoft Entra ID, Google Workspace) during the SSO authentication flow. |
For organizations that require MFA for all users, Enterprise SSO delegates authentication entirely to your identity provider, which can enforce MFA policies centrally.
Once logged in, you can manage role-based access in your Space to give each team member the appropriate role. For more information, see Role-Based Access model.