Skip to main content
All integrations
Identity + SSO

Duo Security + Ignite Lean

Available now

Duo (Cisco) handles MFA. Layer it on top of Ignite Lean sign-in for sensitive operations.

REST API

How the Connection Works

Duo Security
REST API
Ignite Lean
Into Ignite Lean
  • Auth status
Back to Duo Security
  • MFA challenges

How It Works

  1. 1Configure Duo MFA against the Ignite Lean IdP.
  2. 2Sensitive operations (kicks, billing changes, approvals) trigger MFA.
  3. 3Auth status syncs back.

Recommended Workflows

How Duo Security works best with Ignite Lean. These are recommended patterns: Ignite Lean fires the trigger, and how Duo Security routes it (which work group, which device, which rule) is configured to your IT setup.

Joiners + leavers happen automatically
Trigger HR hires or terminates an employee in Duo Security
  1. 1Duo Security fires a SCIM event.
  2. 2Ignite Lean provisions or de-provisions the user with the right role from group mapping.
  3. 3No manual user setup, no orphan accounts.
IT stops getting "please add X to Ignite Lean" tickets, and access never lingers after termination.
Step-up MFA on sensitive actions
Trigger A super_user kicks someone, changes billing, or approves a high-impact change
  1. 1Ignite Lean asks Duo Security for a step-up MFA challenge.
  2. 2The user re-authenticates with their second factor.
  3. 3The action proceeds and the MFA event lands in the audit log.
High-impact actions stay protected without forcing MFA on every single login.

Connect Duo Security today

This works now through our REST API, outbound webhooks, and Excel/CSV. Start with the API reference, or talk to us about a guided setup.