Security & Encryption
IP allowlisting and session timeout security
Pair2FA Engineering
·Updated 1 week ago
·3 min read
Restrict vault access to company VPN IPs and configure strict session auto-lock rules.
Network Access Controls
For enterprise teams operating strict zero-trust networks:
- IP Allowlisting: Specify corporate CIDR IP ranges. Attempts from unauthorized IPs are blocked and logged.
- Automatic Vault Locking: Configure idle session timeouts (e.g. 15 minutes) to automatically lock live passcode visibility.
Was this article helpful?
Let us know how we can improve our documentation.
RELATED ARTICLES IN THIS TOPIC
How Pair2FA encrypts 2FA secrets at rest (AES-256-GCM)
Deep dive into cryptographic key derivation, initialization vectors, and vault protection.
Read article
Understanding real-time audit logs & access history
Track every passcode copy, team invitation, and role change with immutable timestamps.
Read article
Why Pair2FA operates without browser extension risks
Reducing the attack surface of DOM scraping malware and malicious extension updates.
Read article
STILL NEED HELP?
Have questions?
Our support team is online 24/7 to help you configure 2FA for your organization.
Contact support