Boomi is unifying logins across Boomi Enterprise Platform™️ products. With this change, Boomi users will be able to use a single set of credentials to access any of Boomi’s products. Users will no longer have to remember separate credentials for each Boomi service. This change also means that Boomi will no longer support enabling custom password policies directly on the platform. As always, Boomi recommends that users set up multi-factor authentication on their Boomi Enterprise Platform™ accounts for added security.
What is Boomi Unified Login?Q. What is Boomi Unified Login?
Boomi is rolling out a unified login across all of its products. This will allow users to share the same login between Boomi Enterprise Platform, Boomi Pay-As-You-Go, Discover, and Flow.
Q. How will this benefit me?
Since all Boomi services will share the same login session, users will be able to switch between different applications and services without having to sign in again. In addition, users will no longer have to remember more than one set of credentials.
Q. When will my account be migrated?
The migration will take place in 3 separate cohorts, and will follow this schedule:
Q. Will you notify me when my account is being migrated?
Yes, an email notification will be sent regarding the change and the estimated date of migration as it applies to your account.
Q. My account uses corporate SAML, how will this affect me?
All accounts with SAML enabled will be unaffected by these changes, so you should be all set!
Q. When this goes into effect will I have to create a new password?
No, this should not be necessary. If you have a user account with the same email address in Flow, that password will now be used for both Integration and Flow.
Q. I do not remember my Flow login password, what should I do?
If you do not remember your Flow login password, after the migration please go through the password reset process in the Boomi Enterprise Platform.
Q. My account enforces the use of Multi-Factor Authentication, how will this affect me?
If you are currently using two-factor authentication, after you are migrated, you will need to re-enable this functionality in your user settings by following these instructions.
Q. What are the new password requirements?
The minimum length for the new password will change from 8 characters to 12 characters. The passwords would need to be changed by users the next time they try to login and if the previous passwords did not meet the new password requirements. Passwords cannot consist solely of a sequence, a repeated character or a keyboard pattern (such as qwertyui). However, you can have a password that consists of a mixture of upper and lower case characters in a sequence. Passwords cannot be common passwords, such as password, password123, changeme, administrator, etc. Additionally, if you receive a system-generated password, you must change it the first time that you sign in.
Q. Will user account lockout behavior change?
No, user accounts will continue to be locked after 6 unsuccessful attempts to log in.
Q. Why is boomi no longer supporting custom password policies?
The change will allow users of our unified platform to be able to use a single set of credentials to access any of Boomi’s products. As per National Institute of Standards and Technology (NIST) Cybersecurity framework (NIST Special Publication 800-63B), enabling custom password change and complexity requirements does not necessarily improve password strength. However, increasing the password length improves the strength of passwords. For these reasons, custom password policies that were supported for some products are going away.
Q. Do I have to take action today?
If your account uses corporate SAML, there will be no action required. If you have a Flow account that meets the minimum requirements, there will be no action required and you can use the same credentials to login to your account. Before the migration, please ensure that the email associated with your account in Boomi Enterprise Platform exactly matches the email associated with your Flow account. You can change this in account settings by following these instructions.
If your organization needs to enforce custom password policies for users logging into your account, you will need to bring your own identity provider. For additional security, Boomi recommends account administrators require multi-factor authentication for all users.
Q. My account requires FedRAMP compliance, will this affect me?
Users that are part of a FedRAMP account will not be affected by this change.