This idea has been merged into another idea. To comment or vote on this idea, please visit A01-I-1866 Specify DEFAULT login option in Rep Console.
Currently, Bomgar allows a SAML IDP to be used, which works perfectly. The US Government is currently under pressure to require Smart Cards for all forms of login, which although Bomgar accepts, it does not technically require only the SAML authentication. The local account can still be used.
Although this would create great risk to the accessibility of the appliance, in order to be compliant, I request the ability to disable the local account be added. In doing so, the Username and Password field be hidden, as only SAML would work.
Of possibly even greater value would be to allow the above, and also allow the username and password options to use the local account for only certain network ranges. We can already restrict access to the /login pages. Ideally, if we could restrict the ability to use user/pass to certain ranges, it would be an adequate mitigation as well! This would also allow the appliance to be rescued from identified secure physical locations.