Initial Login to Your New CDO Tenant

Cisco Defense Orchestrator (CDO) uses Cisco Security Cloud Sign On as its identity provider and Duo for multi-factor authentication (MFA). To log into CDO, you must first create your account in Cisco Secure Sign-On and configure MFA using Duo.

CDO requires MFA which provides an added layer of security in protecting your user identity. Two-factor authentication, a type of MFA, requires two components, or factors, to ensure the identity of the user logging into CDO. The first factor is a username and password, and the second is a one-time password (OTP), which is generated on demand.


If your CDO tenant existed before October 14, 2019, use Migrating to Cisco Security Cloud Sign On Identity Provider for log in instructions instead of this article.

Before You Begin

Install DUO Security. We recommend installing the Duo Security app on a mobile phone. Review Duo Guide to Two Factor Authentication: Enrollment Guide if you have questions about installing Duo.

Time Synchronization. You are going to use your mobile device to generate a one-time password. It is important that your device clock is synchronized with real time as the OTP is time-based. Make sure your device clock set automatically or manually set it to the correct time.

What to do next?

Continue to, Create a New Cisco Security Cloud Sign On Account and Configure Duo Multi-factor Authentication. It is a four-step process. You need to complete all four steps.