MFA Authentication

MFA Authentication

Description

Multi-Factor Authentication (MFA) strengthens application security by requiring users to verify their identity using multiple authentication factors beyond just a username and password.

This guide provides details on the authentication methods available for user validation.

Functionality

There are three authentication methods:

Before proceeding, make sure to enable Multi Factor Authentication. For more information, see Housekeeping.

To switch between the authentication methods, on the login page, click the Change MFA Password? link. You are then redirected to the Security verification settings page where you can select the preferred authentication method in the drop-down list:

mfa_security_verification_settings.png

On selecting, based on the selected authentication method, additional data may be required. Fill it up and click APPLY.

 

Email Authentication

Multi Factor Authentication with the help of user’s email is set by default on the login page:

mfa_authetication_login_page.png

After entering your username and password on the login page, proceed as described below:

  1. Click the Request code button.

  2. Enter the numeric code sent to your email address.

  3. Click Login.

The email is sent to the user’s email address specified in the Personal Details.

The system preserves the last selected multifactor authentication method as preferred.

 

Authenticator Application

You can enhance the authentication by using phone application-base verification. For this, on the login page, click the Change MFA Password? link and select the Authenticator App method on the Security verification settings page:

mfa_security_verification_settings.png

Selecting the method will redirect you to the page with instructions on how to configure your mobile phone:

Google_app_authentication.png
  1. Install the Google or Microsoft Authenticator app.

  2. In the application, add an account or select Work account.

  3. Scan the QR code image on the page or enter the code manually.

  4. Click Apply for the changes to take effect.

Installing the application and scanning the QR code apply to the first-time users only.

The system preserves the last selected multifactor authentication method as preferred.

 

SMS Authentication

To enable the MFA via sms, on the login page, click the Change MFA Password? link and select the SMS-based authentication method on the Security verification settings page:

mfa_security_verification_settings.png

Selecting the method will redirect you to the page where you can enter the country code and your telephone number:

SMS_authentication.png

Once done, click Apply.

Entering the country code and telephone number apply to the first-time users only.

The system preserves the last selected multifactor authentication method as preferred.

 

Housekeeping

Before getting started with the MFA authentication, you need to enable the feature. To do it, refer to https://adonishr.atlassian.net/wiki/spaces/KB/pages/3218506197/Configuration#Multifactor-Authentication.