Skip to main content
All CollectionsTechnical
Two-Factor Authentication (2FA)

Two-Factor Authentication (2FA)

Learn about 2FA and how to set it up

J
Written by Jo Bigg
Updated over a week ago

So, what is Two-Factor Authentication?

Two-factor authentication (2FA) is a security method that requires two forms of identification to access data and resources. It's a type of multi-factor authentication (MFA).


How it works

  • A user enters their username and password to log in.

  • The site's server verifies the user's credentials.

  • The user is prompted to provide a second form of identification.

  • The user provides the second form of identification.

  • The site's server validates the second form of identification.

Examples of 2FA

  • SMS verification: A code is sent to the user's phone via text message, which they must enter in addition to their password.

  • Biometric identifier: A fingerprint or iris scan is used to verify the user's identity (found mostly on smartphones or tablets).

  • Smartphone app: The user must approve their authentication request using a smartphone app before logging in.

Benefits of 2FA

  • It makes it harder for attackers to impersonate a user.

  • Sensitive information and networks are better protected.

  • It helps prevent unauthorised access to digital accounts.


How to Enable 2FA

  • 2FA is easily set up in Service Geeni via System Settings.

  • Once here, head to the Complexity Rules tab.

Complexity rules can be set to specify how users should log into the system.

This allows you to set an expiry length on passwords, specify the minimum length, if special characters should be used and set 2-Factor Authentication.

  • Click Edit to make any changes.

You now need to fill in all the fields as per your parameters.

  • Expiry Days

    • Set how many days until the password expires, prompting the user to set a new password.

  • Required Mixed Case

    • Set if upper / lower case is allowed.

  • 2FA Provider

    • Select the 2FA provider: TOTP

TOTP = Time-based One-Time Password

  • Max Failed Attempts

    • Set number of failed attempts allowed.

  • Minimum Length

    • Set minimum length allowed for password.

  • Required Special Characters

    • Tick this box if Special Characters can be used, this make the password more secure.

  • 2FA Authenticator Settings

    • Select how you want the Authenticator set by user.

      • Mandatory for All Users

      • Optional - User Opts In

  • Once you are happy, click Save.


Duo

  • To use Duo, there is a charge for each license.

  • The Duo service needs to be enabled on your Service Geeni tenant. Once it's setup each of your users will be enrolled on their next login.

  • We'll also give your admin a login to the Duo portal, where you can manage advanced features like Geofencing.

If you have any questions or need further assistance, please do not hesitate to contact your Onboarding Consultant.

Did this answer your question?