So, what is Two-Factor Authentication?
Two-factor authentication (2FA) is a security method that requires two forms of identification to access data and resources. It's a type of multi-factor authentication (MFA).
How it works
A user enters their username and password to log in.
The site's server verifies the user's credentials.
The user is prompted to provide a second form of identification.
The user provides the second form of identification.
The site's server validates the second form of identification.
Examples of 2FA
SMS verification: A code is sent to the user's phone via text message, which they must enter in addition to their password.
Biometric identifier: A fingerprint or iris scan is used to verify the user's identity (found mostly on smartphones or tablets).
Smartphone app: The user must approve their authentication request using a smartphone app before logging in.
Benefits of 2FA
It makes it harder for attackers to impersonate a user.
Sensitive information and networks are better protected.
It helps prevent unauthorised access to digital accounts.
How to Enable 2FA
2FA is easily set up in Service Geeni via System Settings.
Once here, head to the Complexity Rules tab.
Complexity rules can be set to specify how users should log into the system.
This allows you to set an expiry length on passwords, specify the minimum length, if special characters should be used and set 2-Factor Authentication.
Click Edit to make any changes.
You now need to fill in all the fields as per your parameters.
Expiry Days
Set how many days until the password expires, prompting the user to set a new password.
Required Mixed Case
Set if upper / lower case is allowed.
2FA Provider
Select the 2FA provider: TOTP
TOTP = Time-based One-Time Password
Max Failed Attempts
Set number of failed attempts allowed.
Minimum Length
Set minimum length allowed for password.
Required Special Characters
Tick this box if Special Characters can be used, this make the password more secure.
2FA Authenticator Settings
Select how you want the Authenticator set by user.
Mandatory for All Users
Optional - User Opts In
Once you are happy, click Save.
Duo
To use Duo, there is a charge for each license.
The Duo service needs to be enabled on your Service Geeni tenant. Once it's setup each of your users will be enrolled on their next login.
We'll also give your admin a login to the Duo portal, where you can manage advanced features like Geofencing.
If you have any questions or need further assistance, please do not hesitate to contact your Onboarding Consultant.