Should a customer want to invoke a security login above and beyond the standard email and password provided as default in the application, two factor authentication (using a mobile smartphone and google authenticator) can be introduced.
The first step is to invoke two factor authentication across the application as a whole. A user with an appropriately assigned role (Group Application Administrator) can access Group Settings from the main Mondial Menu
From the page displayed edit the TFA support option using the 'pen' edit button on the right of the top section.
Click the checkbox and select update
Two factor authentication is now active for all users across the application. The initial process of authentication will now be required either the first time new users login, or the first time existing users re-login following the authentication invoke.
Administrators of the Mondial application should therefore ensure that they have fully communicated this change to all users before it is invoked so they are well prepared for the subsequent change to their login procedures.
Users will be presented the following at login:
Use a smartphone authentication application, like google authenticator, to generate an authorization code. Enter the code and access to the Mondial application will be provided
Subsequent access to the Mondial application will also require interaction with the smartphone authentication software.
Next time users login they will be asked for the email and password, as below
However, before access to the application is provided an second level of authentication is required. The following will be displayed.
Only entry of an approved code will allow a user access to the application.
If a user need to reset their two factor authentication they will need to contact the Group Application Administrator user. (Mondial Support may be able to assist if a Group Application Administrator is unavailable).
The Group Application Administrator should sign into Mondial and go the the Users page:
Edit the user to be reset. In tee example below this is user 7
On the specific user page, check the reset TFA box and select update user.
When the user next logs in, they will be invited to re-initiate the two factor authentication process by scanning a QR code in Google Authenticator.
Comments
0 comments
Please sign in to leave a comment.