Difference between revisions of "Two Factor Authentication"

From Hornbill
Jump to navigation Jump to search
(Describes how to enabled and configure two-factor authentication for users and guests.)
 
 
(2 intermediate revisions by one other user not shown)
Line 1: Line 1:
 +
This document can now be found at its new location in the [https://docs.hornbill.com/esp-config/security/two-factor-authentication/ Hornbill Document Library].
 +
 +
[[file:hornbill-document-library.png|Hornbill Cloud|link=https://docs.hornbill.com/esp-config/security/two-factor-authentication/]]
 +
 +
<!--
 
Hornbill supports two-factor authentication for both user and guest accounts.  Two factor authentication (2FA) can be enabled by the system administrator to either force 2FA for all accounts, or to allow 2FA to be required on an account-by-account basis.  
 
Hornbill supports two-factor authentication for both user and guest accounts.  Two factor authentication (2FA) can be enabled by the system administrator to either force 2FA for all accounts, or to allow 2FA to be required on an account-by-account basis.  
  
Line 11: Line 16:
  
 
* Search the admin area for "2fa guest", and configure the two settings according to your preferences.  Chose 'optional' mode if you want to enabled 2FA on an account by account basis (t.b.a).  Chose 'required' mode if you want to make 2FA mandatory for all accounts globally.  
 
* Search the admin area for "2fa guest", and configure the two settings according to your preferences.  Chose 'optional' mode if you want to enabled 2FA on an account by account basis (t.b.a).  Chose 'required' mode if you want to make 2FA mandatory for all accounts globally.  
* there is currently no guest account option to enable/disable 2FA
+
* If you have chosen 'optional' mode, you will need to go into the guest accounts list, select the account(s) and press the 2FA button (the shield with tick icon), to set the 2FA mode for that account(s).
  
  
 
=== How Two-Factor Authentication Works ===
 
=== How Two-Factor Authentication Works ===
When enabled, if a user (guest) logs in using direct login with their normal credentials, instead of being logged in, the login page will change and prompt with instructions to enter a 6-digit authentication code. This authentication code is sent to the user (or guest) account primary email address. Simply type that code when prompted to complete the second phase of the authentication and the user (guest) will be logged in as usual.
+
When enabled, if a user (guest) logs in using direct login with their normal credentials, instead of being logged in, the login page will change and prompt with instructions to enter a 6-digit authentication code. This authentication code will be sent to the user (or guest) account using their primary email address, the email will look similar to the image below. Simply type that code when prompted to complete the second phase of the authentication and the user (guest) will be logged in as usual.
 +
 
 +
 
 +
[[File:2fa.png|500px]]
 +
-->
 +
[[Category:HDOC]]
 +
<!-- https://docs.hornbill.com/esp-config/security/two-factor-authentication -->

Latest revision as of 19:15, 12 September 2023

This document can now be found at its new location in the Hornbill Document Library.

Hornbill Cloud