Two-Factor Authentication
Overview
Two-Factor Authentication (2FA) adds an extra layer of security to your account. When enabled, you must provide a verification code from an authenticator app in addition to your password when logging in.
How to Access
- Navigate to Settings > Profile
- Click the Security tab
Interface Overview
The Security tab displays one of two views depending on whether 2FA is currently enabled:
If 2FA is not enabled:
- A step-by-step guide to set up 2FA
- A QR code for scanning with your authenticator app
- A shared key for manual entry
- A verification code input field
- A Verify button
If 2FA is enabled:
- A confirmation that 2FA is active
- Recovery codes (shown once after activation)
- A Disable 2FA button
Features & Actions
Enable Two-Factor Authentication
What it does: Activates 2FA on your account using a TOTP (Time-based One-Time Password) authenticator app.
Steps:
- Go to Settings > Profile > Security tab
- Download an authenticator app if you don't have one:
- Scan the QR code with your authenticator app, or manually enter the shared key shown on screen
- Enter the 6-digit Verification Code from your authenticator app
- Click Verify
- If successful, 2FA is now enabled and recovery codes are displayed
Important notes:
- Save your recovery codes in a secure location immediately after activation
- Recovery codes can be used to log in if you lose access to your authenticator app
- Each recovery code can only be used once
Disable Two-Factor Authentication
What it does: Turns off 2FA for your account. After disabling, only your password is required to log in.
Steps:
- Go to Settings > Profile > Security tab
- Click the Disable 2FA button
- 2FA is deactivated immediately
Important notes:
- After disabling, your account is protected only by your password
- You can re-enable 2FA at any time by repeating the setup process
Fields Reference
| Field | Description | Required | Notes |
|---|---|---|---|
| Verification Code | 6-digit code from your authenticator app | Yes (during setup) | Time-sensitive, refreshes every 30 seconds |
FAQ
Q: What authenticator apps can I use? A: Any TOTP-compatible authenticator app works, including Microsoft Authenticator, Google Authenticator, Authy, and 1Password.
Q: I lost my phone. How do I log in? A: Use one of the recovery codes that were provided when you first enabled 2FA. Each code can be used once. If you have no remaining recovery codes, contact your administrator for assistance.
Q: Can I regenerate recovery codes? A: The system supports resetting recovery codes, but this action must be performed through account support.