Overview
Two-factor authentication (2FA) is a two-step verification system that adds an additional layer of security to login details. It involves the traditional user email and password as well as a 6-digit number generated by an app that is common to the user and the authentication system.
Currently, 2FA is not mandatory at FundApps. However, if you would like to, FundApps can enable 2FA in each environment. Determining whether 2FA is required on your account depends on your needs.
If Single Sign-On (SSO) is implemented, 2FA can be bypassed in reliance on SSO security and any user can easily sign in by providing their user email only. If SSO is not implemented, 2FA can be used instead.
Setup
To set up 2FA, you will need a smartphone with an internet or Wi-Fi connection and an authenticator app.
Once enabled, any user can sign up to use 2FA on their account by following the steps below:
Download and install a suitable mobile application on your smartphone. There are a number of apps that you can use for this purpose, including Google Authenticator, Authy, Duo, HDE OTP, FreeOTP, Microsoft Authenticator, etc. We recommend Google Authenticator as a free and reliable solution.
Log into FundApps with your user email/password.
Click on your account menu and select Preferences.
Select Enable Two-Factor Authentication.
Click Save.
Deactivation
You can deactivate 2FA by navigating to the Preferences screen:
Click on your username to access the Edit User pop-up window.
Select Remove Two-Factor Authentication.
Click Save.
This will prompt the system to forget your details. If you decide to enable 2FA again in the future, you will have to go through the setup process once more.
FAQ
Q. What happens if I lose my device (and change to a new device) or my account record is erased from the app I was using?
A. If you do not have any backup codes available, contact your system administrator. They can remove 2FA from your user settings by unticking Two-Factor Authentication under Admin > Users. You should then log in using your user email and password, after which you will be prompted to set up 2FA again.
Q. What happens if I type the authentication code wrong and get locked out?
A. A FundApps administrator can remove 2FA from your account. The user (rather than the admin) would also have to reset the password.