MFA MODULE
10.1.1. General settings
- If the Enable Multi Factor Authentication field is allowed, it will use all 3 elements of authentication in the system such as: authentication through Google Authenticator, authentication via Whatsapp and authentication via SMS.
- Delete old history field (Login & Send code) after … month: if you enter the number of months in this field, the system will delete the data beyond the current date of the system in the Reports screen
- Clear logs function: The system will delete all login history with authentication factor and delete all history of sending code to log in for accounts
10.1.2. Set up confirmation through Google Authenticator
- The Enable Google Authenticator field, if allowed, will be able to use authentication through Google Authenticator, but provided that the Enable Multi Factor Authentication field in the General settings screen is also allowed.
- The Enable Google Authenticator field is for employees, when this function is enabled and the Enable Google Authenticator field is enabled, employees in the Employee group will be able to use the authentication function with Google Authenticator.
- The Enable Google Authenticator field for managers is similar to that for employees, when this function is enabled and the Enable Google Authenticator field is enabled, employees in the management group will be able to use the authentication function with Google Authenticator.
10.1.3. Confirmation settings through Whatsapp
- The Enable Whatsapp field, if allowed, will be able to use authentication via Whatsapp, but provided that the Enable Multi Factor Authentication field in the General settings screen is also allowed.
- Whatsapp. Similar to Google Authenticator, Users can enable authentication via Whatsapp if you check to this checkbox.
- Please enter the full information below when you activate Whatsapp. If the information is missing, the security code will not be sent to the user when they enable authentication via whatsapp.
- Click here to view how to connect your Twilio number to your WhatsApp business profile.
- You need to create a Whatsapp message template similar to the one you configured in the “Whatsapp message template” field. Click here to see how to create it.
10.1.4. Confirmation settings via SMS
The Enable SMS field, if allowed, will be able to use authentication via Whatsapp, but provided that the Enable Multi Factor Authentication field in the General settings screen is also allowed.
You can configure SMS sending via Twilio, Clickatell, MSG91.
Note: Only 1 active SMS gateway is allowed.
10.2. For normal users
10.2.1. Google Authenticator
- Go to MFA Management menuMFA -> MFA management -> Activate the authentication method you want to use and click submit.
- You can only enable authentication via Google Authenticators when your role is authorized by the administrator to use this feature.
- Once activated you can generate your secret key by “clicking refresh button”.
- After saving the settings, “View qr code” button will be displayed. Click on it to view the QR code & Scan it with Google Authenticator app to get the login code.
- For Google Authenticator, you need to install Google Authenticator app (Android & IOS) to use this feature.
- Scan the QR code using the Google Authenticator app and you will receive a login code.
- Login codes will be refreshed every 30 seconds. Please enter it before this time expires.
10.2.2. Whatsapp & SMS
- For Whatsapp & SMS, you need to enter your phone number & whatsapp phone number when you activate it. You need to enter a phone number with the correct format of your country. Example with my country: +84123456789.
- When you activate Whatsapp & SMS, you will receive the login code via whatsapp & sms.
10.3. Report
10.3.1. Report Login History Via MFA
- The screen is used to display the history of logging into the system using verification functions such as authentication through Google Authenticator, authentication via Whatsapp and authentication via SMS.
- Select the Reports menu -> select the Login History Via MFA screen -> Proceed to filter the data so that the system displays the desired data.
10.3.2. Report Security Code Sending History
- The screen is used to display the history of sending codes when verifying via Whatsapp and authenticating via SMS.
- Select the Reports menu -> select the Security Code Sending History screen -> Proceed to filter the data so that the system displays the desired data.
10.3.3. Chart Report Usage statistics for Login Frequency
- The screen is used to represent the amount of history logged into the system by functions via the bar chart
- Select the Reports menu -> select the Usage statistics for Login Frequency screen -> Proceed to filter the data so that the system displays the desired data.