Overview
This article guides you through the process of enabling and updating Multi-Factor Authentication (MFA) within the B2Gnow Baseline System. MFA enhances account security by requiring additional verification beyond a password, significantly reducing the risk of unauthorized access due to weak or compromised credentials. This article provides step-by-step instructions for setting up MFA using either an email verification code or an authentication application. It also includes details on how to manage MFA settings for individual users.
Steps
There are two options for multi-factor authentication: receiving an access code via email or utilizing an "authentication app" (such as DUO, Google, Authy, etc.). The following steps for enabling and updating MFA are identical for all user types.
Note: We use a risk-based approach rather than prompting for MFA every single time you sign in to B2Gnow. What this means for you:
- Most of the time, if you're signing in from a familiar device or location, you likely won't be prompted for an additional verification step.
- If something about a sign-in attempt looks different than usual, you may be asked to verify your identity with a second factor before you can proceed.
- This approach is designed to add protection where it matters most, without creating unnecessary friction for your everyday work.
Enable Multifactor Authentication via Email
1. Select Add Email Method.
2. A modal will appear to inform the user of the next steps. Select Continue to proceed.
3. A new screen will appear, providing additional details. Select Trigger Email with Access Code to prompt an access code to be sent to the email address associated with the user account.
4. Then an email notification will be sent to the user containing an access verification code.
5. Enter the code within 15 minutes and select Submit Code. If it has been over 15 minutes, select the Trigger Another Access Code. To cancel the request, select the Return button.
Enable Multifactor Authentication via the Authenticator App
1. Select Add Authentication App Method.
2. A modal will appear to inform the user of the next steps. Select Continue to proceed.
3. Select Phone or Mobile Device Apps to proceed.
NOTE: Both phone/mobile device apps and browser extensions are supported by the authenticator app method. The following demonstration will use the phone/mobile device app called Authenticator.
4. All Multi-Factor or one-time password (OTP) applications will work for authentication purposes. A list of multi-factor applications may be viewed by selecting the list of Multi-Factor applications here link.
5. Download the applicable application. Select the Close button at the upper right corner of the window to return to the prior screen.
6. Open the Authenticator app on your device and scan the QR code. The Authenticator app will generate a 6-digit access code.
7. Enter the code on the Setup page, select Submit Code.
Note: You can activate both methods at the same time.
Update the Active Multifactor Authentication method
1. Update multifactor authentication method by selecting the Clear link next to the method you want to deactivate. The select the Add link next method you want to activate.
2. Follow the Enable Multifactor Authentication via Email or Enable Multifactor Authentication via the Authenticator App steps above.
Summary
Multi-Factor Authentication (MFA) adds an essential layer of protection to user accounts by requiring two or more verification factors to access the system. In the B2Gnow Baseline System, you can enable MFA through either an email-based access code or an authentication app such as Duo, Google Authenticator, or Authy. This article outlines the full process for:
Enabling MFA via email or an authentication app
Updating or changing an existing MFA method
These procedures apply to all user types. Organizations seeking to implement MFA across multiple users or user groups should coordinate with the B2Gnow Configuration Team for system-wide setup requirements and considerations.
If you still require additional assistance, select Submit a Request to create a support ticket.
Related to