Help Centre

Two Factor Authentication (2FA)

Updated on

Two-Factor Authentication (2FA) must be used to prevent unauthorised access to your account.

With 2FA enabled, your account will be more secure when logging in, updating personal details, or accessing sensitive data. An additional verification step will be required during login. Instead of just entering your credentials, you’ll also need to input a unique, one-time code sent to you via SMS. This ensures that even if someone obtains your password, they won’t be able to access your account without the verification code.

Please note:
Two-factor authentication provides many business benefits, including improved security. By requiring a second form of identification, SMS-2FA decreases the probability that an attacker can impersonate a user and gain access to your computer, account, or other sensitive resources.

Expand or collapse content How do I enable 2FA?

IMPORTANT

Please make sure you are downloading the backup codes.
This is especially important if you are located in an area where the cover and quality of the mobile network is not reliable, or not available.
If you don't have a backup code and you can't receive any SMS via the mobile network, you will NOT be able to log into your account.

Please note:
You cannot set up the 2FA for another user login. Only you own login.

  1. Go to Admin> Login Users > 2FA Settings
  1. Click Setup 2FA on the next page.
  1. Enter your password when prompted.
  2. Click Confirm.
  1. Select with the 2FA method.
  2. Click Confirm.

You might see here Mobile number, SMS, either or both.

  1. Enter the mobile number you want to use to receive the 2FA codes.
  2. Click Confirm.

Please note:
Make sure that you have access to this mobile number.
You should not be using the same mobile number as another user.

A code will be sent to this mobile number.

  1. Add the received code into boxes.
    When a number is being entered the cursor will automatically jump to the next field.
  2. Click Verify.

Please note:
You only have a limited amount of time to enter the code.
If the code is not entered in time, a new code needs to be requested.

On the next page you are requested to download and store a number of backup codes. These codes can be used when you are unable to receive the code via the mobile network for any reason.

  1. Select if you want to
    - Download
    - Copy to clipboard
    - Print
    the backup codes.
  2. Paste the codes into another application or store them somewhere, where you will have access to.

IMPORTANT
Please make sure that you have access to where ever you are storing the backup codes.
There is not way to retrieve them again later.

  1. Click Complete setup.

You will get a confirmation that the 2FA jas now been setup.
Here you have again the option to access the backup codes.

Retrieving the backup codes again

While still on the confirmation page you can retrieve the backup codes again, should you have missed this step during the 2FA setup.

  1. Click the Backup codes link.
  2. Enter your password when prompted.
  3. Save or reset the backup codes.
  4. Click Close.
Expand or collapse content Which parts of my account does Two Factor apply to?

If Two Factor Authentication is enabled on your account this is where you will be prompted to enter an SMS code:

  1. When logging into your account.
  2. When changing any personal details in Admin> General details. i.e email, telephone number and address.
  3. When downloading your database in Admin> Maintenance> Download Database.
Expand or collapse content Remember this device for 30 days?

Ticking this option means we will remember the device and the browser you are using and we will not ask you to validate via SMS for another 30 days.  As long as nothing changes with your device / browser and our cookies remain. 

Please note:
Please note that we will prompt you to re-validate before the 30 days if you clear your cookies/cached data on your browser and device.

Expand or collapse content How to use a backup code

If you can't receive a code due to poor or missing mobile network cover, you can use one of the downloaded backup codes.

  1. Enter you user name and password as usual.
  2. Select to Use backup code on the next screen, instead of entering a code.
  1. Enter the backup code.
  2. Click Submit code.

The screen might come up and then you will be logged in.

Expand or collapse content How to download new backup codes

IMPORTANT

Please make sure to download a new set of codes before you have used all backup codes.

To download a new set of backup codes you need to be logged into your SuperControl account.

  1. Go to Admin> Login Users > 2FA Settings
  1. Click Backup codes on the next page.
  1. Enter your password when prompted.
  2. Click Confirm.

You will be able to see how many codes are still left as any already used ones are marked as such.

  1. Click Reset codes.
  1. Select if you want to
    - Download
    - Copy to clipboard
    - Print
    the backup codes.
  2. Paste the codes into another application or store them somewhere, where you will have access to.
  3. Click Close.
Previous Article Password and Login issues
Next Article Why is my payment link not displaying?