User Tools

Site Tools


univ:mfa_easier

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
univ:mfa_easier [2022/01/13 13:12] – [Set TOTP authenication] deuluniv:mfa_easier [2022/01/14 14:23] (current) – [University MFA Made Easier] deul
Line 1: Line 1:
-======University MFA Made Easier======+======University MFA Made Easier for Sterrewacht users======
 This document explains how you can set up the University MFA (NetIQ) system to use your **FreeOTP** or **GoogleAuthenticator** app as the generator of secure codes. In this way, you will be able to use the same app for logging in to the institute and university services. This document explains how you can set up the University MFA (NetIQ) system to use your **FreeOTP** or **GoogleAuthenticator** app as the generator of secure codes. In this way, you will be able to use the same app for logging in to the institute and university services.
 This setup has to be done through the university account services and will enable so-called TOTP authentication. Follow the steps below to set up UL MFA for TOTP. This setup has to be done through the university account services and will enable so-called TOTP authentication. Follow the steps below to set up UL MFA for TOTP.
Line 23: Line 23:
  
 ====MFA selection  page==== ====MFA selection  page====
-{{:univ:ul_mfa_5.jpg?600 |}} After entering your ULCN credentials you again need to choose the MFA type to allow you to continue logging in. In this case not all options are visible as the test account has not enrolled NetIQ, so you only see the three remaining options, by email or by SMS should always be there. Choose an option and provide the associated security code.+{{:univ:ul_mfa_5.jpg?600 |}} After entering your ULCN credentials you again need to choose the MFA type to allow you to continue logging in. In this case not all options are visible as the test account has not enrolled NetIQ, so you only see the three remaining options, by email or by SMS should always be there.  
 + 
 +In your case you may only see the Email and SMS optione. To continue choose the email option and provide the 6 digit code mailed to you in the next login step. 
  
 ====Chose MFA option==== ====Chose MFA option====
Line 42: Line 45:
 The bottom paragraph explains to you in detail the next steps. Follow those steps and you will end up with TOTP as a viable authentication method. If you are shown the QRCode, take your phone's app (FreeOTP or Google Authenticator) and scan the code. The bottom paragraph explains to you in detail the next steps. Follow those steps and you will end up with TOTP as a viable authentication method. If you are shown the QRCode, take your phone's app (FreeOTP or Google Authenticator) and scan the code.
  
-Once all this is done you can use the TOTP application as the 2FA step in any of the university web applications.+Once all this is done you can use your prefered TOTP application (FreeOTP or Google Authenticator) as the MFA step in any of the university web applications
 + 
 +From now on you can use the same app for Sterrewacht 2FA and University MFA.
 ---- ----
  
-\\ 
-\\ 
-\\ 
-\\ 
 \\ \\
 ====Configure FreeOTP=== ====Configure FreeOTP===
-In order for you to quickly see which entry in FreeOTP belongs to which system, you can insert an icon to each block in FreeOTP. First you need to download the icons we have prepared for you: +In order for you to quickly see which entry in FreeOTP belongs to which system, you can insert an icon to each block in FreeOTP. First you need to download the icons we have prepared for you to your phone 
-  Sterrewacht {{https://local.strw.leidenuniv.nl/strw.png?70}} +|Sterrewacht|{{https://local.strw.leidenuniv.nl/strw.png?70}}| 
-  University {{https://local.strw.leidenuniv.nl/ul.png?50}} +|University|{{https://local.strw.leidenuniv.nl/ul.png?50}}| 
-  Institute Lorentz {{https://local.strw.leidenuniv.nl/il.png?70}}+|Institute Lorentz|{{https://local.strw.leidenuniv.nl/il.png?70}}|
  
-Then in FreeOTP you click the three dots on the right and choose option: 'Edit' Click on the icon (on the left) and now you go to the place where you saved the icon on your phone. Select the file and it will be permanently display on the left side of the Authentication block.+Then in FreeOTP you click the three dots on the right of a block and choose option: 'Edit' Click on the icon (on the left) and now you go to the place where you saved the icon on your phone. Select the file and it will be permanently display on the left side of the Authentication block.
  
 Note: For those that have recently scanned the QRCode for the Observatory, your Authenticator block should already use the strw.png icon. Note: For those that have recently scanned the QRCode for the Observatory, your Authenticator block should already use the strw.png icon.
 {{:univ:freeotp.png?200 |}} {{:univ:freeotp.png?200 |}}
univ/mfa_easier.1642079539.txt.gz · Last modified: by deul