- Available methods
- Enabling multi-factor authentication
- Managing your methods
- Signing in with multi-factor authentication
Multi-factor authentication (MFA) adds an extra layer of security to your account by requiring a one-time code in addition to your password when you sign in. MFA is optional and configured per user. Enabling it for your own account does not affect other members of your organization, and there is currently no organization-wide setting that requires it for all members.
Available methods
WebGazer supports two MFA methods, and you can configure more than one at the same time:
- E-mail: WebGazer sends a 6-digit code to your account e-mail address. The code expires 5 minutes after it is sent. You can only have one e-mail method.
- Authenticator app: Also known as TOTP (Time-based One-Time Password). You scan a QR code, or enter a secret key, into an authenticator app such as Google Authenticator, Authy, Bitwarden or 1Password, and enter the 6-digit code the app generates. You can add more than one authenticator app method, which is useful if you want to register more than one device.
Enabling multi-factor authentication
- After signing in, open the user menu by clicking your avatar on the top right, and click Settings.
- Click Multi-factor authentication on the menu on the left.
- Click Add MFA method.
- Select a Type (Authenticator app or E-mail), optionally change the Name, and click Continue (or Add MFA method if you selected e-mail).
- Complete verification for the method you chose:
- Authenticator app: Copy the secret key, or scan the QR code, into your authenticator app. Enter the code your app generates into Code and click Enable authenticator app.
- E-mail: WebGazer sends a code to your e-mail address. Enter it into Code and click Continue.
Once verified, the method appears in your multi-factor authentication method list, and will be required the next time you sign in.
Managing your methods
From Settings → Multi-factor authentication, you can manage your configured methods using the ⋮ menu next to each one:
- Set as preferred: Makes this method the one selected by default when you sign in. You can still choose a different method during sign in.
- Edit: Change the method's name.
- Delete: Removes the method. You will be asked to confirm before it is deleted.
Signing in with multi-factor authentication
Once you have at least one verified MFA method, you will be asked for a code every time you sign in:
- Enter your e-mail address and password as usual and submit the sign in form.
- If you have more than one method configured, choose which one to use and click Continue. Your preferred method is selected by default.
- Enter the code (from your e-mail or your authenticator app) and click Continue. The code input auto-submits once you have entered all its digits.
If you no longer have access to the method you started with, click Sign in another way to pick a different one, or Cancel signing in to go back to the sign in page.