Setting up multi-factor authentication in PANTHEON Web

Multi-factor authentication (MFA) or Two-factor authentication (2FA) is an electronic authentication method in which a user is granted access to PANTHEON Web only after successfully presenting more pieces of evidence (or factors) to an authentication mechanism.
 |
Warning
Tokens can be sent to users only if eMessaging service is activated and a sufficient quantity of messages is avaliable within the package.
You can order eMessaging service on our User Site. Additional information about the service can be found on Datalab's website.
|
In this chapter, we will present a use case on how to successfully set up MFA in PANTHEON Web.
 |
Case summary
The administrator wants to set a Multi-factor authentication for all users in PANTHEON Web. They must enable MFA in Company Setting panel and set User data information. They do this by following these steps.
- Setting up phone number for MFA token
- Enabling MFA
|
The person responsible starts setting up MFA by adding user's phone numbers.
They open the User register by selecting Settings | Users from the menu.
In the Users register, they click on a user and enter the contact infromation.

- In the field MFA SMS authentication, hey enter the user's phone number.

 |
Warning
If the MFA is enabled and the user does not have a phone number set up, then the login for that user will not be possible.
|
They continue to enable MFA in PANTHEON Web.
The person responsible opens the company settings by selecting Settings | Company from the menu.
In Security they enable the MFA by setting the vaildity of MFA Token in the MFA Token validity (hours) field. In our case they set validity to one (1) hour.
Next they set the length of the token, in our case 4, in the MFA token lenght field.
 |
Hint
The default value in MFA Token validity (hours) field is -1, which means that MFA is disabled. To enable it enter the number greater than 0.
For more information, see chapter Security.
|
