Skip to main content

Setting Up Two Factor Authentication in CMS

This page is split into 8 sections; 

  • Section 1. Enabling 2FA in CMS

  • Section 2. Deleting a 2FA CMS Device

  • Section 3. Adding a 2FA CMS Device 

  • Section 4. Verifying through Email 

  • Section 5. What to do if you lose your 2FA Device 

  • Section 6. Trust this computer for 30 days feature 

  • Section 7. Security Settings

  • Section 8. How a CC Staff Member can reset a clients device for FrontEnd through CMS


Section. 1

Enabling 2FA in CMS

  • Load CMS
  • Enter your credentials (Email Address and Password) and then click "Log in"

image-1625754032285.png

A choice of either setting up a device now or have a code emailed to you, for now, will appear as shown below

Enabling 2FA Route; 

image-1625754047257.png

  • Scan the QR code or manually enter the 16 digit code (sometimes referred to as a KEY) using your Authenticator App on your personal device

Common Authenticator Apps; 

  • Authy
  • Microsoft Authenticator 
  • Google Authenticator 
  • LastPass
  • OTP 

image-1625754264364.png

Once you have either scanned the QR code or entered the 16 digit code manually, you will then be provided with a 6 digit ONE TIME ONLY code to enter

*Note; The 6 digit code is only valid for 60 seconds (Your Authenticator App will provide you with a new code after this time expires) 

image-1625754382400.png

Input the 6 digit code and then click "Verify"

image-1625754429141.png

You will now be logged into CMS

Select "Manage Devices" from the right-hand side menu 

image-1625754560710.png

Section 2. 

Deleting a 2FA CMS Device

Select "Manage Devices" from the right-hand side menu 

image-1625754560710.png

From this screen you can; 

*Edit your device name

*Delete your device (and then you will be provided with a button to add a new device) 

*View the date the device was added 

image-1625754643417.png

Deleting a device

Click on the "Trash Can" and confirm you wish to delete the device

image-1625754754264.png

  • Section 3. Adding a 2FA CMS Device 

Adding a new device

  • Click on "Add Device" 

image-1625754777944.png

  • Scan the QR code or manually enter the 16 digit code into your chosen Authenticator App 

image-1625754835767.png

  • Enter your 6 digit code 

image-1625754872533.png

Your new device is now added 

image-1625754895975.png

  • Section 4. Verifying through Email 

  • Enter your credentials (Email Address and Password) and then click "Log in"

image-1625757047651.png

  • Select "Verify by using Email"

image-1625757076293.png

  • You will then receive an email containing a 6 digit code

image-1625757129617.png

  • Enter the 6 digit and then click "Log in"

image-1625757184963.png

You will now be logged into CMS

 

  • Section 5. What to do if you lose your 2FA Device 

  • Enter your credentials (Email Address and Password) and then click "Log in"

image-1625757263551.png

  • Click on "I've lost my authenticator device link 

image-1625757276488.png

  • A message will appear for you to contact CrowdComms account manager. You will need to contact the support thread to have a CMS 2FA device reset

image-1625757289127.png

Section 6. Trust this computer for 30 days feature 

  • Enter your credentials (Email Address and Password) and then click "Log in"

image-1625757451096.png

  • Check the "Trust this computer for 30days box

image-1625757470615.png

You will be prompted in 30 days to then re-verify your device

  • Section 7. Security Settings

On the security page, CMS users can now choose which level of security they want to set as the minimum for their app

Password Only - Users will be offered the choice to set up 2-factor authentication via an authenticator app, but it won't be required and they can skip it completely. There will be no option to verify via email. If users do connect an authenticator app, then they will be required to use that for subsequent log-ins.

Email Only - Users will be offered the choice to set up 2-factor authentication via an authenticator app, but it isn't required. If they choose not to, however, they will need to enter a code sent to them via email. 

Authenticator Only - It will be mandatory for users to set up 2-factor authentication via an authenticator app, and they will be unable to log in without doing so. 

  • Section 8. How to reset devices for delegates 

  • Log into CMS with your credentials

image-1625818181988.png

  • Enter your verification code from the authenticator app 

image-1625818392662.png

  • Select your App

 

image-1625818519520.png

  • Click on "Libraries" and then "People" module 

image-1625818577548.png

  • Search for the person who needs their device reset and click "Edit"

image-1625818654550.png

  • Scroll to the bottom of the persons profile to the "Settings" section

image-1625818700382.png

  • Click on "Reset Authenticator Device" 

 

image-1625818738844.png