Multi-factor authentication (MFA) adds a one-time passcode to a user's sign-in. As an administrator, you can view a user's registered MFA devices, add a device, or remove one. The user completes the device setup themselves the next time they sign in.
Before you start
- Required role: User Management Administrator
- MFA management applies to users who sign in with a password. For SSO users, MFA is managed in your identity provider, not in Kio Cloud.
- Users can also manage their own MFA devices. See Manage your profile, password, and API key.
View a user's MFA devices
- From the Kontakt.io Launchpad, open Users.
- From the side menu, select Users Management.
- Select the user you want to manage.
- Go to the MFA section. Any registered devices are listed there.
If your account requires MFA and the user has not yet set up a device, an informational message indicates that MFA is mandatory for the user.
Add a device for a user
Adding a device requests an MFA setup for the user. The user finishes the setup on their next sign-in; until then, the device shows as pending.
- On the user's profile, go to the MFA section.
- Select the option to add a device.
- Confirm when prompted.
The next time the user signs in, they are prompted to complete the MFA device setup.
Remove a device for a user
- On the user's profile, go to the MFA section.
- Select the remove action next to the device.
- Confirm when prompted.
If your account requires MFA and you remove the user's last device, the user is prompted to set up a new device the next time they sign in.