Multi-factor authentication (MFA) adds a one-time passcode to a user's sign-in. As an administrator, you can view a user's registered MFA devices, add a device, or remove one. The user completes the device setup themselves the next time they sign in. For users who sign in through single sign-on (SSO), MFA is managed by your organization's identity provider.
Before you start
- Required role: User Management Administrator
- MFA management applies only to users who sign in with a password.
View a user's MFA devices
- From the Kontakt.io Launchpad, open Users.
- From the side menu, select Users Management.
- Select the user you want to manage.
- Go to the Multi-Factor Authentication section. Any registered devices are listed under OTP Devices.
If your Kio account requires MFA and the user has not yet set up a device, an informational message indicates that MFA is mandatory for the user.
Add a device for a user
Adding a device requests an MFA setup for the user. The user finishes the setup on their next sign-in; until then, an informational message shows that a device setup is pending.
- On the user's profile, go to the Multi-Factor Authentication section and select Edit.
- Select Add Device.
- Select Save to apply the change.
The next time the user signs in, they are prompted to complete the MFA device setup.
Remove a device for a user
- On the user's profile, go to the Multi-Factor Authentication section and select Edit.
- Select the delete icon next to the device.
- Select Save to apply the change.
If your account requires MFA and you remove the user's last device, the user is prompted to set up a new device the next time they sign in.