This document serves as a step-by-step guide for setting up and using Multi-Factor Authentication (MFA) to enhance account security. Follow this guide to ensure a secure and seamless authentication experience!
For more information on the importance of MFA and its benefits see: Veratrak & Multi-Factor Authentication (MFA)
Setting Up MFA
MFA is available for all users starting March 5th 2025. When logging in for the first time, users must set up MFA for their account by following these steps:
Step 1: Enter Your Password
Log in with your usual credentials.
Step 2: Choose Your Authenticator App
Download the Guardian app from the App Store or Google Play, OR
Select that you already have the app, OR
Opt to use another authenticator app such as Google Authenticator, Microsoft Authenticator, Authy, 1Password, LastPass Authenticator or Duo Mobile - essentially, most TOTP compliant authenticator app that follows the industry-standard RFC 6238. (Click the link in ‘I’d rather use Google Authenticator’)
Step 3: Scan the QR Code
Open your authenticator app and scan the provided QR code.
Follow the in-app instructions to complete setup.
For most apps, you will be required to allow camera access.
Example shown for Auth0 Guardian - see https://auth0.com/resources/videos/learn-about-guardian-mfa for more details.
Step 4: Record the Recovery Code
Write down or securely store the recovery code displayed on your screen.
This code is necessary in case you lose access to your authenticator app.
Step 5: Log In
Once setup is complete, you will use the chosen OTP app for future logins.
You can enable the browser to ‘remember’ login details for 28 days, reducing the need for repeated OTP entry, assuming the user accesses Veratrak every 3 days.
Logging in with MFA
Once set up, users must log in using MFA each log in attempt, unless the ‘Remember this browser’ option is selected. To do this, follow the the below steps:
Step 1: Enter Your Password
Log in with your usual credentials.
Step 2: Approve the Log In or Open your TOTP app
Users using the Guardian App will receive a notification on their device to approve the log in request.
Users using TOTP, such as Microsoft Authenticator (as in example below) will be required to open their device and chosen app.
Step 3: Enter your TOTP
Users using TOTP, such as Microsoft Authenticator (as in example below) will be
required to enter their code.
Select the ‘Remember this browser’ to avoid having to use MFA to log in for 28 days (users are required to log in every 3 days to be 'remembered' for 28 days total.)
Users using the Auth0 Guardian app are not required to complete this step.
Step 4: Log in complete
Once the request has been approved or the correct code has been entered, log in is complete!