• Multi-Factor Authentication Frequently Asked Questions


  • What is Multi-Factor Authentication?

    Multi-Factor Authentication or MFA is a method that requires users to provide two or more verification factors in order to gain access to an account. This provides extra security for accounts that have rights to sensitive and/or confidential data. This practice is very common for highly sensitive accounts. In fact, you may already have MFA set up on your personal banking, shopping, or other confidential accounts.

    Why do we need Multi-Factor Authentication (MFA)?

    An overwhelming number of security breaches today involve compromised usernames and passwords. MFA strengthens the security of your account by using a secondary device that you keep on your person, like an app on your personal mobile phone or authentication key, to verify your identity. This prevents anyone but you from accessing your account, even if they know your password. Enabling MFA greatly reduces the chances of someone accessing or sending unauthorized messages from your email account and/or accessing documents and other data you have saved.

    Who is required to enroll in MFA?

    MFA is required for all permanent employees.  

    What are my authentication options?

    You can Authenticate with the Duo Mobile App, a hardware token or Yubikey, or a bypass code from your site tech or helpdesk. Utilizing the Duo Mobile Application, you can authenticate through Duo Push notifications, biometric verification, and passcodes.

    What if I don't want to use my personal device or do not own a smartphone?

    Technology Services offers authentication keys that generate verification codes similar to the Mobile Apps outlined previously. This small, lightweight key is about the size of a USB thumb drive, and has an opening so that it can be affixed to a keychain or lanyard. You will need to carry this key with you at all times to verify your identity for MFA.

    What if I don’t have my mobile device or authentication key with me?

    If you forget your authentication method at home, please contact the technology staff at your site. If no one is available at your site, please contact helpdesk @ (661) 471-3711 EXT 50411

    What about laptops or Chromebooks from carts?

    Duo Covers Chromebooks and Laptops from carts as well.

    I don’t have good cellular service. Will that affect my Authenticator App?

    No, you can still authenticate using your app without cell service. The Authenticator app can still generate verification codes without a cellular connection. Once the Duo Mobile app is set up, it can generate 6-digit, single-use passcodes without requiring a cellular or internet connection. You can receive a batch of SMS passcodes on your phone before losing connectivity. These codes can be used multiple times until they expire. The YubiKeys can also be used for authentication.