We are currently using the email code method for our MFA in our app. However this has been causing a few issues with codes not being received in time or at all.
Other than SSO, do we know if there is an alternative we can use? Ideally we would love to use an MFA app as we use that for other systems already
If I understood you correctly, then 2FA is what you are looking for, and you can have it if you enable both Password and One-Time code for your app. Then you would need to particularly select that from the hyperlinked dropdown I showed with the arrow, and Save it.
Hi David, I think it was more looking to see if there’s plans to have alternative options for 2FA instead of the code being emailed and use an Authenticator app instead
Hi David, just wondering if the tech team had a looked at this and what their thoughts are? we are keen to move away from 2FA via email as this doesn’t give the same level of security as using a separate authenticator app. If email is hacked then the 2FA via email is pointless
Sorry for bumping an old thread, but have you considered integrating SMS or even push notifications as alternative MFA methods? I’ve found that using push notifications with apps like Authy or Google Authenticator can be a reliable backup. It might be worth exploring those options to enhance reliability without solely relying on email. What does everyone else think?
I have noticed that this seems to have become a thing now, for which I am thankful! Just waiting on the official announcement before using it on my live app.
One thing I have noticed is is seems to be its own feature rather than working alongside the email codes.
So if I have the settings to password AND email code, and turn on Authenticator app it will ask for all 3 items. Will there be a way such that i put in my password and can choose either email code OR authenticator app? My users are 95% the type that the MFA app will be better but I still have 5% that will need to stick with the email codes.
Another system we use has it so that MFA is required but it offers the user 3 different methods of getting the OTP which is what I would love to be able to replicate here