Security

Two-Factor Authentication (2FA)

Extra layer of security for your account and financial data

Overview

To enhance the security of your account, we are introducing Two-Factor Authentication (2FA) on the Accountability platform. This additional security measure will protect your account from unauthorized access.  This article provides a step-by-step guide to enable 2FA using any Time-based One-Time Password (TOTP) authenticator tool.

Agencies using Single Sign-On (SSO) with enforced Multi-Factor Authentication (MFA) do not need to enable 2FA within Accountability.

Benefits of Two-Factor Authentication (2FA)

  • Enhanced Security: Adds an extra layer of protection by requiring a second form of authentication beyond just your password.
  • Easy Integration: Compatible with popular TOTP authenticator tools like Google Authenticator, Authy, and Microsoft Authenticator.
  • Peace of Mind: Ensures greater confidence in the security of your account and sensitive data.

How to enable 2FA - Administrator

  • Open your web browser, navigate to the Accountability login page, and sign in to your account as an Agency Administrator.
  • Enter your username and password to log in.
  • Navigate to Setup Files > Setup Options.
  • Under Other Options, check the box for Use two-factor authentication

How to enable 2FA - End user

Prerequisites

  • Download your agency's TOTP authenticator tool of choice from the App Store or Google Play into your mobile device. 

Step 1: Log in to Your Accountability Account

  • Open your web browser, navigate to the Accountability login page, and sign in to your account. 
  • Enter your username and password to log in.

Step 2: Open the authenticator app 

  • Use the authenticator app preferred by your agency 
  • Make sure to add a new account for Accountability 

Step 3: Scan the QR Code

  • After successfully logging in with your email address and password, the following is displayed with instructions on enabling 2-factor authentication. 
    Screenshot 2024-07-08 at 9.42.24 PM
  • Use your authenticator app to scan the QR code displayed on the Accountability platform. Make sure to create a new account instead of using the passcode for an existing account. 

    IMG_7844


Step 4: Enter the Verification Code

  • After scanning the QR code, your TOTP authenticator app will generate a 6-digit code. The example below if from Google Authenticator, but you can use any TOTP authenticator app.   

    IMG_7848
  • Enter this code into the verification field on the Accountability platform.

    Screenshot 2024-07-08 at 9.43.45 PM

Troubleshooting

  • Incorrect Verification Code: Ensure that the time on your mobile device is synced correctly, as the TOTP codes are time-based.  You may need to wait for the next code to be generated. 
  • Can't find the Accountability token or passcode on your authenticator app. This likely means that you scanned the QR code directly with your camera instead of your authenticator app. If this is the case, follow the steps below: 
    • Open the Settings App: Tap the Settings app on your iPhone's home screen.
    • Go to Passwords: Scroll down and tap on "Passwords." You may be prompted to authenticate with Face ID, Touch ID, or your passcode.
    • Select the Account: Find and tap on the account you need 2FA for from the list of saved accounts.
    • View 2FA Code: If 2FA is set up for that account, you’ll see a section labeled "Verification Code" or "2FA." The 2FA code will be displayed there.
    • Copy the Code: Tap on the code to copy it, then paste it into the required field in the app or website you’re trying to log in to.
  • Need to reset an employee's 2FA:   Follow the steps in Reset Two-Factor Authentication for Employees.