Logo

Two Step Verification FAQ

Multi-factor authentication is a layered approach to securing data and applications where a system requires a user to present a combination of two or more credentials to verify a user’s identity for login. Typical factors could include something you know (like a password), something you have (like a phone), or something you are (like your fingerprint).

MFA increases security because even if one credential becomes compromised, unauthorized users will be unable to meet the second authentication requirement and will not be able to access the physical space, device, network, or database.

 

  1. Unfortunately, 88 percent of all data breaches are caused by an employee mistake and the most common issue is the user gives up their username/password through some type of an interaction with a hacker
  • Phishing – logging into a page that is not actually the authentic site.
  • Writing Username and or Password down.
  • Giving their Username and or Password to someone else. 

Multi-factor authentication places a second method of authentication in place to keep the hacker from getting into district systems.

2. Hackers use a variety of tools to monitor, collect and steal user passwords making it the easiest way to gain access to computer systems.  Adding MFA

 Adding MFA places a second barrier up to keep hackers out of your accounts/systems.

A. MFA options for Staff with a district device

    1. iPad – Duo app Push notification or Code
    2. Smartphone – Duo app Push notification or Code
    3. Biometric on laptop – fingerprint reader
    4. If Staff only get a laptop without a fingerprint reader, they will need to use their smartphone or keyfob. 

B. MFA options for Staff without a district device

  1. Smartphone – Duo app Push notification or Code
  2. Duo key fob (if they don’t want to use phone)

C. MFA does not work on:

    1. Fingerprint reader on Safari, it only works on laptop only in Chrome
  1. On Webmail – MFA every time
  2. On the Outlook client – TBD
  3. On the Outlook app – TBD
  4. On the mobile device Mail account including Calendar and Contacts- TBD
  5. Internet Account on the Mac – System Preferences. Using Exchange for Contacts- TBD
  6. VPN – MFA every time

No, MFA needs to be on one of the choices above.  The Duo app doesn’t work on the desktop. In addition, since you can’t take your desktop with you, you wouldn’t be able to get into email in any other location, school, computer, etc.