Multi-Factor Authentication

Multi-Factor Authentication

Multi-Factor Authentication

To further increase the security of your Applysia account, you can activate multi-factor authentication for your account. Once activated, you will need to complete an additional verification step when logging in, in addition to entering your password. This makes your account significantly more secure, as knowing your password alone is not enough for an attacker to gain access to your account.

To use multi-factor authentication, you need to link a device to your account that can generate one-time passwords. For this purpose, you can install an app on your smartphone or tablet that generates a 6-digit code, which must be entered each time you log in. Since only you have access to this device, others can no longer access your account, even if they know your password.

Setup

To activate multi-factor authentication, you must first select the workspace and log in with the account for which multi-factor authentication should be enabled. If you have different accounts in different workspaces and want to enable multi-factor authentication for all accounts, you must complete this process separately for each account. After logging in, click your name in the top-right corner and then select Settings from the dropdown menu. Next, click Security in the navigation on the left to open the security settings page, where you can manage options such as multi-factor authentication.


If you have not yet set up a device, you will only see an empty table. Click Add device on the right to add a new device. A QR code will then be displayed, which must be scanned using an app that can generate one-time passwords. To do this, install an authenticator app on the device you want to link. There are various free apps available in the App Store. Examples include:
  • Google Authenticator
  • Microsoft Authenticator
  • Authy

After installing an app, scan the QR code with the app. You should then see the application Applysia and the email address of your account. Depending on the authenticator app you use, you may need to select the application to view the one-time password, or the code may be displayed directly next to it. Now enter a name for this device in the Device name field below the QR code. Then enter a one-time password from the app in the One-time password (OTP) code field before the code expires. Finally, click Save to link the device to your account.


If the setup was successful, you will return to the Security page and see the device you have linked. In addition, a list of backup codes should be displayed below the device list. For more information, see Restoring Access.

Login

The next time you log in with your account, you will be asked to confirm the login using a one-time password. To do this, go to the login page of the workspace with an account that has already been linked to a device.
After entering your email address and password, a new page will appear where you must enter a valid one-time password. Open the authenticator app of your choice and enter a one-time password in the One-time password field. Confirm your entry by clicking Submit. You will then be redirected to the start view configured for your account.

InfoIf you log in using Single Sign-On instead, you will also be asked to enter a one-time password after being redirected back to Applysia.

Mandatory Use

If a Workspace Owner has made multi-factor authentication mandatory for all users of a workspace, users must either enter a one-time password using a linked device or set up a new device immediately during login.
If you do not yet have a linked device and your Workspace Owner has enabled this setting, log in as usual. It does not matter whether you log in using an email address and password or via Single Sign-On. Applysia will then prompt you to link a device to your account. As intended by the Workspace Owner, this step cannot be skipped.


Similar to setting up multi-factor authentication manually as described under Setup, you can scan a QR code to link a device to your account. Here, too, you need to have an authenticator app installed in order to generate one-time passwords. Possible options are listed under Setup.

Enter a name under Device name and enter a code from the app in the One-time password field. Complete the process by clicking Save to link the device to your account.
If you cancel this step by clicking
Cancel, you will be logged out again. Since linking a device is mandatory, you can only use your account again after the device has been successfully linked.
Afterwards, backup codes will be displayed. These can be used to log in again if you lose access to your device. These codes do not expire and should be stored securely. If you lose your device, you can enter one of these codes during login instead of a one-time password to regain access to your account. For more information, see
Restoring Access.



Before you can use your account again, you must briefly confirm that you have received the backup codes. Store these codes in a secure location, such as a password manager. You can download the backup codes by clicking Download. Click Confirm to complete the setup of mandatory multi-factor authentication and continue using your account as usual.

If you cancel the confirmation, you will be logged out, as confirming receipt of the backup codes is required to ensure that you have received them.

Restoring Access

If you lose access to your device, you can regain access to your account by using a backup code. When you add your first device, a set of backup codes is generated. In an emergency, these codes can be entered during login instead of a one-time password.
Store these codes carefully, as they do not expire. A backup code only becomes invalid once it has been used.

Warning
Never share backup codes with anyone else. These codes are personal secrets and should be stored carefully. If you lose your backup codes or access to your account, please contact your Workspace Owner. Applysia Support will not restore access for you, as we cannot verify such requests with absolute certainty.

To view the backup codes in your account, log in as usual. Click your name in the top-right corner of the navigation and then click Settings. Next, click Security in the navigation on the left. If you have linked at least one device to your account, you will see a list of all valid backup codes for your account below the devices.


If you have already used codes to regain access to your account, these codes will be crossed out. If you lose your backup codes or have used almost all of them, you can generate a new list of backup codes by clicking Generate.

Alert
Regenerating backup codes will invalidate all previously generated backup codes that are still valid.

    • Related Articles

    • Administration interface login

      Relevant for: Workspace owners, administrators (see "User roles") To log in to the Applysia software, enter “[YourWorkspaceName].applysia.app” in your browser line. Above you can see the customized logo for your workspace. Your workspace owner has ...
    • Edit users

      Relevant for: Workspace owners, administrators (see "User roles") To edit existing users, click on "Users" in the header. In the user overview, click either on the user's name or on the “3 dots” on the far right and then on “Edit”. A new page with ...
    • Observer interface login

      Relevant for: Regular Observers, Lead Observers, Moderators (see “User Roles”) The Applysia Observer interface is available as a browser-based, device-independent web version. In the observer interface, you can make typed and competency-based notes; ...
    • Manage workspace

      Relevant for: Workspace owners (see "User roles") In the administration interface, first click on your name / the arrow at the top right and then on “Settings”. You are now automatically in the settings menu. You can see from the menu on the left ...
    • Observer interface login

      Relevant for: Normal observers, lead observers, moderators (see "User roles") You have two options for using the Applysia observer interface: As a browser-based, device-independent web version, or as a native iPad app The main difference between the ...