Skip to main content
  1. HomeHomeBreadcrumb divier
  2. AdministrationBreadcrumb divier
  3. Login & SecurityBreadcrumb divier
  4. About Multi-factor authentication policy

About Multi-factor authentication policy

What is Multi-factor authentication?

Multi-factor authentication (MFA) is a security process that requires users to verify their identity using two or more independent factors before gaining access to an account or system.
These factors typically fall into three categories:

  • something you know (password or PIN)
  • something you have (smartphone, security token)
  • and something you are (fingerprint, facial recognition)

By combining multiple authentication methods, MFA significantly enhances security, reducing the risk of unauthorized access even if one factor, like a password, is compromised.


What factors does ConnectedCooking support?

Currently, we only support time-based one-time passwords for multi factor authentication. You can use common authenticator apps such as Authy, Google Authenticator or LastPass Authenticator.


What is a grace period?

A grace period is a temporary window allowing users to access their accounts without being forced to set up multi-factor authentication. You can choose a duration between 1 and 30 days.


When does the grace period start for the user?

For existing users the grace period time begins once you activate the "Require MFA" toggle. For new/invited users the grace period will start at the moment they are added.


What happens if a user deactivates Multi-factor authentication?

Once a user disables Multi-factor authentication for their account, the grace period will start again, and the user will be notified that MFA must be set up again.


What happens after Multi-factor authentication is required?

Once you have activated the "Require MFA" toggle, every user will be prompted with the following Dialog every 12 hours until the setup is completed

MFA enforcement dialog


What happens after the grace period if the user still hasn't set up Multi-factor Authentication?

If the user's grace period expires, they will be logged out automatically from all devices (web browser, mobile apps). The next time the user logs in, they will be required to set up MFA to complete the login process. They cannot access ConnectedCooking until it is set up.

MFA enforcement login

Was this resource helpful?

Contact

Contact Support.

Let us know how we can help you more.