Multi-Factor Authentication using Google Authenticator

Multi-Factor Authentication (MFA) is key to a healthy security and identity protection posture. Users can log into the Avanan portal using MFA in one of these ways.

  • Log in via Microsoft / Google – then in the Google/Microsoft directory, set the relevant MFA settings. For more information, see User Management.

  • Log in via a standard password and add Google Authenticator confirmation on top of it.

Prerequisites

High-Level Procedure

  1. Administrator enforces MFA for the user

  2. User enables MFA

Enforcing MFA for the User

The Administrators must enforce the MFA for the user.

  1. Access the Avanan Administrator Portal.

  2. Click System Settings > User Management.

  3. Click the icon in the last column for the user you want to update and select Edit.

  4. Under Login Method, select the Require Multi-factor authentication checkbox.

    Note - You must select at least one of the login methods; Google, Password, Microsoft, or SAML.

  5. Click Update.

    A pop-up window appears and shows that the user has been updated successfully.

  6. Click OK.

    Note - If you don’t see these options in your Avanan portal, contact Avanan Support.

Enabling MFA by a User

After the administrator enforces MFA, the user must enable the MFA.

  1. Access the Avanan Administrator Portal.

  2. In the Overview page, open the menu under your user name in the top right corner and select MFA Setup.

    The MFA Setup screen appears that shows the QR code.

  3. Open the Google Authenticator app on your device and scan the QR code.

    The Avanan portal is added to the Google Authenticator app and shows the authentication code.

  4. In the Enter the Auth Code field, enter the authentication code.

  5. Click Enable MFA.

  6. Click OK.

    The screen shows the authentication status.

Logging in via Google Authenticator - End User Experience

  1. Log in to the Avanan portal with the configured password.

  2. Open the Google Authenticator app and copy the six-digit authentication code for the Avanan portal.

    Note - The six-digit authentication code is valid only for 30 seconds. After 30 seconds, a new code is generated.

  3. Enter the authentication code from the Google Authenticator app in the MFA Code field in the Avanan portal.

  4. Click Submit.

After successful authentication, the user is logged into the Avanan portal.