Set up MFA

Instructions

1 Introduction


1.1 Why MFA (Multi Factor Authentication)

Multi-factor authentication is an electronic authentication method that requires the user to provide two or more forms of identity verification before they’re allowed access to a website, network, or application.  


To access HUBER+SUHNER data, two factors are required:

  1. something you know - your password
  2. something you have - a physical object, such as a mobile phone or a security key.
    This is called the “verification method”


1.2 How to enable MFA 

When logging in the first time, you will be asked to choose and set up your verification method:

Please decide for an option before you start the process of activating MFA and have the app ready on your mobile phone or the security key in hand.

  • Salesforce Authenticator App (mobile phone) 
  • Authenticator App other than Salesforce: Microsoft recommended (mobile phone) 
  • Security Key (FIDO2 Key) 
  • Portable open-source Authenticator


You will find the instruction for each method in the following chapters.

2 MFA Options


When logging in initially, you will be asked to choose and set up your verification method. Choose the method that suits you and follow the instructions in the respective chapter.

2.1 Set up MFA with “Salesforce Authenticator App”

When choosing “use the Salesforce Authenticator mobile app”, please proceed as follows:


On your mobile phone

  1. Download Salesforce Authenticator on your mobile phone 
  2. Open Salesforce Authenticator
  3. Press: Add an account
  4. Two-Word-Phrase will appear
  5. Add Two-Word-Phrase in screen and press “Connect”
  6. Now you are prompted to confirm the connection in the Salesforce Authenticator App (on your mobile phone)
  7. Account has been added to Salesforce Authenticator and you are now logged in to your profile



You are now logged in – and ready to confirm your identity via the App for any future login.


You will find Salesforce’s instruction via the following link:

2.2 Set up MFA with “authenticator App other than Salesforce” (Microsoft recommended)

When choosing “use verifications codes from another authenticator app”, you will get the following screen.


Note: Do NOT yet press connect!


1.    Download and install an authenticator app on your mobile phone (example: Microsoft authenticator). 
Only required if you do not already have an different authenticator installed.

2.    Press “+” to add an account

3.    Press “”other account”  

4.    Now it is possible to scan the QR code on your screen with your mobile phone

5.    Enter the generated verification code and press “Connect”

You are now logged in – and ready to confirm your identity via the App for any future login.


You will find instructions via the following link:

2.3 Set up MFA with “Security Key” 

When choosing “Use a Universal Second Factor (U2F) or WebAuthn (FIDO2) key, proceed as follows:


  1. Insert the security key into your computer and press “Register” when prompted
  2. Press “OK” to install your Security Key
  3. Press OK to continue with the setup
  4. Define PIN for the Security Key
  5. Touch the button on the back of your Security Key with your finger
  6. Your Security Key is now registered
  7. Type in the Security Keys name (PIN) that you’ve just defined and press “Save”

You are now logged in – and ready to confirm your identity via the security key for any future login.

  • You will find further instructions via the following link:
  • Should you have lost your PIN or it needs to be reset, you will find instructions via the following link:

2.4 Set up MFA with "Portable open-source Authenticator"


In case you can neither use an Authenticator App nor a Security Key, you can alternatively use WinAuth, a portable open-source Authenticator.  


After downloading WinAuth from the official website, you can connect it as follows:


  1. choose “use verifications codes from another authenticator app”
  2. choose "I can't Scan the QR Code"
  3. enter the (long) key on the screen in WinAuth
  4. click the verify authenticator button.
  5. enter the code from WinAuth and paste it on your account.
  6. click the OK button

You are now logged in – and ready to confirm your identity via WinAuth for any future login.


You will find instructions via the following link: