Please ensure everyone in your practice is using a unique login and not sharing passwords. Shared logins will not be supported by the required implementation of MFA. There is no limitation on the number of users that can be invited to CAS 360. To invite additional users click here
Overview
Multi-Factor Authentication (MFA), sometimes known as Two Factor Authentication, 2FA, 2SA or TFA is a security enhancement for user accounts. Traditionally, users have relied on and are accustomed to authentication systems that require them to provide a unique identifier such as their email address and a correct password to gain access to a system. Multi-Factor authentication is an extra layer of security in which users will be prompted for their password (the first factor—what they know), and for a security code (the second factor—what they have), making it more difficult for unauthorised people to access your data.
What options are supported for MFA in CAS 360?
The MFA security code can be received using an:
- Authentication app e.g. Google Authenticator
- SMS Text Message
The use of an authentication app is the recommended method. The U.S. National Institute of Standards and Technology (NIST) has revised its multi-factor authentication security guidelines to discourage SMS based MFA, and encourage the use of more robust MFA alternatives.
Frequently Asked Questions
When Multi-Factor Authentication has been turned on you will not be able to log in to CAS 360 without your mobile device.
If you have access to your email account you will be able to Disable MFA for your individual login.
Note that some Authenticator apps such as Authy, have the ability to run on multiple devices. This allows you to access codes from several devices.
To register a new number you will need to disable and authenticate with the new number.
Note that some Authenticator apps such as Authy, have the ability to run on multiple devices. This allows you to access codes from several devices.
No, MFA cannot be turned off for any given user.
As MFA has been made mandatory for all cloud products by the ATO, BGL cannot offer an option to turn it off
See also:
How to Set up MFA with Authentication App
How to set up Multi-Factor Authentication with SMS
My phone was lost or stolen. How do I disable Multi-Factor Authentication?
How to disable Multi-Factor Authentication once I have signed in.
.