Atria Multi-Factor Authentication
Overview
The Multi-Factor Authentication service in Atria allows any user in the platform to be setup with multi-factor authentication. This is a simple mechanism which utilizes a secret shared between Atria and your smartphone to provide a second factor of authentication when logging in.
When enabled for a user, on successful authentication via username/password, Atria will then request a 6 digit passcode. The user's authenticator app applies an algorithm to the current time and the shared way to provide increased security. There is no charge to use this capability within Atria and you should find the setup to be relatively familiar and easy to use.
We strongly recommend any user with administrative privileges in Atria is configured with MFA.
Supported Apps
We have tested and recommend using either Microsoft Authenticator, Google Authenticator, or Authy on either an iOS, or Android device. However, any authenticator app on any smartphone should work with Atria.
Setup Process
- Check to see if the MFA service schema is imported:
Get-AtriaComponent | FT
- If MFA doesn't appear in the list, run the following command to install it:
Import-AtriaServiceSchema -Service MFA
- Login to Atria with an Administrator account, and navigate to
Configuration > System Manager > Service Deployment
:
- Select Top Environment Services from the Service Filter, expand Multi Factor Authentication, then click Save:
- Select Active Directory Location Services from the Service Filter, select your desired location from the drop-down, expand Multi Factor Authentication, then click Save.
Now we can deploy the service through the Reseller hierarchy.
the Service Deployment section is where you can define configuration options for the MFA service using Customer and User Plans.
- Navigate to your Service Provider customer, click on Services, Reseller, then check Multi Factor Authentication and click Provision:
Once MFA is enabled for the Reseller, you can provision the service for the customers.
- Navigate to your desired customer, click Services, expand Multi Factor Authentication, and click Provision:
- To enable MFA for a user, navigate to your desired user, click Services, expand Multi Factor Authentication, and click Provision:
User Setup
-
Once a user is assigned the Multi Factor Authentication service, they need to login to the Atria Portal.
-
Once they login, they will be presented with a QR code:
-
Use your desired authenticator app to scan the QR code and setup MFA.
-
Once the user is registered, they will need to use a code from their Authenticator app every time they sign in.
If you require any support or assistance with this process, please contact us at support@getatria.com.