Logging in for the First Time with MFA Enabled Using Authy
The following process is used to validate the identity of the person attempting to log in to IAM using MFA.
- On the login page, enter the username and password.
- On the Set Up Multifactor Authentication page, select Smartphone App (recommended).
- Click Next.
- In the Primary Phone Number field, select the country code from the drop-down list.
- In the next text box, enter the telephone number with no dashes or spaces.
- In the Exten text box, enter an extension if needed.
- If you want to include a secondary phone number, select the Include Secondary Phone Number option, and enter the secondary phone number.
- Click Next.
- To verify the phone number that you entered, a one-time code must be sent to the phone number you entered. Select how you would like to receive that code:
- Text Message – a text message is sent your phone
- Voice Call – a phone call is placed to your phone and an automated voice provides the code
- On the next page, enter the code that you received. If you did not receive the code, click Resend code to resend the code to the same number. Additionally, you can change the method of receiving the code by clicking the link below Resend code. In our example, we chose to receive the code by text message, so the link shown provides the option to Receive a code by voice call instead.
- Install the Twilio Authy app from the Apple App Store or the Google Play store using the smartphone associated with the phone number you verified.
Do not add an account to Authy. The Account will be added automatically when IAM sends the verification request to Authy.
- Once you have installed the Authy app, click Next.
- In the Authy app on your phone, you will receive a security token. The security token is valid only for 20 seconds before a new key is generated.
- On the Multifactor Authentication page, enter the security token in the text box. You must enter the security token shown in the Authy app and click Next before the token expires.
- Click Continue.
This completes the setup of MFA. Users are directed to the IAM Home page or the landing page of the partner application.