Set up multi factor authentication

From Activepedia
Revision as of 08:48, 3 November 2025 by 35.170.163.230 (talk) (SEO-optimized content from ActiveCampaign documentation)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigation Jump to search

```mediawiki Navigation: Main_Page > Settings > Security > Set up multi-factor authentication

Set up multi-factor authentication for your ActiveCampaign account[edit | edit source]

Introduction[edit | edit source]

Multi-factor authentication (MFA) is an essential security feature that enhances the protection of your ActiveCampaign account. By requiring two forms of identification—your username and password, along with a six-digit verification code—MFA significantly reduces the risk of unauthorized access. This added layer of security is increasingly crucial, especially as cyber threats continue to evolve.

Enabling multi-factor authentication is not mandatory; however, it is highly recommended to safeguard your sensitive data against unauthorized logins. You can receive your verification code through various methods, including an authentication app or SMS text messages, ensuring that you have flexibility in how you secure your account.

How to Access This Feature[edit | edit source]

To access the multi-factor authentication settings, follow these steps:

1. Log into your ActiveCampaign account. 2. Navigate to the **Settings** menu located in the bottom left corner of the dashboard. 3. From the Settings menu, select **Security**.

Step-by-Step Instructions[edit | edit source]

Follow these detailed instructions to set up multi-factor authentication for your account:

Setting Up Multi-Factor Authentication for Your Account[edit | edit source]

1. Click **Settings** > **Security**. 2. Two toggles will appear on the Security page. 3. Click the **Set up for myself** toggle to switch it to the **On** position. 4. A modal will pop up asking how you want to receive your authentication code:

  - Choose between an **Authentication App** or **SMS text message**.

5. Click the **Continue** button. 6. Depending on your choice, do the following:

  * **Authentication App**:
    - A QR code will appear on your screen.
    - Open your authentication app, scan the QR code, and submit the generated six-digit code into the provided field.
  * **SMS**:
    - Select your country code from the dropdown menu, enter your phone number, and submit.
    - A text message with a six-digit code will be sent to your mobile device. Enter this code in the given field.

7. Click the **Verify** button. 8. You will receive a set of recovery codes—copy these and store them safely. Click the **Done** button.

Setting Up Account-Wide Multi-Factor Authentication[edit | edit source]

If you are an Account Admin, you can enforce MFA across the entire account: 1. After setting up your individual MFA, click the **Enable for the entire account** toggle to set it to **On**. 2. A modal will appear. Click **Continue**. 3. Multi-factor authentication is now activated for all users. Users without MFA will be logged out and required to log back in using the verification code.

Setting Up Multi-Factor Authentication for Individual Users[edit | edit source]

1. Click **Settings** > **Users and Groups**. 2. Locate the target user and click **Edit**. 3. In the **Edit User** modal, find the **Multi-Factor Authentication** toggle and turn it **On**. 4. Click **Save**.

General User Setup[edit | edit source]

Any user can set up multi-factor authentication for their login by following the initial setup steps mentioned above.

Configuration Options and Settings[edit | edit source]

The following options are available during the multi-factor authentication setup:

  • **Authentication App**: Utilize an app to generate your authentication codes. Popular options include:
  - Google Authenticator
  - Authy
  - Authenticator Plus
  - LastPass Authenticator
 
  • **SMS Text Message**: Receive verification codes directly as text messages to your mobile device.
  • **Recovery Codes**: Upon enabling MFA, you will be given recovery codes that can be used should you lose access to your authentication method.
  • **Account-Wide MFA**: As an Account Admin, you can enforce MFA for all users, ensuring compliance with security best practices.

Best Practices and Tips[edit | edit source]

- Always keep your recovery codes in a secure, accessible location. If you store them digitally, ensure they are encrypted. - Regularly review user access and MFA settings to maintain security compliance. - Educate all users about the importance of MFA and proper logging out procedures, particularly after accessing sensitive data.

Common Use Cases[edit | edit source]

1. **Protecting Sensitive Client Data**: Businesses handling sensitive information can benefit from adding an extra layer of protection against unauthorized access. 2. **Account Compliance**: For organizations that need to adhere to industry regulations requiring enhanced security measures, MFA is a straightforward solution. 3. **Remote Work Security**: As more employees work remotely, MFA helps ensure that only authorized personnel can access the account, regardless of their location.

Troubleshooting[edit | edit source]

If you encounter issues with multi-factor authentication: - Ensure the time settings on your authentication app are correct. - If you do not receive an SMS verification code, check if your mobile number is entered correctly and if there are any carrier network issues. - If you lose access to your authentication app, use your recovery codes or reach out to your Admin.

Related Features[edit | edit source]

For more information on securing your ActiveCampaign account and managing user settings, see the following articles: - [How to turn off multi-factor authentication for your ActiveCampaign account] - [About multi-factor authentication recovery codes] - [How to update your profile preferences for multi-factor authentication]

FAQ[edit | edit source]

  • What is multi-factor authentication?
 * Multi-factor authentication is a security feature requiring two identification methods to log in—your username and password, plus a verification code.
 
  • How do I receive my MFA verification code?
 * You can receive your verification code via an **Authentication App** or as an **SMS text message**.
  • Can I disable multi-factor authentication?
 * Yes, if you have administrative rights, you can turn off MFA for yourself or any individual users you manage.
  • What happens if I lose my mobile device?
 * Keep your recovery codes saved in a secure location. If you lose access to your mobile device, you can use these codes to log in.
  • Is multi-factor authentication mandatory?
 * No, enabling MFA is recommended but not required.
  • Are there any supported authentication apps?
 * Yes, you can use apps like Google Authenticator, Authy, Authenticator Plus, and LastPass Authenticator.
  • How do I reset my recovery codes?
 * You can reset your recovery codes through the Settings > Security menu.

```