Two-Factor Authentication
Two-Factor Authentication
Section titled “Two-Factor Authentication”Two-factor authentication (2FA/MFA) adds an extra layer of security to your NEURO account by requiring a second form of verification beyond your password.
Why Use 2FA?
Section titled “Why Use 2FA?”Benefits of two-factor authentication:
- Protects against password theft
- Prevents unauthorized access
- Required for many compliance standards
- Industry security best practice
Setting Up 2FA
Section titled “Setting Up 2FA”Requirements
Section titled “Requirements”You’ll need one of:
- Authenticator app (recommended)
- Hardware security key (FIDO2)
Authenticator App Setup
Section titled “Authenticator App Setup”Step 1: Start Setup
Section titled “Step 1: Start Setup”- Go to Settings → Security
- Find Two-Factor Authentication
- Click Enable 2FA
Step 2: Install Authenticator
Section titled “Step 2: Install Authenticator”Install an authenticator app if you haven’t:
| App | Platforms |
|---|---|
| Google Authenticator | iOS, Android |
| Microsoft Authenticator | iOS, Android |
| Authy | iOS, Android, Desktop |
| 1Password | iOS, Android, Mac, Windows |
Step 3: Scan QR Code
Section titled “Step 3: Scan QR Code”- Open authenticator app
- Tap + or Add Account
- Scan the QR code displayed in NEURO
- Account appears in your app
Step 4: Verify Setup
Section titled “Step 4: Verify Setup”- Enter the 6-digit code from your app
- Click Verify
- 2FA is now enabled
Step 5: Save Backup Codes
Section titled “Step 5: Save Backup Codes”- Copy or download backup codes
- Store in a secure location:
- Password manager
- Secure note
- Printed in safe location
- Confirm you’ve saved them
Using 2FA
Section titled “Using 2FA”Logging In
Section titled “Logging In”With 2FA enabled:
- Enter email and password
- When prompted, open authenticator app
- Enter the current 6-digit code
- Click Verify
- Access granted
Code Timing
Section titled “Code Timing”- Codes change every 30 seconds
- Use the current code shown
- If code is about to expire, wait for next one
Managing 2FA
Section titled “Managing 2FA”View Status
Section titled “View Status”Check your 2FA status:
- Go to Settings → Security
- See Two-Factor Authentication section
- Status shows: Enabled/Disabled
Regenerate Backup Codes
Section titled “Regenerate Backup Codes”If you’ve used backup codes:
- Go to Security settings
- Click Regenerate Backup Codes
- Old codes are invalidated
- Save new codes securely
Change Authenticator App
Section titled “Change Authenticator App”To switch to a new app/device:
- Disable 2FA (requires current code)
- Re-enable 2FA
- Scan QR with new app
- Verify and save new backup codes
Disable 2FA
Section titled “Disable 2FA”- Go to Security settings
- Click Disable 2FA
- Enter current authenticator code
- Confirm disabling
Recovery Options
Section titled “Recovery Options”Lost Authenticator Access
Section titled “Lost Authenticator Access”If you can’t access your authenticator:
Use Backup Code
Section titled “Use Backup Code”- On login screen, click Use backup code
- Enter one of your saved backup codes
- Each code works only once
- Set up new authenticator after login
Contact Administrator
Section titled “Contact Administrator”If you have no backup codes:
- Contact your NEURO administrator
- They can reset your 2FA
- You’ll need to verify identity
- Set up 2FA again after reset
New Phone/Device
Section titled “New Phone/Device”When getting a new phone:
Option 1: Transfer (if supported)
- Some apps support account transfer
- Check your authenticator app’s documentation
Option 2: Re-setup
- Log in using backup code
- Disable 2FA
- Re-enable with new device
- Save new backup codes
Hardware Security Keys
Section titled “Hardware Security Keys”Supported Keys
Section titled “Supported Keys”NEURO supports FIDO2/WebAuthn keys:
- YubiKey 5 series
- Google Titan Key
- Other FIDO2 keys
Setting Up a Security Key
Section titled “Setting Up a Security Key”- Go to Security settings
- Click Add Security Key
- Insert your key when prompted
- Touch the key to register
- Name your key
- Key is now registered
Using Security Keys
Section titled “Using Security Keys”- Enter email and password
- When prompted, insert key
- Touch the key
- Access granted
Multiple Methods
Section titled “Multiple Methods”You can have both:
- Authenticator app
- Hardware key
Use either method to log in.
Best Practices
Section titled “Best Practices”-
- Enable 2FA on all accounts
-
- Store backup codes securely
-
- Use authenticator app over SMS
-
- Register multiple methods if possible
-
- Keep authenticator app updated
-
- Share backup codes
-
- Screenshot backup codes on phone
-
- Disable 2FA for convenience
-
- Ignore prompts to set up 2FA
Troubleshooting
Section titled “Troubleshooting”Code Not Working
Section titled “Code Not Working”- Check your device time is correct
- Ensure time zone is set properly
- Try the next code if current expires
- Verify correct account in authenticator
Lost All Access
Section titled “Lost All Access”Contact your administrator with:
- Your account email
- Verification of identity
- Explanation of situation
Next: Learn about Keyboard Shortcuts