User Guide - Enabling Multi-Factor Authentication (MFA)
This guide provides an overview of Multi-Factor Authentication (MFA), also known as Two-Factor Authentication (2FA), including: what it is, when it applies, who controls it, where it is configured, and how it functions in Smartwebs.
What is MFA?Multi-Factor Authentication (MFA), also known as Two-Factor Authentication (2FA), adds an extra layer of security to protect users and software from unauthorized access. It requires users to verify their identity through two or more methods during login, significantly reducing the risk of compromised credentials.
Where is it Configured?Effective August 2026, Smartwebs Support configures this setting at the Management level. Once the MFA feature is set to Required for a management, Global Admin users have the ability to initiate enrollment and/or reset MFA at the user level. Refer to: Administrator Playbook to Support Multi-Factor Authentication (MFA) When Does it Apply?Once a user has enrolled in their authentication method of choice, MFA will prompt at initial login, and for any unusual login attempt, per the following process:
Who Controls It?Effective August 2026, Smartwebs Support configures this setting at the Management level. Once the MFA feature is set to Required for a management, Global Admin users have the ability to initiate enrollment and/or reset MFA at the user level.
How Does it Work?MFA settings are configured by Smartwebs at the Management level. Once the setting is configured to Required or Optional at the Management level, users may self enroll and manage their MFA preferences as follows.
1. Access Profile > User Settings > Sign in & security:
2. Authenticate using one of the following methods:
You must set up at least one authentication method during enrollment. You may configure up to three authentication methods, and select one as Preferred. 3. Important! Be sure to hit Save after adding your Authentication method(s):4. Once enrolled, use the Sign in & security page to:
5. Click the MFA Enabled button, which points to Sign-In & Security.Note: You will be prompted to re-enter your password to make changes to this area.
Can Administrators Prompt MFA for a User?Global Admin may prompt MFA enrollment of individual an user(s), once the MFA setting at the Management level is set to Required. The Global Admin of the account must contact Smartwebs Support to update the Management level account settings.
1. To force MFA enrollment, the MFA configuration at the Management level must be set to Required.Once Required, Admin may Reset MFA for a User, which will also reset their password:
2. User will receive a Password Reset email, which will prompt MFA enrollment:
3. If a Reset is not performed and MFA is Enabled, the User will be prompted with the same at their next Login:
4. After selecting Next, the User will have to select from three options, to enroll via Email, Text, or Authenticator app.
|
5. Selecting the Email option will email the verification code:

6. Selecting the Text option will text the verification code:

7. Once the method has been selected and authenticated, the user will be prompted to enter their password:


7. Allowing the User to click Next to be routed to the home page:

8. Once MFA has been configured, applicable logins will prompt for the authentication code sent to the user's selected method (text, email, app):

9. After initial enrollment, MFA will prompt based upon on various security factors, including:
- Browser/device recognition
- Company security settings
- Whether cookies were cleared
- Incognito/private browsing
- Device changes
End of User Guide






