Authenticator - Company Setup/Preferences

<< <%SKIN-STRTRANS-SYNCTOC%> >>

Authenticator - Company Setup/Preferences

 

Overview

 

To customize Authenticator, a AT&T GSMS Authenticator Admin license is required.

 

 

 

Click the 'Preference' link in Authenticator tab drop-down menu (also accessible via 'Setup' menu on left-hand side).

 

View or edit company 'Authenticator' settings here.

 

 

Description

 

 

Access Control

 

 

 

 

Remote Hosts

The 'Remote Host' IP (your Access Gateway/Authenticator Client) addresses that are allowed to generate and challenge one-time password (OTP) requests.

 

Format is one remote host per line.

 

This is to restrict 'Generate' and 'Challenge' requests to a defined list of servers.

 

 

Enable 2FA for GSMS

 

When checked, all users under Admin control, have been assigned the 2FA functionality. (Unless individually un-checked in the User Settings tab)

 

Always block User

 

When checked (along with "Enable 2FA for GSMS" box), this box makes sure that Users who haven't yet included a designated mobile number to their GSMS account, are blocked from accessing the portal. Once they have assigned mobile numbers against their names, 2FA comes into effect.

 

 

OTP Settings

 

 

 

 

OTP Length

 

The desired number of characters contained in your OTP.

 

OTP Type

 

The type of characters that you would like your OTP to be. Possible OTP types include:

 

ALPHA

 

ALPHANUMERIC

 

NUMERIC (Default)

 

OTP Time To Live

 

'OTP Time to Live' is the period (in seconds) that an OTP will remain valid for before expiring (default: '60' Seconds).

 

Maximum value is 99999 seconds.

 

e.g. '86400' = 1 day

 

Challenge Attempts Allowed

 

The number of challenge attempts that you would like to allow per OTP before rejecting the requests (default: 3 challenge attempts).

 

 

 

OTP Message Settings

 

 

 

 

OTP Message

The message sent to the user containing their OTP. Default message should be:

 

Your One-time Password is: $OTP' -  where your OTP will replace the '$OTP' variable.

 

OTP SMS Message Type

 

Possible OTP SMS message types include:

 

TEXT

FLASH

 

(default: 'TEXT')

 

Delivery Receipt

 

Request a delivery receipt for all OTP messages ('ALWAYS'), failed OTP messages ('ON FAILURE'), or leave as 'NONE' if no delivery receipts are required.

 

Validity Period

 

When ticked, OTP messages will have the same lifespan as OTP passwords, as defined in 'OTP Time To Live' field in 'OTP Settings'.

 

e.g. if 'OTP Time To Live' value is '86400' (24 hours/1 day), message status will change to 'Expired' after 24 hours.

 

Expire OTP on Delivery Failure

 

When ticked, OTP status will automatically change to 'Expired' when an OTP message fails to be delivered.

 

 

 

Consent Management

 

 

Consent Profile

For Customer Administrators with the Consent Management Add-on, the Consent Profile can be selected that will be associated with your OTP Messages.

 

Note: Setup of a profile requires Advanced Consent Management functionality.

 

 

 

 

Store changes and exit

 

Undo any changes and exit.

 

User Settings

 

Here the Admin has the ability to assign the 2FA (Two-Factor Authentication) setting to any user under their control. Once that box is checked, that user would need to double authenticate before being able to access GSMS.

Note: The User should have 2FA enabled for them via licenses and have an appropriate mobile number assigned to them.