Overview
EZLease now supports Multi-Factor Authentication (MFA), adding an additional layer of security to the login process, by requiring users to provide multiple forms of verification before accessing their accounts. Once MFA is enabled for an account, users will be required to register an authentication app and use a passcode for all future logins.
Additional notes and requirements
- Currently, MFA can only be enabled and disabled via a support request
- If enabled, MFA is required for all users in an account. MFA cannot be enabled/disabled per user.
- An authentication app is required. Users cannot authenticate via SMS.
- Can reset token if users lose device or forget password for authenticator
Enabling MFA for an account
To enable multi-factor authentication, the Super Admin for your account should submit a support request, and EZLease staff will enable MFA for the account. Once enabled, ALL users will be required to register a device and use MFA when logging into EZLease. Currently, it's not possible to only force MFA for certain users in an account.
The Super Admin can view if a user has successfully set up MFA by looking for the blue MFA label in the User Management workspace, on the EZLease dashboard:
If a user loses access to their authenticator app and can no longer log in, the account Super Admin can reset that users' MFA token in the User Management workspace, by clicking More Actions and choosing Reset MFA. The user will be prompted to re-register the device (or a new device) on their next login attempt.
Registering a device
When logging into EZLease for the first time, after MFA has been enabled for your account, users will need to follow the below steps to register their device:
Step | Action |
1 | Download and register an authentication app to your phone (i.e. Duo mobile, Google authenticator, Microsoft authenticator). |
2 |
Log into EZLease. |
3 |
After entering your login credentials, you'll be taken to the MFA registration page. |
4 | Open the authenticator app on your phone and click to add a new account. Then, you can either scan the QR code or enter the token code provided on the MFA registration screen. The newly created account will appear in your authenticator app. |
5 |
Once the new account is added, you can get a passcode. Enter the passcode on the MFA registration page in EZLease, and click Verify Token. |