Authentication

Passwords are the most common form of authentication used in the world today. But passwords can easily be forgotten and commonly compromised. Two-factor authentication (2FA) adds an extra layer of security by requiring users to use two different authentication factors to verify their identity.

The two step verification or 2 Factor Authentication is an extra layer of security that is known as "multi factor authentication" that requires not only a password and username but also something that only, and only, the user knows e.g. tokens, OTP, answer of security questions etc. Using a Two Factor Authentication process can help to lower the number of cases of identity theft on the Internet, as well as phishing via email. For security reason authentication is used by user (Retail/ Corporate) while performing transactions through digital platform.

The Two Factor Authentication requires two different kinds of evidence before executing transaction successfully. This option enables the System AdministratorClosedAdministrator is a set of individuals that administer the applicant/Affiliate entity. For example, Accountants, Authorized Signatories for organizations, Power of Attorney for individuals. to maintain authentication pattern for each transaction of a specific user segment.

Second Factor authentication can be set for each User type (Retail & Corporate) and for user type and User Segment combination (as of now user segment is only available for Retail user type).

This maintenance can be setup for each entity in a multi entity setup, which enables banks in defining different authentication mode for a same transaction for each entity.

The types of 2 factor authentication used are as follows:

Note: Two factor authentication is only for retail and corporate user.

Pre-requisites

Workflow

Workflow

Features Supported In Application

The following options are available as part of this maintenance:

You are here How to reach here:

System Administrator Dashboard > Security > Authentication
OR
System/ Bank Administrator Dashboard > Toggle Menu > Security > Authentication

Authentication - View

On accessing ‘Authentication’ menu, system displays the existing maintenance available for selected user segment to view the authentication setup for user segment.

To view the authentication setup for user segment:

  1. From the Enterprise Role list, select the appropriate role.
  2. From the User Segment list, select the appropriate user segment.
  1. Click Cancel to cancel the transaction.
    OR
    Click Back to go back to Dashboard.
    OR
    Click View to view the 2FA maintained for the user segment. The Authentication - View screen appears.

Note: If the existing maintenance is not available for selected user segment, message will be displayed . "2 Factor Authentication for this user segment has not been set up yet" with the Set up now button which launches the screen to maintain 2 Factor Authentication.

  1. Click Edit to update the details. Screen in editable mode appears.
    OR
    Click Cancel to cancel the transaction.
    OR
    Click Back to go back to previous screen.

Authentication - Edit

System Administrator can modify existing authentication maintenance.

To edit the authentication setup:

  1. From the Enterprise Role list, select the appropriate role.
  2. From the User Segment list, select the appropriate user segment (if applicable).
  3. Click View to view the 2 Factor Authentications maintained for the user segment. The Authentication - View screen appears.
  4. Click Edit. The Authentication – Edit screen with values in editable form appears.
  1. In Transactions section, in Level 1 of authentication select the appropriate option.
  2. If user selects Security Question option:
  3. In the Number of Security Questions field enter the number of security questions to be asked.
  4. In Transactions section, in Level 2 of authentication select the appropriate option.
  5. If user selects Security Question option:
  6. In the Number of Security Questions field enter the number of security questions to be asked.
  7. Note: Click Apply to all to apply the same kind of level 1 & level 2 authentication for all transaction types.

  8. Click Save to save the changes made.
    OR
    Click Edit to make the changes if any.
    The Authentication – Edit screen with values in editable form appears.
    OR
    Click Cancel to cancel the operation and navigate back to ‘Dashboard’.
  9. The Authentication – Review screen appears. Verify the details, and click Confirm.
    OR
    Click Cancel to cancel the operation and navigate back to ‘Dashboard’.
    OR
    Click Back to go back to previous screen.
  10. The success message of Authentication setup appears along with the transaction reference number.
    Click OK to complete the transaction and navigate back to ‘Dashboard’.

Authentication - Create

System Administrator can create authentication maintenance if the maintenance is not available.

To create the authentication setup for user segment:

  1. From the Enterprise Role list, select the appropriate role.
  2. From the User Segment list, select the user segment (if applicable).

Authentication Setup

  1. Click Cancel to cancel the transaction.
    OR
    Click View to view the 2 Factor Authentication maintained for the user segment. The Authentication - View screen appears.
  2. Note: If the existing maintenance is not available for selected user segment, message will be displayed "Authentication for this user segment has not been set up yet" with a setup now button.

  3. Click Set up now to create new 2Factor Authentication. The Authentication- Create screen appears.

Authentication - Create

  1. In Transactions section, in Level 1 of authentication select the appropriate option.
  2. If user selects Security Question option:
  3. In the Number of Questions field enter the number of security questions to be asked.
  4. In Transactions section, in Level 2 of authentication select the appropriate option.
  5. If user selects Security Question option:
  6. In the Number of Questions field enter the number of security questions to be asked.
  7. Note: Click Apply to all to apply the same kind of level 1 & level 2 authentications for all transaction types.

  8. Click Save to save the changes made.
    OR
    Click Cancel to cancel the operation and navigate back to ‘Dashboard’.
    OR
    Click Back to go back tom previous screen.
  9. The Authentication Create– Review screen appears. Verify the details, and click Confirm.
    OR
    Click Edit to make the changes if any.
    The Authentication – Edit screen with values in editable form appears.
    OR
    Click Cancel to cancel the operation and navigate back to ‘Dashboard’.
  10. The success message of Authentication setup appears along with the transaction reference number.
    Click OK to complete the transaction and navigate back to ‘Dashboard’.

FAQs

Closed Can I also set the 2 Factor Authentication for transaction approval?

You don’t have to set up separate 2 Factor Authentication for transaction approval. The 2 Factor Authentication set for transaction initiation will also applied for transaction approval as well.

ClosedWhen will the changes made in authentication maintenance be applied?

Changes made in the authentication maintenance will be effective from an immediate effect. This will be applicable to new transactions initiated as well as for transactions pending for approval post the changes are effective.

Closed Is it mandatory to set authentication method at both the levels?

No, you may set 1 level authentication for specific transaction. This can be achieved by selecting specific authentication method at level 1 and by specifying ‘None’ option at level 2.

Closed Can I set ‘No additional authentication required’ for specific transaction?

Yes, this can be achieved by selecting ‘None’ option at level1 and level 2. No additional authentication is required for transaction initiation and approval if both levels are set as ‘None’ .

ClosedWhere can I define which security questions to be asked to the users?

A separate maintenance ‘Manage Security Questions’ is available to set the up the questions which are to be asked to the users as a part of authentication process.

Closed Is it mandatory to set up 2 factor authentication for a User Type and User Segment Combination?

No, User Segment is an optional field and is applicable for only for Retail type of users. If the Bank doesn’t want to setup the authentication for a user segment, they can simply do it for each user type.

ClosedCan I set up this maintenance for each entity in case of a multi entity setup?

Yes, Authentication can be setup for each entity in case of a multi entity setup. User can select the entity from the entity selection dropdown available on the top right corner of the application to set up the maintenance.

Home