If You Lost or Replaced the Phone You Use for 2FA

Important:

As of March 1, 2023, users setting up or resetting their 2FA configurations must install and use an authenticator app to generate verification codes. Receiving codes by SMS will no longer be supported for users setting up 2FA for the first time, or for existing users who reset their 2FA settings. Users can also log in with the one-time backup codes provided during 2FA setup.

The SMS option is currently only prohibited for new 2FA setups. However, industry experts (such as NIST, W3C, and the FIDO Alliance) no longer view SMS as a secure delivery mechanism for 2FA verification codes. As part of our ongoing commitment to world-class security, the SMS option is targeted for removal in a future NetSuite release.

If you have a 2FA-required role in NetSuite, you may be using a phone to obtain verification codes. If you lost your phone, or purchase a new phone, you must clear the settings (the setup information) of your old phone from NetSuite. After resetting your 2FA settings, you must set up your 2FA preferences in NetSuite again. Even if your phone number remains the same, you may not be able to transfer an authenticator app from one phone to another. You must set up your 2FA preferences in NetSuite again and install and configure an authentication app on your new phone.

Important:

If you lost your phone, you should remove the phone’s 2FA settings from NetSuite as soon as possible. You may need to contact an Administrator of your NetSuite account for assistance. An Administrator can use the User Access Reset Tool to help you if you are not able to log in to NetSuite.

Before you begin, verify that you have a current backup code available. If you cannot locate your current backup codes, and you are able to log in to NetSuite, generate a new set of backup codes. See Backup Codes for Two-Factor Authentication (2FA).

To change your 2FA phone setup in NetSuite:

  1. Click the Reset 2FA Settings link in the Settings portlet. See Reset Your 2FA Settings. You may be required to enter a backup code to complete the reset. A backup code is required if you are logged in from a device that is not a trusted device in NetSuite. For more information about trusted devices, see Managing Your Trusted Devices.

    Note:

    If you cannot locate your Settings portlet, see Finding Your Settings Portlet.

  2. Log out of NetSuite.

  3. Log in to NetSuite with a 2FA-required role. You are prompted to set up your 2FA preferences before you can access NetSuite. See Set up Your Preferences for Two-Factor Authentication (2FA). A video about 2FA setup is also available: 2FA Setup for Users.

  4. Follow the on-screen prompts to choose your primary and secondary methods for obtaining verification codes. See Complete Your 2FA Setup.

Related Topics

Using 2FA
The Logging in Page for 2FA
Managing Your Trusted Devices
Backup Codes for Two-Factor Authentication (2FA)
Reset Your 2FA Settings
Set up Your Preferences for Two-Factor Authentication (2FA)

General Notices