Account Security


Multi-factor authentication

Set up

  1. Admin users are required to set up Multi-factor authentication upon the first login. The following outlines the steps to enable MFA.

    MFA-1

  2. On your phone go to App Store (Apple Devices) or Google Play Store (Android Devices).

    Auth-app

  3. Once downloaded, open the app and scan the QR code using your device's camera.

  4. Locate the secret code labeled as KangaTech(YOUR_USERNAME).
  5. A new code will be generated every 30 seconds on the App. Enter two consecutive 6 digits codes.
  6. When complete, access to the account will be granted. For subsequent logins the Authenticator app will be required as a unique code generated within the app at the time of login will be used in conjunction with the password to gain access to the account.
  7. MFA is not mandatory for non-admin users, however, it is recommended. Non-admin users can enable MFA from accounts > Security tab.

    non-admin-mfa


Disabling MFA

  1. Logged in users can disable their own MFA through the Account > Security tab.

  2. Admin users can diable any other users' MFA through the Account > Security tab.

    MFA-disable


Password Management

Password Policies:

  1. All new users need to change their password to start using their accounts.
  2. All users need to change their password once every 180 days.
  3. New password must contain, a. Minimum 12 characters b. A number or special character c. A lowercase or upper-case character

Changing Your Password:

  1. Go to the Account page and select Security tab.
  2. Click on Change Password.

    change-password-new

  3. Your current password is required to change password.

    change-password-popup

  4. Your new password must contain, a. Minimum 12 characters b. A number or special character c. A lowercase or upper-case character


Resetting Other Users Password:

  1. Go to the Account page and select Security tab.
  2. If you are an Admin user, select the proper user account from the list on the left side and ensure the correct user is highlighted.
  3. Click on Send Reset Link.

    send-link

  4. An email will be sent to the email address with a password reset link.


Reset a Forgotten Password:

  1. From the login page, click on the Forgot your Password? link.

    forgot-password-new

  2. Fill in the Username or Email Address associated with the account and click Send Reset Email.

    New Forgotten password form

  3. An email will be sent to the email address with a password reset link.

  4. Click on the link and enter a new password then click Reset Password.

    reset-password-new

  5. You can now log in with your new password.

Last updated on 2nd Apr 2023