Multi-Factor Authentication (MFA) in Customer Portal

Multi-Factor Authentication (MFA) is a security process that requires users to provide two or more verification factors to gain access to an account, system, or application. This adds an extra layer of protection beyond just a username and password. This reduces the risk of unauthorized access, even if one factor, like a password, is compromised.

Zoho Billing allows you to enable Multi-Factor Authentication (MFA) in the Customer Portal to enhance customer’s account security and protect them from unauthorized access. Customers can configure MFA by scanning a QR code using an authenticator app, such as OneAuth or Google Authenticator. After configuration, customers can use Time-based One-Time Password (TOTP) to log in to their portal.

Enable Multi-Factor Authentication for Customer Portal

Note: Once you enable MFA, it will be enabled for all your customers.

To enable MFA for Customer Portal:

MFA will be enabled for your customers’ portal. After configuring MFA, your customers will have to use TOTP along with their credentials to log in to their portal.

How your customers can configure Multi-Factor Authentication?

Once you have enabled multi-factor authentication for the Customer Portal, your customers can use an authenticator app (such as OneAuth, Google Authenticator) to configure it.

Prerequisite: Download an authenticator app (such as OneAuth or Google Authenticator) from the Google Play Store or the App Store.

To configure MFA, your customers will have to:

Now your customers have to log in using the TOTP from the authenticator app.

Reset MFA for Customers

If a customer loses access to their authenticator app and does not have backup codes, you can reset multi-factor authentication for them.

To reset MFA for a customer:

Multi-factor authentication will be reset for the customer, and the customer will have to configure it again to log in to the customer portal.

Disable Multi-Factor Authentication for Customer Portal

Note: If a customer has already configured multi-factor authentication, they will still have to log in using TOTP to access the Customer Portal, even after you disable it. To disable MFA for already configured customers, you can reset it.

To disable multi-factor authentication for the Customer Portal:

Multi-factor authentication will be disabled for the Customer Portal.

Was this document helpful?
Yes
No
Thank you for your feedback!