Secure ePO - SaaS user sessions with multi-factor authentication

Prev Next

You can enable multi-factor authentication (MFA) to add an additional layer of security to the ePO - SaaS logon process. The authentication factors include a combination of a logon user name and password, and a one-time password (OTP) that is sent to the user's registered phone number.

Make sure you have one of these rights to access the Users and roles page,

  • ePO - SaaS account owner, an account created for the first time after purchasing the product.

  • Your account must have the MVISION Account Administrator role assigned.

  • The role assigned to your account must have this permission selected: View, create, and change users and roles; view subscriptions; view and update customer profile.

  1. From ePO - SaaS, select MenuConfigurationUsers & Roles.

  2. From the Users list, select a user, then enable the Require Multi-Factor Authentication button on the top-right corner.

  3. Click Save Changes.

MFA is enabled for all ePO - SaaS users in your organization.

  • Users must select one of the authentication methods during their first-time login:

    • SMS Authentication — OTP is sent to the user's registered mobile number.

    • Voice Call Authentication — OTP is sent through a voice call to the user's registered mobile number.

  • Users can reset their MFA methods in the My Profile page. However, they can't disable Two-Factor Authentication once it is configured by the administrator.

    Note

    Administrators can contact Trellix technical support team for any issues while resetting MFA.