Authentication Methods

The Authentication Methods page enables internal users and Vendor Reps to enroll the authentication methods they use to access VPAM. Depending on the System Admin configuration, these methods can be used for multi-factor authentication (MFA) or Risk-Based Authentication (RBA). For MFA, users provide an additional authentication factor during login. For RBA, ITDR evaluates the authentication method when it detects risk.

If the System Admin configures MFA or RBA for accessing the server, the system displays an indicator on the Authentication Methods page.

Use this page to review required authentication methods, complete enrollment, and revoke an authentication method that is already set up.

To open the Authentication Methods page:

  1. Open My Account.

  2. Select Authentication Methods.

Depending on the customer and system configuration, users can enroll in Face Authentication, Mobile Authentication, or both. These self-enrollment options appear only when a System Admin enables MFA. If MFA is not enabled, the self-enrollment options do not appear.

IMPORTANT:

When RBA requires enrollment, users can click Skip for now to defer enrollment one time for supported authentication methods. The next time users are prompted, they must complete enrollment before they can access again.

Face Authentication

Face Authentication provides a passwordless authentication method for accessing applications and systems protected by VPAM. If your customer requires Face Authentication, you must complete enrollment before you can access protected resources.

A System Admin must enable Face Authentication before it is available to you.

IMPORTANT:

This feature requires the Identity Assurance and Threat Detection (IATD) package. This package includes Facial Biometric Authentication and Identity Threat Detection and Response (ITDR). Contact your Imprivata Customer Success Manager or call +1 800 935 5958 to activate this feature.

Mobile Authentication

Mobile Authentication uses a time-based one-time code generated by a supported authenticator application on your mobile device. Select an authenticator application from the options listed on the enrollment screen.

The authentication code is a 6-digit code that refreshes every 30 seconds. If a code is close to expiring, wait for the next code before you continue.