Enforce Multi Factor Authentication (MFA)

Enforce Multi Factor Authentication (MFA)

Secure your organization's Zoho Vault accounts further with multi-factor authentication (MFA). You can mandate that all users of your organization access Zoho Vault with an additional factor of authentication across all devices by enforcing MFA.


Different authentication methods

There are numerous authentication methods to choose from, as listed below.


Common options
Select one of the following authentication methods from the Multi-Factor Authentication section of your account settings, then follow the on-screen instructions. 

  • SMS/Voice call
  • Google authenticator
  • Zoho OneAuth


Using Zoho OneAuth
OneAuth is Zoho's multi-factor authentication application for iOS and Android. With OneAuth, you can use a variety of authentication factors, such as:

  • Touch ID
  • Push notification
  • QR code
  • Time-based OTP


Note: You can check Trusted browser while authenticating to prevent being asked for your authentication code for this browser again.

Enforcing MFA for all users

  1. Select Settings, then click Enforce MFA from the User Management section.
  2. Select Enforce MFA and enter your Zoho password for validation. 
  3. Click Proceed to enforce MFA for all your users and their respective Zoho accounts.


Setting up MFA for your account

  1. Log in to your Zoho account with your password.
  2. Select an additional factor of authentication from the options displayed. The configured settings will be active from your next login. 

Note: You can add a backup number and save the backup codes that can help you log in even when you face issues with your mobile or other authentication methods.


Exempting users from MFA
You can disable MFA for specific users as follows
 

  1. Click Users from the User Management section of the Settings tab.
  2. Select the users you'd like to exempt from MFA, then click More
  3. Select Disable MFA and enter your Zoho password to complete the action. The users will no longer require an additional factor to authenticate.


Resetting a user's MFA 
An admin can reset a user's MFA if the user loses their device. The user can set up their MFA from the beginning. 

  1. Click Users from the User Management section of the Settings tab.
  2. Select the users you'd like to reset the MFA for, then click More
  3. Click Reset MFA and enter your Zoho password to complete the action. The user can set up their new MFA again. 


Note: Enabling MFA in Zoho Vault will enable it across all Zoho services. 




    • Related Articles

    • Multi Factor Authentication (MFA)

      Secure your Zoho Vault account further with multi-factor authentication (MFA). There are numerous authentication methods to choose from, as listed below. Common options SMS Voice call Google authenticator Using Zoho OneAuth OneAuth is Zoho's ...
    • Disable Multi-factor Authentication

      To disable MFA settings for your Zoho account: Sign in to your Zoho Account. Click Multi-factor Authentication. Use the toggle bar on the top-right corner to disable MFA. For security reasons we recommend you not to disable MFA, but to set up and use ...
    • Two-Factor Authentication

      You can add an extra layer of security by enabling Two-factor authentication(TFA) for users in your organization. TFA is a security process in which the user provides two authentication factors to verify who they are. Various authentication modes ...
    • Configure MFA

      Multi-factor authentication (MFA) adds an additional layer of security to your organization. When MFA is enabled, your users will have to verify their identity not only with their password, but also with a second factor. The second factor could ...
    • Introduction to MFA

      What is Multi-factor Authentication? Multi-factor Authentication (MFA) is an additional identity verification step that can secure your account from potential intruders. With MFA enabled, in addition to entering credentials, users must verify their ...