{"id":3595,"date":"2026-08-25T10:20:40","date_gmt":"2026-08-25T10:20:40","guid":{"rendered":"https:\/\/zecurit.com\/help\/?post_type=docs&#038;p=3595"},"modified":"2026-08-25T10:20:41","modified_gmt":"2026-08-25T10:20:41","slug":"multi-factor-authentication-mfa","status":"publish","type":"docs","link":"https:\/\/zecurit.com\/help\/endpoint-management\/multi-factor-authentication-mfa\/","title":{"rendered":"Multi-Factor Authentication (MFA)"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\">Set Up and Use Authenticator App<\/h2>\n\n\n\n<p>Multi-Factor Authentication (MFA) adds an extra layer of security to your <strong>Zecurit Endpoint Manager<\/strong> account. In addition to your username and password, MFA requires an additional verification step when you sign in.<\/p>\n\n\n\n<p>The <strong>Authenticator App<\/strong> generates a 6-digit verification code using a supported authenticator application.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Set Up the Authenticator App<\/h3>\n\n\n\n<p><strong>Step 1: Open MFA Settings<\/strong><\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Sign in to the <strong>Zecurit Endpoint Manager<\/strong> portal.<\/li>\n\n\n\n<li>Go to <strong>Settings \u2192 Security \u2192 MFA<\/strong>.<\/li>\n<\/ol>\n\n\n\n<p><strong>Expected outcome:<\/strong> The MFA configuration page opens and displays the available authentication methods.<\/p>\n\n\n\n<p><strong>Step 2: Start Authenticator Setup<\/strong><\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"615\" src=\"https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/CaptureX_2026-08-25_145435_applab.zecurit.com_-1-1024x615.webp\" alt=\"\" class=\"wp-image-3614\" srcset=\"https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/CaptureX_2026-08-25_145435_applab.zecurit.com_-1-1024x615.webp 1024w, https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/CaptureX_2026-08-25_145435_applab.zecurit.com_-1-300x180.webp 300w, https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/CaptureX_2026-08-25_145435_applab.zecurit.com_-1-768x461.webp 768w, https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/CaptureX_2026-08-25_145435_applab.zecurit.com_-1-1536x922.webp 1536w, https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/CaptureX_2026-08-25_145435_applab.zecurit.com_-1-2048x1230.webp 2048w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Under <strong>Authentication Methods<\/strong>, locate <strong>Authenticator App<\/strong>.<\/li>\n\n\n\n<li>Select <strong>Set up Authenticator<\/strong>.<\/li>\n<\/ol>\n\n\n\n<p><strong>Expected outcome:<\/strong> A QR code is displayed.<\/p>\n\n\n\n<p><strong>Step 3: Add Your Account<\/strong><\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"1024\" height=\"685\" src=\"https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/MFA-2-1-1024x685.webp\" alt=\"\" class=\"wp-image-3612\" srcset=\"https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/MFA-2-1-1024x685.webp 1024w, https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/MFA-2-1-300x201.webp 300w, https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/MFA-2-1-768x514.webp 768w, https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/MFA-2-1-1536x1028.webp 1536w, https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/MFA-2-1-2048x1371.webp 2048w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Open your supported authenticator application.<\/li>\n\n\n\n<li>Select the option to add a new account.<\/li>\n\n\n\n<li>Scan the QR code displayed in Zecurit Endpoint Manager.<\/li>\n<\/ol>\n\n\n\n<p><strong>Expected outcome:<\/strong> Your account is added to the authenticator application, and a 6-digit verification code is generated.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">If You Cannot Scan the QR Code<\/h3>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Select <strong>Enter Code Manually<\/strong> or <strong>Can&#8217;t Scan QR Code?<\/strong>.<\/li>\n\n\n\n<li>Copy the setup code displayed on the screen.<\/li>\n\n\n\n<li>Open your authenticator application.<\/li>\n\n\n\n<li>Select the option to add an account manually.<\/li>\n\n\n\n<li>Enter the setup code.<\/li>\n\n\n\n<li>Save the account.<\/li>\n<\/ol>\n\n\n\n<p><strong>Expected outcome:<\/strong> Your account is added to the authenticator application, and a 6-digit verification code is generated.<\/p>\n\n\n\n<p><strong>Step 4: Verify the Authenticator<\/strong><\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Enter the current <strong>6-digit verification code<\/strong>.<\/li>\n\n\n\n<li>Select <strong>Verify<\/strong>.<\/li>\n<\/ol>\n\n\n\n<p><strong>Expected outcome:<\/strong> The authenticator setup is successfully verified.<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p><strong>Note:<\/strong> The Authenticator App is not active yet.<\/p>\n<\/blockquote>\n\n\n\n<p><strong>Step 5: Download the Recovery Code<\/strong><\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>After the authenticator is successfully verified, download the <strong>recovery code<\/strong> when prompted.<\/li>\n\n\n\n<li>Save the recovery code in a secure location.<\/li>\n\n\n\n<li>Complete the recovery-code step.<\/li>\n<\/ol>\n\n\n\n<p><strong>Expected outcome:<\/strong> The recovery code is successfully downloaded.<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p><strong>Important:<\/strong> The <strong>Authenticator App becomes Active only after the recovery code has been downloaded<\/strong>.<\/p>\n<\/blockquote>\n\n\n\n<p><strong>Step 6: Confirm Activation<\/strong><\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Return to <strong>Settings \u2192 Security \u2192 MFA<\/strong>.<\/li>\n\n\n\n<li>Locate <strong>Authenticator App<\/strong>.<\/li>\n\n\n\n<li>Check the status.<\/li>\n<\/ol>\n\n\n\n<p><strong>Expected outcome:<\/strong> The Authenticator App shows <strong>Active<\/strong>.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Sign In Using the Authenticator App<\/h3>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Sign in to Zecurit Endpoint Manager using your username and password.<\/li>\n\n\n\n<li>On the <strong>Two Factor Authentication<\/strong> screen, open your authenticator application.<\/li>\n\n\n\n<li>Enter the current <strong>6-digit verification code<\/strong>.<\/li>\n\n\n\n<li>Select <strong>Verify<\/strong>.<\/li>\n<\/ol>\n\n\n\n<p><strong>Expected outcome:<\/strong> You are successfully signed in.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Sign in Using a Recovery Code<\/h3>\n\n\n\n<p>If you cannot access your authenticator application:<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>On the <strong>Two Factor Authentication<\/strong> screen, select <strong>Use a recovery code instead<\/strong>.<\/li>\n\n\n\n<li>Enter your saved recovery code.<\/li>\n\n\n\n<li>Select <strong>Verify<\/strong>.<\/li>\n<\/ol>\n\n\n\n<p><strong>Expected outcome:<\/strong> You can complete authentication without accessing your authenticator application.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Set Up and Use Email Authentication<\/h2>\n\n\n\n<p><strong>Email Authentication<\/strong> sends a <strong>4-digit verification code<\/strong> to your registered email address.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"1024\" height=\"569\" src=\"https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/MFA-3-1024x569.webp\" alt=\"\" class=\"wp-image-3616\" srcset=\"https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/MFA-3-1024x569.webp 1024w, https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/MFA-3-300x167.webp 300w, https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/MFA-3-768x427.webp 768w, https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/MFA-3-1536x854.webp 1536w, https:\/\/zecurit.com\/help\/wp-content\/uploads\/2026\/08\/MFA-3-2048x1138.webp 2048w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\">Enable Email Authentication<\/h3>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Sign in to the <strong>Zecurit Endpoint Manager<\/strong> portal.<\/li>\n\n\n\n<li>Go to <strong>Settings \u2192 Security \u2192 MFA<\/strong>.<\/li>\n\n\n\n<li>Under <strong>Authentication Methods<\/strong>, locate <strong>Email Authentication<\/strong>.<\/li>\n\n\n\n<li>Enable the authentication method.<\/li>\n<\/ol>\n\n\n\n<p><strong>Expected outcome:<\/strong> Email Authentication is enabled.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Sign in Using Email Authentication<\/h3>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Sign in to Zecurit Endpoint Manager using your username and password.<\/li>\n\n\n\n<li>Check your registered email address for the verification code.<\/li>\n\n\n\n<li>Enter the <strong>4-digit verification code<\/strong>.<\/li>\n\n\n\n<li>Select <strong>Verify<\/strong>.<\/li>\n<\/ol>\n\n\n\n<p><strong>Expected outcome:<\/strong> Email verification is successfully completed and you are signed in.<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p><strong>Note:<\/strong> Email verification codes are valid for <strong>15 minutes<\/strong>. The account locks after <strong>5 failed attempts<\/strong>.<\/p>\n<\/blockquote>\n\n\n\n<h3 class=\"wp-block-heading\">Enable Global MFA<\/h3>\n\n\n\n<p>Global MFA makes MFA mandatory for all active team members.<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Go to <strong>Settings \u2192 Security \u2192 MFA<\/strong>.<\/li>\n\n\n\n<li>Locate <strong>Global MFA<\/strong>.<\/li>\n\n\n\n<li>Turn on the <strong>Global MFA<\/strong> switch.<\/li>\n\n\n\n<li>Confirm the action if prompted.<\/li>\n<\/ol>\n\n\n\n<p><strong>Expected outcome:<\/strong> MFA becomes mandatory for all active team members.<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p><strong>Note:<\/strong> You must have <strong>Super Admin<\/strong> privileges to enable Global MFA.<\/p>\n<\/blockquote>\n\n\n\n<h2 class=\"wp-block-heading\">Troubleshooting<\/h2>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><thead><tr><th>Issue<\/th><th>Symptoms<\/th><th>Resolution<\/th><\/tr><\/thead><tbody><tr><td><strong>QR code cannot be scanned<\/strong><\/td><td>The authenticator application cannot scan the QR code.<\/td><td>Select <strong>Enter Code Manually<\/strong> or <strong>Can&#8217;t Scan QR Code?<\/strong>. Copy the setup code and enter it in the authenticator application.<\/td><\/tr><tr><td><strong>Authenticator App remains Inactive<\/strong><\/td><td>The setup appears complete, but the status remains <strong>Inactive<\/strong>.<\/td><td>Go to <strong>Settings \u2192 Security \u2192 MFA<\/strong>. Confirm that the 6-digit code was verified and the <strong>recovery code was downloaded<\/strong>.<\/td><\/tr><tr><td><strong>Authenticator code is rejected<\/strong><\/td><td>The 6-digit verification code is not accepted.<\/td><td>Wait for the authenticator code to refresh and enter the latest code. Make sure your device&#8217;s date and time are synchronized automatically.<\/td><\/tr><tr><td><strong>Authenticator app is unavailable<\/strong><\/td><td>You cannot access the authenticator application or generate a verification code.<\/td><td>On the <strong>Two Factor Authentication<\/strong> screen, select <strong>Use a recovery code instead<\/strong> and enter your saved recovery code.<\/td><\/tr><\/tbody><\/table><\/figure>\n","protected":false},"featured_media":0,"parent":3006,"menu_order":10,"comment_status":"open","ping_status":"closed","template":"","meta":{"_is_vendor_doc":"0","footnotes":""},"doc_tag":[],"class_list":["post-3595","docs","type-docs","status-publish","hentry"],"comment_count":0,"_links":{"self":[{"href":"https:\/\/zecurit.com\/help\/wp-json\/wp\/v2\/docs\/3595","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/zecurit.com\/help\/wp-json\/wp\/v2\/docs"}],"about":[{"href":"https:\/\/zecurit.com\/help\/wp-json\/wp\/v2\/types\/docs"}],"replies":[{"embeddable":true,"href":"https:\/\/zecurit.com\/help\/wp-json\/wp\/v2\/comments?post=3595"}],"version-history":[{"count":14,"href":"https:\/\/zecurit.com\/help\/wp-json\/wp\/v2\/docs\/3595\/revisions"}],"predecessor-version":[{"id":3619,"href":"https:\/\/zecurit.com\/help\/wp-json\/wp\/v2\/docs\/3595\/revisions\/3619"}],"up":[{"embeddable":true,"href":"https:\/\/zecurit.com\/help\/wp-json\/wp\/v2\/docs\/3006"}],"prev":[{"title":"Security & Compliance","link":"https:\/\/zecurit.com\/help\/endpoint-management\/security-compliance\/","href":"https:\/\/zecurit.com\/help\/wp-json\/wp\/v2\/docs\/3575"}],"wp:attachment":[{"href":"https:\/\/zecurit.com\/help\/wp-json\/wp\/v2\/media?parent=3595"}],"wp:term":[{"taxonomy":"doc_tag","embeddable":true,"href":"https:\/\/zecurit.com\/help\/wp-json\/wp\/v2\/doc_tag?post=3595"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}