Introduction
To enhance the security of our platform, we're making essential updates to the Multi-Factor Authentication (MFA) options available on CareMonitor. As a part of our commitment to maintaining the highest security standards, we will be discontinuing the SMS-based 2FA option.
Why are we making this change?
SMS-based 2FA, while convenient, has inherent security vulnerabilities. There have been instances of attackers exploiting weaknesses in the telecommunication infrastructure, leading to unauthorised access. To safeguard our users' accounts and data, we've taken the proactive step of transitioning from SMS-based 2FA to a more secure method: QR code-based 2FA.
What does this mean for you?
If you're currently using SMS as your MFA method:
- Your SMS 2FA will be disabled. The next time you log into CareMonitor, you will be prompted to set up MFA again. Based on your organisations settings, this may be prompted only when you login outside of your corporate network.
- You will be presented with the option to enroll in QR code-based 2FA. We recommend using trusted MFA apps such as Microsoft Authenticator or Google Authenticator for this purpose.
For users not using SMS 2FA, this change will not affect your current MFA settings.
How to set up QR code-based 2FA?
- Login to CareMonitor: Use your usual credentials or sign in via your organisations single sign on page.
- You'll be prompted to set up MFA again: Follow the on-screen instructions. Based on your organisations settings, this may be prompted only when you login outside of your corporate network.
- Choose QR code-based 2FA when presented with MFA options.
- Download an MFA app: If you haven’t already, download an MFA app like Microsoft Authenticator or Google Authenticator from your device’s app store.
- Scan the QR code: Open the MFA app, select the option to add a new account, and scan the QR code displayed on CareMonitor.
- Verify: Once scanned, the app will provide you with a verification code. Enter this code on CareMonitor to complete the setup.
Benefits of QR code-based 2FA
- Enhanced Security: QR code-based MFA, in conjunction with MFA apps, offers superior security compared to SMS-based 2FA.
- No Dependency on Mobile Network: Since you don't need to receive an SMS, you can authenticate even without mobile network coverage.
- Simplicity: Once set up, simply open your MFA app to get the authentication code. No need to wait for an SMS.
FAQs
1. What changes are being made to the MFA options on CareMonitor?
We are discontinuing the SMS-based 2FA option to enhance the security of our platform. This change will transition to a more secure QR code-based 2FA method.
2. Why is SMS-based 2FA being discontinued?
While SMS-based 2FA is convenient, it has security vulnerabilities that can be exploited by attackers. Discontinuing this method helps protect user accounts and data by switching to a more secure option.
3. How will this change affect me?
If you are currently using SMS as your MFA method, your SMS 2FA will be disabled. The next time you log into CareMonitor, you will need to set up MFA again, which may only occur when logging in outside your corporate network. You will have the option to enroll in QR code-based 2FA. If you are not using SMS 2FA, your current MFA settings will remain unaffected.
4. How do I set up QR code-based 2FA?
To set up QR code-based 2FA, follow these steps:
- Log in to CareMonitor using your usual credentials or via your organization’s single sign-on page.
- You will be prompted to set up MFA again. This may only appear when logging in outside your corporate network.
- Choose QR code-based 2FA when presented with the MFA options.
- Download an MFA app, such as Microsoft Authenticator or Google Authenticator, from your device’s app store.
- Open the MFA app, select the option to add a new account, and scan the QR code displayed on CareMonitor.
- Once scanned, the app will provide a verification code. Enter this code on CareMonitor to complete the setup.
5. What MFA apps do you recommend for QR code-based 2FA?
We recommend using trusted MFA apps such as Microsoft Authenticator or Google Authenticator.
6. Will I need to set up MFA again every time I log in?
You will need to set up MFA again only if you are using SMS as your current method. After setting up QR code-based 2FA, you will not need to repeat the process unless you change your MFA settings.
If you have any further questions or need assistance, please don't hesitate to reach out to our support channel. We’re here to help!
Was this article helpful?
That’s Great!
Thank you for your feedback
Sorry! We couldn't be helpful
Thank you for your feedback
Feedback sent
We appreciate your effort and will try to fix the article