Loading...

Two-Factor Authentication

CartQ supports 2FA, or Two-Factor Authentication.

For patrons of a business, this is done by emailing or texting a one-time passcode.

But for all other accounts, including Certified Partners, 2FA is done through an authentication app like Google Authenticator.
2FA Set Up
When you are logged into your account, click your username in the top right, then User Profile > 2FA Settings.
2FA Set Up
Google Authenticator App
Search for 'Google Authenticator' in your phone app store and install. (Or use similar authenticator app.)

Tap the button in the app that allows you to scan a new QR code.
Google Authenticator App
Click the 'Show QR' button within your CartQ account and scan.

You will then see a 6-digit code in your app that will change every 30 seconds.
Alternatively, if you are completing these steps on your phone itself and therefore cannot scan the QR code, you can copy/paste the code into the app manually.

First copy the code from your CartQ account by clicking the Copy button.

Then switch back to the Google Authenticator app on your phone, tap the "Enter a setup key" button and paste the code.
Enter the 6 Digit Code
Enter the code from the app each time you log in to your CartQ account, when prompted.
Enter the 6 Digit Code
Personal Login Page + 2FA Trade-offs
Note that when 2FA is enabled, it is enforced whether the user logs in via the Universal Login Page using their username and password or via the Personal Login Page using their Security PIN.

Having 2FA enabled along with the Personal Login Page diminishes the convenience of being able to login with just your PIN on your phone.

Now, the Google Authenticator app does allow you to simply copy a code by tapping once on the 6-digit code, so once you get the hang of it, it can be done pretty quickly. But, in the hustle and bustle of things, it may not be quick enough for some.

While you will need to consider these trade-offs and decide which is best for you, one strategy to consider would be to enable 2FA for all your users that have full access and primarily will be accessing the system through a desktop interface.

But for those users with limited access (primarily staff members handling redemptions), leave 2FA disabled so they can login quickly via their Personal Login Page using just their Security PIN.
Share:

Comments

No Comments Yet
  0–0 of 0

Post a Comment