Setting up a Mobile Authenticator

Information

A mobile authenticator application is a secure alternative to standard text-based (SMS) multi-factor authentication (MFA). Instead of waiting for a text message, the application generates a unique, six-digit security code directly on your mobile device.

For security purposes, these One-Time Passcodes (OTP) cycle and expire every 30 seconds. Because the app generates codes locally, it does not require an active cellular signal or internet connection to function once configured.

Environment

  • MyGRCC Single Sign-On (SSO) Portal
  • iOS Devices (iPhone / iPad)
  • Android Devices

 

Scenario A: Setting Up MFA During First-Time Account Recovery

If you are logging into MyGRCC for the first time or have not previously completed your account recovery registration, you will be automatically prompted to configure your recovery options.

  1. On the MyGRCC Account Recovery prompt, progress to the Set up Mobile Authenticator page.
  2. Choose your mobile device type (iPhone or Android) from the dropdown menu, then select Continue.
  3. On your mobile phone, open your installed authenticator app.
  4. Select the option to add a new account, then select Scan a QR Code (you may need to tap a Plus (+) icon depending on the app).
  5. Point your mobile device's camera at the QR code displayed on your computer screen.
  6. Once the app registers the code, it will immediately begin generating a cycling six-digit number.
  7. Enter the active six-digit code shown in your app into the 2nd Factor / One Time Passcode field on your computer screen.
  8. Select Continue to save your authenticator settings.

Scenario B: Enabling a Mobile Authenticator on an Existing Account

If you have already configured your basic recovery profile but want to enable the mobile authenticator later, follow these steps:

  1. Open a web browser and log into the MyGRCC Single Sign-On Portal (opens in a new window).
  2. Click your username (or profile drop-down menu) in the upper-right corner of the window.
  3. Select Edit Profile.
  4. Navigate to the Mobile Authenticator section in the menu.
  5. Select Enable mobile authenticator.
  6. Select your phone type (iPhone or Android), then click Continue.
  7. Open your chosen authenticator app on your phone and select Scan QR Code (or tap the + button).
  8. Scan the QR code displayed on your desktop web page.
  9. Enter the current six-digit passcode shown on your mobile device into the 2nd Factor / One Time Passcode field.
  10. Click Continue to complete the activation.

Step 3: Setting the Authenticator as Your Default MFA Method (Recommended)

After successfully linking your authenticator app, you should set it as your primary sign-in verification method:

  1. From the Edit Profile page in MyGRCC, select Multi-Factor Delivery Methods.
  2. Select Change next to the specific access method you wish to update (such as Website Login or VPN/Radius).
  3. From the OTP Method drop-down menu, select Mobile Authenticator.
  4. Click Continue to apply your default preference.

Additional Resources

Print Article

Related Articles (2)

Specific Instructions on how to use the Google Authenticator as a recovery option for the MyGRCC Portal
Instructions for updating or setting password recovery information.