The Kore.ai Platform provides an additional layer of security for enterprise user accounts with Two-Factor Authentication (2FA) using a One-time password (OTP) or verification code via email. OTPs are a popular choice for organizations to step up their user authentication process. These randomly generated passwords are valid only for a single login session and minimize the vulnerabilities of traditional passwords.
In addition to the username, password, and Enterprise SSO for first-factor authentication, enterprise administrators can now enable 2FA on the Admin Console for user accounts. When 2FA is enabled, the platform prompts the user to complete email verification via OTP to authenticate them.
Enable Two-Factor Authentication
Only the admin user can enable 2FA for enterprise user accounts via the Admin Console. To enable 2FA, follow the steps below:
Important Information on the Email OTP
You can use the OTP verification code only once. Reusing an OTP, entering the wrong OTP, or entering the OTP beyond the expiry time makes the OTP invalid and results in failed authentication or login error. The default validity of the email OTP is 10 minutes, and the users are expected to verify within that time.
Permission Settings to Enable 2FA
For a system admin to enable 2FA on the admin console, the master administrator should grant the role permission to the user on their admin console with the steps below:
Two-Factor Authentication for Admin Users
To log in using 2FA on the Bot Admin Console as an admin, follow the steps below:
- Log in by entering your email ID and clicking Continue.
- Enter your account password, and click Log in.
- Enter the OTP received on your registered email address in the following screen.
Once you enter the correct OTP and the verification is successful, the following verification success message appears.
The system redirects to the user dashboard after an OTP successful verification.
Two-Factor Authentication for End Users
To log in using 2FA on the Bot Builder Platform as an end-user, follow the steps below: