Flexible Identity. OTP software tokens guide. Multi-Factor Authentication. version 1.0

Size: px
Start display at page:

Download "Flexible Identity. OTP software tokens guide. Multi-Factor Authentication. version 1.0"

Transcription

1 Flexible Identity Multi-Factor Authentication OTP software tokens guide version 1.0

2 Publication History Date Description Revision initial release 1.0 Copyright Orange Business Services 2 of 96

3 welcome Your company has chosen Orange Business Services Flexible Identity Multi-Factor Authentication service (aka FI-MFA) to help you protect your on-line identity and the networks, applications and data you use from unauthorized access. The information in this guide applies to the following OTP software tokens: MobilePASS MP (aka Multi-Platform) The information in this guide is intended for: end-users: people in your company that will use the FI-MFA service. operators: people in your company that will manage your FI-MFA end-users. administrators: people in your company that will manage the FI-MFA service. If you are already comfortable with FI-MFA terminologies and OTP software tokens, you can click one of the following icons for direct access to instructions related to your device: MobilePASS Windows Desktop Mac OS X ios Android BlackBerry Not yet supported Windows Phone Not yet supported MP Not yet described Not yet described Copyright Orange Business Services 3 of 96

4 contents overview what is an OTP software token? why use a OTP token? how does a OTP token protect me? what additional security features does my OTP token offer? what is the difference between a token code and an OTP? what are the characteristics of my OTP token? operation modes synchronization methods what is self-enrollment? how do I self-enroll my OTP token? how long will my OTP token continue to operate? what if I have not received the self-enrollment notification? what is the Self-Service Portal? why I can t logon using my OTP token? I entered an incorrect OTP my user account is locked my OTP token is out of synchronization my OTP token has been suspended or revoked what are my responsibilities? where should I store my OTP token? what if I forget my OTP token? what if I lose my OTP token? how should I protect my PIN? how can I change my PIN? what if I forget my PIN? MobilePASS for Windows Desktop introduction terminologies Copyright Orange Business Services 4 of 96

5 supported platforms enrolling MobilePASS token for Windows Desktop authenticating with a MobilePASS token QUICKLog operation mode challenge-response operation mode MobilePASS application features viewing MobilePASS application information viewing MobilePASS token information renaming a MobilePASS token resetting a MobilePass token PIN (token-side only) deleting a MobilePass token updating the MobilePASS application uninstalling the MobilePASS application Self-Service Portal features MobilePASS for ios introduction terminologies supported platforms enrolling MobilePASS token for ios authenticating with a MobilePASS token QUICKLog operation mode challenge-response operation mode MobilePASS application features viewing MobilePASS application information viewing MobilePASS token information renaming a MobilePASS token resetting a MobilePass token PIN (token-side only) deleting a MobilePass token updating the MobilePASS application uninstalling the MobilePASS application Self-Service Portal features Copyright Orange Business Services 5 of 96

6 MobilePASS for Android introduction terminologies supported platforms enrolling MobilePASS token for Android authenticating with a MobilePASS Token QUICKLog operation mode challenge-response operation mode MobilePASS application features viewing MobilePASS application information viewing MobilePASS token information renaming a MobilePASS token resetting a MobilePass token PIN (token-side only) deleting a MobilePass token updating the MobilePASS application uninstalling the MobilePASS application Self-Service Portal features MobilePASS for BlackBerry introduction terminologies supported platforms installing MobilePASS application enrolling MobilePASS token for BlackBerry authenticating with a MobilePASS token QuickLog operation mode challenge-response operation mode MobilePASS application features viewing MobilePASS application information viewing MobilePASS token information renaming a MobilePASS token resetting a MobilePass token PIN (token-side only) Copyright Orange Business Services 6 of 96

7 deleting a MobilePass token updating the MobilePASS application uninstalling the MobilePASS application Self-Service Portal features Self-Service Portal for MobilePASS accessing the Self-Service Portal Web site resynchronizing a MobilePASS token resetting a MobilePass token PIN (server-side only) sending temporary sign-in password by /sms MP for Windows Desktop introduction terminologies supported platforms enrolling MP token for Windows Desktop optimizing Internet Explorer Web browser starting enrollment process authenticating with a MP token QUICKLog operation mode challenge-response operation mode Token application features viewing Token application information renaming a MP token resetting a MP token PIN (token-side only) unlocking a MP token (token-side PIN) updating the Token application uninstalling the Token application Token Manager application features viewing MP token information deleting a MP token Updating/uninstalling the Token application Self-Service Portal features Copyright Orange Business Services 7 of 96

8 MP for Mac OS X introduction terminologies supported platforms enrolling MP token for Mac OS X authenticating with a MP token QUICKLog operation mode challenge-response operation mode MP-1 application features viewing MP-1 application information viewing MP token information renaming a MP token resetting a MP token PIN (token-side only) deleting a MP token updating the MP-1 application uninstalling the MP-1 application Self-Service Portal features MP for ios introduction terminologies supported platforms enrolling MP token for ios authenticating with a MP token QUICKLog operation mode challenge-response operation mode MP-1 application features viewing MP-1 application information viewing MP token information renaming a MP token resetting a MP token PIN (token-side only) deleting a MP token Copyright Orange Business Services 8 of 96

9 updating the MP-1 application uninstalling the MP-1 application Self-Service Portal features MP for Android introduction terminologies supported platforms enrolling MP token for Android authenticating with a MP token QUICKLog operation mode challenge-response operation mode MP-1 application features viewing MP-1 application information viewing MP token information renaming a MP token resetting a MP token PIN (token-side only) deleting a MP token updating the MP-1 application uninstalling the MP-1 application Self-Service Portal features Self-Service Portal for MP accessing the Self-Service Portal Web site resynchronizing a MP token resetting a MP token PIN (server-side only) sending temporary sign-in password by /sms Copyright Orange Business Services 9 of 96

10 overview what is an OTP software token? An OTP software token: allows you to generate OTPs. is managed through a dedicated OTP application you have previously installed on your device. is usable only on the device upon which it was installed. The advantage of OTP software tokens is mass deployment without hardware distribution. In addition, OTP software tokens can be issued, revoked and reissued without restriction or the need to recover the OTP software token from the end-user. Multiple OTP software tokens can be installed on a single device. why use a OTP token? Until now, you have probably logged into your organization s resources with your user name and a fixed password. The problem is that passwords are easily compromised, putting your identity and the resources you access at risk. A OTP token allows you to generated and use One-Time Passwords (aka OTPs) each time you log into your organization s resources. As the name implies, an OTP can be used only one time. Each time you log in, you use your OTP token to generate a unique OTP. how does a OTP token protect me? Password theft is a common method that thieves and hackers use to steal identities and gain unauthorized access to networks and resources. Success depends on the stolen password being valid, in the same way that credit card theft relies on the card being usable until it is reported as stolen. Discovering the compromise is almost impossible until damage has been done. Using a OTP token solves this problem, because once you have logged in using an OTP, that password is no longer valid. Any attempt to log in by reusing the OTP will fail, and it will alert your network security professionals to a possible attack on your identity. what additional security features does my OTP token offer? Depending on your organization s policies: Copyright Orange Business Services 10 of 96

11 your OTP token may be protected against unauthorized use by a Security PIN (aka PIN) that is known only to you. Like a bank card, a thief not only needs access to your OTP token, but must know your PIN as well. Do not share your PIN with others. this PIN may be token-side (stored on your device) or server-side (stored on the FI-MFA server). what is the difference between a token code and an OTP? The OTP value depends on the PIN protection of your OTP token: no PIN-protection: in the OTP application installed on your device, you can directly access your OTP token, and then generate token codes that will act as OTPs. token-side PIN-protection: in the OTP application installed on your device, you have to enter the PIN that protects your OTP token before generating token codes that will act as OTPs. server-side PIN-protection: in the OTP application installed on your device, you can directly access your OTP token, and then generate token codes. Depending on your organization s policies, you need to enter your PIN either before or after the token code to form the OTP. server-side PIN protection is recommended because the PIN is not stored locally and can be reissued by your IT administrator in case of loss without reusing your OTP token too. what are the characteristics of my OTP token? The characteristics of your OTP token are defined by your organization and applied when your OTP token is initialized. operation modes Depending on your organization s policies, your OTP token may use one of the following operation modes: challenge-response: the system that requires your authentication provides a challenge and waits for a response in return (asynchronous mode). Key the challenge into your OTP token to get a token code that you will use as response. Please note that this mode is not supported by all systems that require a logon password. QUICKLog: it greatly simplifies your logon experience and strengthens security by eliminating the requirement to have you key a challenge into your OTP token to get a token code (synchronous mode). Moreover, it is supported by all systems that require a logon password. synchronization methods Synchronization is only relevant for QUICKLog operation mode. Depending on your organization s policies, your OTP token may use one of the following synchronization methods: Copyright Orange Business Services 11 of 96

12 event-based: the token code is generated each time you click the Generate token code button in the OTP application installed on your device. time-based: the token code changes at frequent intervals (token code lifetime depends on your organization s policies). For each logon, the server compares the token code you submitted with the expected token code. Occasionally you may generate a token code without using it, causing the token code to be ahead or out of synchronization with the server during the next logon. There is a secure mechanism through which the server and your OTP token can automatically resynchronize during logon. Two OTP window types are managed by the server (window sizes depend your organization s policies): inner OTP window: a token code found inside this window will be accepted and the server is updated to adjust for your OTP token drift. outer OTP window: handles situations where the token code is not found in the inner OTP window. If a token code is found in this window, you re prompted to provide the next token code in sequence to successfully authenticate. If the token code is not found in the outer OTP window: OTP is considered as invalid. you have to resynchronize your token. what is self-enrollment? Self-enrollment is a simple process during which you activate your OTP token. During the process, you may be required to enter or create a PIN. When you complete the self-enrollment process, you will be able to use your OTP token to generate token codes for login. how do I self-enroll my OTP token? The self-enrollment process begins when you receive your self-enrollment notification. The contains instructions and your enrollment URL. how long will my OTP token continue to operate? Your OTP token will be able to generate OTPs until it is revoked by your IT administrator. what if I have not received the self-enrollment notification? If you have not received a self-enrollment notification, please contact your IT administrator to arrange for a new to be sent to you. Copyright Orange Business Services 12 of 96

13 what is the Self-Service Portal? The Self-Service Portal is a Web site created to empower you to perform simple authentication management functions (the range of available functions depends on your organization s policies) and in the process, reduce the workload and your reliance on the help desk. The self-enrollment notification contains the URL to access your Self-Service Portal. Copyright Orange Business Services 13 of 96

14 why I can t logon using my OTP token? They may be several causes of failed login. I entered an incorrect OTP This is the most common cause. To avoid this, ensure that: Caps lock mode is disabled on your keyboard. you enter right characters and keystrokes. your OTP is correctly formed (in accordance with the PIN protection type of your OTP token). my user account is locked You exceeded the maximum number of consecutive failed logon attempts. You must wait the amount of time defined by your organization before your user account will unlock. my OTP token is out of synchronization There is no simple way on your side to check if your OTP token is out of synchronization. In doubt, you can resynchronize it from your Self-Service Portal (if the function is available) before contacting your IT administrator. my OTP token has been suspended or revoked Please contact your IT administrator. what are my responsibilities? Using your OTP token provides strong security, and simplifies your work efforts by reducing or eliminating the need to remember or periodically change passwords. As an additional measure, Orange recommends that you observe the following tips to ensure the highest level of security. where should I store my OTP token? You should keep your token separate from your computer. Do not leave it on your desk, or with your computer bag. Treat it as you would your wallet, purse, or credit cards, and keep it with you at all times. what if I forget my OTP token? Your OTP token is a primary security device designed to protect you and the resources you access. Keep it with your car keys or purse or other valuable items that you use on a regular basis to minimize the potential to forget it. If you do forget your OTP token, contact your IT administrator. Copyright Orange Business Services 14 of 96

15 what if I lose my OTP token? If you lose your token, report it immediately to your IT administrator: he will take the necessary actions to ensure the lost token does not present a security risk. Depending on your organization s policies, he will provide you with a temporary alternative for logging into the network until you receive a replacement token. how should I protect my PIN? If you have a PIN, protect it just as you would the PIN for your bank or credit card. Never share it with anybody, including people you trust. This includes your colleagues and systems administrators at your company and personnel who are, or claim to be representatives of Orange or a Partner of Orange. You should be extremely suspicious of anyone who ever tells you at they need to know your PIN, and you should report any such incident to your IT administrator immediately. Never write down your PIN. how can I change my PIN? If you wish to change your PIN, or if you are concerned that it has been compromised, use the Reset PIN function of your Self-Service Portal, or contact your IT administrator if this function was not enabled by your organization s policies. what if I forget my PIN? If you forget your PIN, use the Send sign-in password by /sms function of your Self- Service Portal or contact your IT administrator if this function was not enabled by your organization s policies. Copyright Orange Business Services 15 of 96

16 MobilePASS for Windows Desktop introduction MobilePASS for Windows Desktop users can generate OTPs directly on their Windows Desktop, and use them to authenticate to FI-MFA-protected applications and resources. terminologies In this section: MobilePASS token: refers to any MobilePASS OTP software token provided by FI-MFA. Passcode: replaces the token code term. MobilePASS application: refers to the OTP application you have to install on your Windows Desktop before managing your MobilePASS tokens. supported platforms The MobilePASS application works with Windows XP, Windows Vista, Windows 7 and Windows 8/8.1 enrolling MobilePASS token for Windows Desktop Step 1: you have or will receive a Self-enrollment notification. Open it, click the selfenrollment Web site link (beginning with and then switch to your Web browser to start the self-enrollment process. If the MobilePASS application is already installed on your Desktop, ignore steps for downloading and installing it, and then go to step 4. Copyright Orange Business Services 16 of 96

17 Step 2: click the Download MobilePASS Installer (.msi) link. The.msi file corresponding to your system (32 or 64 bits) is automatically proposed for download. Click the Save button, and then if necessary the Browse button to select a different destination folder. Step 3: double click the.msi file name to launch the InstallShield Wizard at the end of the downloading. Click the Next button, read the license agreement carefully, select the I accept the terms in the license agreement option, and then click the Next button. If necessary click the Change button to select a different destination folder, click the Next, button and then click the Install button. Copyright Orange Business Services 17 of 96

18 On completion of the installation process, click the Finish button to leave the InstallShield Wizard, and then switch to your Web browser. Step 4: click the Enroll your MobilePASS token link to and then switch to the new opened Launch Application window. Step 5: select the MobilePASS option, and then click the OK button, and then switch to the new launched MobilePASS application. Step 6: enter the new token name and click the Activate button. The activation string is automatically pasted, and the Automatic Enrollment process begins. Copyright Orange Business Services 18 of 96

19 If your MobilePASS token is PIN-protected, enter your PIN, click the Continue button, you are required to re-enter it for verification purposes, and then click the Continue button. If successful, the following page is displayed: Step 7: switch to your Web browser to close it. Your MobilePASS token is now active and able to generate OTPs. Copyright Orange Business Services 19 of 96

20 authenticating with a MobilePASS token QUICKLog operation mode You have the ability to authenticate with your MobilePASS token against any systems that require a logon password (such as your Self-Service Portal described below). Step 1: open the Self-enrollment notification you previously received, click the Self- Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. Click the Sign In button, and then the Sign in using your token button. Step 2: double-click the icon in your Windows desktop to launch the MobilePASS application, and then select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN). Copy the generated passcode to the clipboard. From the Service Portal Web, enter your User ID in the User ID field, paste the passcode from the clipboard in the OTP field (depending on your organization s policies, you may need to enter your PIN either before or after the passcode), and then click the OK button. Copyright Orange Business Services 20 of 96

21 Step 3: if successful, the homepage of your Self-Service Portal is displayed again, but the Sign In button has been replaced by the Sign Out one. Copyright Orange Business Services 21 of 96

22 challenge-response operation mode You have the ability to authenticate with your MobilePASS token only against systems that support challenge-response operation mode (such as your Self-Service Portal described below). Step 1: open the Self-enrollment notification you previously received, click the Self- Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. Click the Sign In button, the Sign in using your token button, enter your User ID in the User ID field, click the OK button without entering any value in the OTP field, and then copy the displayed challenge to the clipboard. Step 2: double-click the icon in your Windows desktop to launch the MobilePASS application, and then select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN). Paste the challenge code from the clipboard in the Challenge Code field, click the Generate Passcode button, and then copy the generated passcode to the clipboard. From the Service Portal Web, paste the passcode from the clipboard in the OTP field, and then click the OK button. Copyright Orange Business Services 22 of 96

23 Step 3: if successful, the homepage of your Self-Service Portal is displayed again, but the Sign In button has been replaced by the Sign Out one. Copyright Orange Business Services 23 of 96

24 MobilePASS application features Double-click the icon in your Windows desktop to launch the MobilePASS application. viewing MobilePASS application information From the homepage, click the icon to display the MobilePASS application information. viewing MobilePASS token information Select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN), and then click the icon to display the MobilePASS token information. renaming a MobilePASS token Copyright Orange Business Services 24 of 96

25 Select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN), and then click the icon. Enter the new token name, and then click the Continue button. resetting a MobilePass token PIN (token-side only) Select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN), and then click the icon. Enter your current PIN, click the Continue button, enter your new PIN, click the Continue button, you are required to re-enter it for verification purposes, and then click the Continue button. deleting a MobilePass token This option should only be used on instruction from your IT administrator. Select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN), and then click the icon. Click the Delete button to confirm. updating the MobilePASS application This option should only be used on instruction from your IT administrator. uninstalling the MobilePASS application This option should only be used on instruction from your IT administrator. Follow the Windows standard process to uninstall the MobilePASS Application. Copyright Orange Business Services 25 of 96

26 Self-Service Portal features Refer to the FI-MFA Service Portal for MobilePASS chapter (click here for direct access). Copyright Orange Business Services 26 of 96

27 MobilePASS for ios introduction MobilePASS ios users can generate OTPs directly on their ios devices, and use them to authenticate to FI-MFA-protected applications and resources. terminologies In this section: MobilePASS token: refers to any MobilePASS OTP software token provided by FI-MFA. Passcode: replaces the token code term. MobilePASS application: refers to the OTP application you have to install on your ios device before managing your MobilePASS tokens. supported platforms Web browser: Safari enrolling MobilePASS token for ios Step 1: you have or will receive a Self-enrollment notification. Open it, tap the selfenrollment Web site link (beginning with and then switch to your Web browser to start the self-enrollment process. If the MobilePASS Application is already installed on your ios device, ignore steps for downloading and installing it, and then go to step 4. Copyright Orange Business Services 27 of 96

28 Step 2: tap the icon to download the MobilePASS application from the Apple App store. Step 3: from the Apple App store, tap the icon. On completion of the installation process, leave the Apple App store, and then switch to your Web browser. Step 4: tap the Enroll your MobilePASS token link, and then switch to the new launched MobilePASS application. Step 5: enter the new token name and tap the Activate button. The activation string is automatically pasted, and the Automatic Enrollment process begins. Copyright Orange Business Services 28 of 96

29 If your MobilePASS token is PIN-protected, enter your PIN, and then you are required to reenter it for verification purposes. If successful, the following screen is displayed: Step 6: switch to your Web browser to close it. Your MobilePASS token is now active and able to generate OTPs. Copyright Orange Business Services 29 of 96

30 authenticating with a MobilePASS token QUICKLog operation mode You have the ability to authenticate with your MobilePASS token against any systems that require a logon password (such as your Self-Service Portal described below). Step 1: open the Self-enrollment notification you previously received, tap the Self- Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. Tap the Sign In button, and then the Sign in using your token button. Step 2: tap the icon in your ios Gallery to launch the MobilePASS application, and then select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN). Copy the generated passcode to the clipboard. From the Service Portal Web, enter your User ID in the User ID field, paste the passcode from the clipboard in the OTP field (depending on your organization s policies, you may need to enter your PIN either before or after the passcode), and then tap the OK button. Step 3: if successful, the homepage of your Self-Service Portal is displayed again, but the Sign In button has been replaced by the Sign Out one. Copyright Orange Business Services 30 of 96

31 challenge-response operation mode You have the ability to authenticate with your MobilePASS token only against systems that support challenge-response operation mode (such as your Self-Service Portal described below). Step 1: open the Self-enrollment notification you previously received, tap the Self- Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. Tap the Sign In button, the Sign in using your token button, enter your User ID in the User ID field, tap the OK button without entering any value in the OTP field, and then copy the displayed challenge to the clipboard. Step 2: tap the icon in your ios Gallery to launch the MobilePASS application, and then select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN). Paste the challenge code from the clipboard in the Challenge Code field, and then copy the generated passcode to the clipboard. From the Service Portal Web, paste the passcode from the clipboard in the OTP field, and then tap the OK button. Copyright Orange Business Services 31 of 96

32 Step 3: if successful, the homepage of your Self-Service Portal is displayed again, but the Sign In button has been replaced by the Sign Out one. MobilePASS application features Tap the icon in your ios Gallery to launch the MobilePASS application. viewing MobilePASS application information From the homepage, tap the icon to display the MobilePASS application information. viewing MobilePASS token information Select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN), tap the icon to access the menu options, and then the Token information option to display the MobilePASS token information. Copyright Orange Business Services 32 of 96

33 renaming a MobilePASS token Select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN), tap the icon to access the menu options, and then the Change Token Name option. Enter the new token name. resetting a MobilePass token PIN (token-side only) Select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN), tap the icon to access the menu options, and then the Change Token PIN option. Enter your current PIN, your new PIN, and then you are required to re-enter it for verification purposes. deleting a MobilePass token This option should only be used on instruction from your IT administrator. Copyright Orange Business Services 33 of 96

34 Select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN), tap the icon to access the menu options, and then the Delete Token option. Tap the Delete button to confirm. updating the MobilePASS application Updates are automatically managed by the Apple App store. uninstalling the MobilePASS application This option should only be used on instruction from your IT administrator. Follow the ios standard process to uninstall the MobilePASS application. Self-Service Portal features Refer to the FI-MFA Service Portal for MobilePASS chapter (click here for direct access). Copyright Orange Business Services 34 of 96

35 MobilePASS for Android introduction MobilePASS Android users can generate OTPs directly on their Android devices, and use them to authenticate to FI-MFA-protected applications and resources. terminologies In this section: MobilePASS token: refers to any MobilePASS OTP software token provided by FI-MFA. Passcode: replaces the token code term. MobilePASS application: refers to the OTP application you have to install on your Android device before managing your MobilePASS tokens. supported platforms Web browsers: native, Chrome, Firefox, Opera, Skyfire, and Dolphin. enrolling MobilePASS token for Android Step 1: you have or will receive a Self-enrollment notification. Open it, tap the selfenrollment Web site link (beginning with and then switch to your Web browser to start the self-enrollment process. If the MobilePASS Application is already installed on your Android device, ignore steps for downloading and installing it, and then go to step 4. Copyright Orange Business Services 35 of 96

36 Step 2: tap the icon to download the MobilePASS application from the Google Play store. Step 3: from the Google Play store, tap the INSTALL button, and then the ACCEPT button. On completion of the installation process, leave the Google Play store, and then switch to your Web browser. Step 4: tap the Enroll your MobilePASS token link, and then switch to the new launched MobilePASS application. Copyright Orange Business Services 36 of 96

37 Step 5: enter the new token name and tap the Activate button. The activation string is automatically pasted, and the Automatic Enrollment process begins. If your MobilePASS token is PIN-protected, tap the Continue button, you are required to reenter it for verification purposes, and then tap the Continue button. If successful, the following screen is displayed: Step 6: switch to your Web browser to close it. Your MobilePASS token is now active and able to generate OTPs. Copyright Orange Business Services 37 of 96

38 authenticating with a MobilePASS Token QUICKLog operation mode You have the ability to authenticate with your MobilePASS token against any systems that require a logon password (such as your Self-Service Portal described below). Step 1: open the Self-enrollment notification you previously received, tap the Self- Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. Tap the Sign In button, and then the Sign in using your token button. Step 2: tap the icon in your Android Gallery to launch the MobilePASS application, and then select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN). Press the generated passcode until the Copy Passcode button is displayed, and then tap it to copy the passcode to the clipboard. From the Service Portal Web, enter your User ID in the User ID field, paste the passcode from the clipboard in the OTP field (depending on your organization s policies, you may need to enter your PIN either before or after the passcode), and then tap the OK button. Copyright Orange Business Services 38 of 96

39 Step 3: if successful, the homepage of your Self-Service Portal is displayed again, but the Sign In button has been replaced by the Sign Out one. challenge-response operation mode You have the ability to authenticate with your MobilePASS token only against systems that support challenge-response operation mode (such as your Self-Service Portal described below). Step 1: open the Self-enrollment notification you previously received, tap the Self- Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. Tap the Sign In button, the Sign in using your token button, enter your User ID in the User ID field, tap the OK button without entering any value in the OTP field, and then copy the displayed challenge to the clipboard. Step 2: tap the icon in your Android Gallery to launch the MobilePASS application, and then select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN). Paste the challenge code from the clipboard in the Challenge Code field, tap the Generate Passcode button, press the generated passcode until the Copy Passcode button is displayed, and then tap it to copy the passcode to the clipboard. Copyright Orange Business Services 39 of 96

40 From the Service Portal Web, paste the passcode from the clipboard in the OTP field, and then tap the OK button. Step 3: if successful, the homepage of your Self-Service Portal is displayed again, but the Sign In button has been replaced by the Sign Out one. MobilePASS application features Tap the icon in your Android Gallery to launch the MobilePASS application. viewing MobilePASS application information From the homepage, tap the icon to display the MobilePASS application information. viewing MobilePASS token information Select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN), press the standard Menu button on your Android device, and then tap the icon to display the MobilePASS token information. Copyright Orange Business Services 40 of 96

41 renaming a MobilePASS token Select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN), press the standard Menu button on your Android device, and then tap the icon. Enter the new token name, and then tap the Continue button. resetting a MobilePass token PIN (token-side only) Select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN), press the standard Menu button on your Android device, and then tap the icon. Enter your current PIN, tap the Continue button, enter your new PIN, tap the Continue button, you are required to re-enter it for verification purposes, and then tap the Continue button. deleting a MobilePass token This option should only be used on instruction from your IT administrator. Copyright Orange Business Services 41 of 96

42 Select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN), and then tap the icon. Tap the Delete button to confirm. updating the MobilePASS application Updates are automatically managed by the Google Play store. uninstalling the MobilePASS application This option should only be used on instruction from your IT administrator. Follow the Android standard process to uninstall the MobilePASS application. Self-Service Portal features Refer to the FI-MFA Service Portal for MobilePASS chapter (click here for direct access). Copyright Orange Business Services 42 of 96

43 MobilePASS for BlackBerry introduction MobilePASS for BlackBerry users can generate OTPs directly on their BlackBerry devices, and use them to authenticate to FI-MFA-protected applications and resources. terminologies In this section: MobilePASS token: refers to any MobilePASS OTP software token provided by FI-MFA. Passcode: replaces the token code term. MobilePASS application: refers to the OTP application you have to install on your Windows Desktop before managing your MobilePASS tokens. supported platforms The MobilePASS application works with BlackBerry OS version 4.6 and higher. Web browser: Opera Mini, Bolt, UC, and Uzard Web. installing MobilePASS application MobilePASS for BlackBerry allows users to automatically activate and enroll their software tokens over Wi-Fi and wireless networks using the MobilePASS application. MobilePASS for BlackBerry software tokens can be deployed: Over-the-air OTA via the SafeNet-hosted server OTA via your own internally-hosted server (providing for version control) Via the BlackBerry Desktop Manager The BES policy configuration is not available when deploying with Desktop Manager. Via the BlackBerry Enterprise Server (BES) application push The Automatic Authentication feature is only available for BES deployments. The MobilePASS application is available at The zipped file includes folders for OTA, Desktop and BES packages. The MobilePASS for BlackBerry zip consists of a combination of the following files: MobilePASS.cod MobilePASS.jad MobilePASS.alx. Copyright Orange Business Services 43 of 96

44 Files are combined based on how the software will be installed on the BlackBerry device. If installing OTA, the MobilePASS.cod file and the MobilePASS.jad file should be used. If installing via the Desktop Manager, the MobilePASS.cod file and the MobilePASS.alx file should be used. To distribute MobilePASS for BlackBerry, do the following: 1. Determine how BlackBerry device users will download the MobilePASS application to their device. 2. Configure the appropriate files and/or policies if users will automatically enroll with the automatic authentication feature on or off with their tokens. 3. Post the appropriate files to a location where users can access them, and then inform your MobilePASS for BlackBerry users that the software is available for downloading and installing. enrolling MobilePASS token for BlackBerry Step 1: you have or will receive a Self-enrollment notification. Open it, click the selfenrollment Web site link (beginning with and then switch to your Web browser to start the self-enrollment process. Step 2: copy the activation string, ensuring that you select the entire string. The last character = can be ignored during the copy operation. Step 3: click the new token name and tap the Activate button. The activation string is automatically pasted, and the Automatic Enrollment process begins. Copyright Orange Business Services 44 of 96

45 If your MobilePASS token is PIN-protected, enter your PIN, click the Continue button, you are required to re-enter it for verification purposes, and then click the Continue button. If successful, the following screen is displayed: Step 4: switch to your Web browser to close it. Your MobilePASS token is now active and able to generate OTPs. Copyright Orange Business Services 45 of 96

46 authenticating with a MobilePASS token QuickLog operation mode You have the ability to authenticate with your MobilePASS token against any systems that require a logon password (such as your Self-Service Portal described below). Step 1: open the Self-enrollment notification you previously received, click the Self- Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. Click the Sign In button, and then the Sign in using your token button. Step 2: click the icon visible on your BlackBerry device to launch the MobilePASS application, and then select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN). Copy the generated passcode to the clipboard. From the Service Portal Web, enter your User ID in the User ID field, paste the passcode from the clipboard in the OTP field (depending on your organization s policies, you may need to enter your PIN either before or after the passcode), and then click the OK button. Copyright Orange Business Services 46 of 96

47 Step 3: if successful, the homepage of your Self-Service Portal is displayed again, but the Sign In button has been replaced by the Sign Out one. challenge-response operation mode You have the ability to authenticate with your MobilePASS token only against systems that support challenge-response operation mode (such as your Self-Service Portal described below). Step 1: open the Self-enrollment notification you previously received, click the Self- Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. Click the Sign In button, the Sign in using your token button, enter your User ID in the User ID field, click the OK button without entering any value in the OTP field, and then copy the displayed challenge to the clipboard. Step 2: click the icon visible on your BlackBerry device to launch the MobilePASS application, and then select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN). Paste the challenge code from the clipboard in the Challenge Code field, click the Generate Passcode button, and then copy the generated passcode to the clipboard. Copyright Orange Business Services 47 of 96

48 From the Service Portal Web, paste the passcode from the clipboard in the OTP field, and then click the OK button. Step 3: if successful, the homepage of your Self-Service Portal is displayed again, but the Sign In button has been replaced by the Sign Out one. MobilePASS application features Click the icon visible on your BlackBerry device to launch the MobilePASS application. viewing MobilePASS application information Select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN), and then the Token Information option from the menu to display the MobilePASS application information. viewing MobilePASS token information Follow the same instructions as the MobilePASS application information. Copyright Orange Business Services 48 of 96

49 renaming a MobilePASS token Select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN), and then the Change Token Name option from the menu. Enter the new token name, and then tap the Continue button. resetting a MobilePass token PIN (token-side only) Select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN), and then the Change Token PIN option from the menu. Enter your current PIN, click the Continue button, enter your new PIN, click the Continue button, you are required to re-enter it for verification purposes, and then click the Continue button. deleting a MobilePass token This option should only be used on instruction from your IT administrator. Copyright Orange Business Services 49 of 96

50 Select your MobilePASS token (depending on your organization s policies, you may need to enter your PIN), and then the Delete Token option from the menu. Click the Delete button to confirm. Copyright Orange Business Services 50 of 96

51 updating the MobilePASS application This option should only be used on instruction from your IT administrator. uninstalling the MobilePASS application This option should only be used on instruction from your IT administrator. Self-Service Portal features Refer to the FI-MFA Service Portal for MobilePASS chapter (click here for direct access). Copyright Orange Business Services 51 of 96

52 Self-Service Portal for MobilePASS accessing the Self-Service Portal Web site Open the Self-enrollment notification you previously received, click the Self-Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. resynchronizing a MobilePASS token Step 1: from the Self-Service Portal homepage, click the Resync Token icon, enter your User ID in the User ID field, click the Next button, enter the serial number of your MobilePASS token in the Serial field (refer to the viewing MobilePASS token information chapter to retrieve the serial number), and then click the Next button. Step 2: select your MobilePASS token from your OTP application and generate the first token code. Step 3: enter this token code in the First Token Code field. Step 4: generate the second token code. Step 5: enter this token code in the Second Token Code field, and then click the OK button. Step 6: in case of success, the Token successfully synchronized. message is displayed. You can close your Web browser. Copyright Orange Business Services 52 of 96

53 resetting a MobilePass token PIN (server-side only) Step 1: from the Self-Service Portal homepage, click the Reset PIN button, the Sign in using your token button, and then authenticate against your Self-Service Portal. In case of success, the Create New PIN page is displayed. Step 2: enter your new PIN, you are required to re-enter it for verification purposes, and then click the OK button. Step 3: in case of success, the Your Security PIN has been successfully reset. message is displayed. Click the Sign-out button before closing your Web browser. sending temporary sign-in password by /sms This temporary sign-in password is valid during 10 minutes, only for authentication against the Self-Service Portal (useful to reset a forgotten PIN). Step 1: from the Self-Service Portal homepage, click the Sign In button, the Send Sign in password by or Send Sign in password by SMS, enter your User ID, and then click the Send button. Step 2: you have or will receive a Self-service Temporary Sign In Password notification or SMS including your temporary sign-in password. Step 3: from the Self-Service Portal homepage, click the Sign In button, the Sign in using your token button, and then authenticate using your temporary sign-in password as OTP. Copyright Orange Business Services 53 of 96

54 MP for Windows Desktop introduction MP (aka Multi-Platform) for Windows Desktop users can generate OTPs directly on their Windows Desktop, and use them to authenticate to FI-MFA-protected applications and resources. terminologies In this section: MP token: refers to any MP OTP software token provided by FI-MFA. Token application: refers to the OTP application you have to install on your Windows Desktop before managing your MP tokens. An additional application called Token Manager offers some MP token management features. Both Token and Token Manager applications are installed thanks a third one called Software Tools. supported platforms The MP application works with Windows XP, Windows Vista, Windows 7 and Windows 8/8.1 enrolling MP token for Windows Desktop optimizing Internet Explorer Web browser If you are using Internet Explorer to enroll your MP token, the following optimization instructions will allow some enrollment steps be automated in a transparent manner. Copyright Orange Business Services 54 of 96

55 Open your Internet Explorer Web browser, select the Tools > Internet Options menu option from the command bar, the Security tab, the Trusted Sites zone, click the Sites button, enter the URL, and then click the Add button. The Self-enrollment Web site is now member of the Trusted sites security zone of your Internet Explorer Web browser. starting enrollment process Step 1: you have or will receive a Self-enrollment notification. Open it, click the selfenrollment Web site link (beginning with and then switch to your Web browser to start the self-enrollment process. Step 2: select the Install Locally option, and then click Next. If the MP application is already installed on your Desktop, ignore steps for downloading and installing it, and then go to step 4. In addition, if you re using an optimized Internet Explorer Web browser, steps for downloading, installing and activating the MP token file are automated in a transparent manner, and then go step 7. Copyright Orange Business Services 55 of 96

56 Click the Download Software Tools link. The.msi file corresponding to your system (32 or 64 bits) is automatically proposed for download. Click the Save button, and then if necessary the Browse button to select a different destination folder. Step 3: double click the.msi file name to launch the InstallShield Wizard at the end of the downloading. You must have administrator rights on your Windows Desktop to run the Install Shield Wizard. Click the Next button, read the license agreement carefully, select the I accept the terms in the license agreement option, and then click the Next button. Copyright Orange Business Services 56 of 96

57 If necessary click the Change button to select a different destination folder, click the Next button, and then click the Install button. On completion of the installation process, click the Finish button to close the InstallShield Wizard, switch to your Web browser and then click the Next button. Step 4: click the Download button, and then click the Next button. the alert message above may be displayed by not optimized Internet Explorer Web browser: close it each time it appears. Copyright Orange Business Services 57 of 96

58 Step 5: memorize the displayed PIN. Switch to the Opening MP Token pop-up window, select the Open with BlackShield Token (default) option, click the OK button, enter the PIN you memorized in the PIN required popup window, and then click the OK button. Step 6: from the Token application, select the MP token you re enrolling, click the Generate Token Code button. If your MP token is token-side PIN protected and depending on your organization s policies, you may be required to change the PIN on first use: enter your new PIN (you are required to re-enter it for verification purposes).click the button to copy the token code to the clipboard. Copyright Orange Business Services 58 of 96

59 From the self-enrollment Web site, paste the token code from the clipboard in the OTP field (depending on your organization s policies, you may need to memorize and enter the displayed PIN either before or after the token code), and then click the Next button. Step 7: if your MP token is server-side PIN-protected and depending on your organization s policies, you may be required to change the PIN on first use: enter your new PIN (you are required to re-enter it for verification purposes), and then click the Next button. If successful, the following page is displayed: Step 7: memorize your User ID before closing your Web browser. Your MP token is now active and able to generate OTPs. authenticating with a MP token QUICKLog operation mode You have the ability to authenticate with your MP token against any systems that require a logon password (such as your Self-Service Portal described below). Step 1: open the Self-enrollment notification you previously received, click the Self- Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. Click the Sign In button, and then the Sign in using your token button. Step 2: click the icon in your Windows taskbar to launch the Token application, select your MP Token (depending on your organization s policies, you may need to enter your PIN), and then click the Generate Token Code button. Copyright Orange Business Services 59 of 96

60 Click the button to copy the generated token code to the clipboard. From the Service Portal Web, enter your User ID in the User ID field, paste the passcode from the clipboard in the OTP field (depending on your organization s policies, you may need to enter your PIN either before or after the passcode), and then click the OK button. Step 3: if successful, the homepage of your Self-Service Portal is displayed again, but the Sign In button has been replaced by the Sign Out one. Copyright Orange Business Services 60 of 96

61 challenge-response operation mode You have the ability to authenticate with your MP token only against systems that support challenge-response operation mode (such as your Self-Service Portal described below). Step 1: open the Self-enrollment notification you previously received, click the Self- Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. Click the Sign In button, the Sign in using your token button, enter your User ID in the User ID field, click the OK button without entering any value in the OTP field, and then copy the displayed challenge to the clipboard. Step 2: click the icon in your Windows taskbar to launch the Token application, select your MP Token (depending on your organization s policies, you may need to enter your PIN), paste the challenge code from the clipboard in the Challenge field, click the OK button, and then click the button to copy the generated token code to the clipboard. From the Service Portal Web, paste the passcode from the clipboard in the OTP field, and then click the OK button. Step 3: if successful, the homepage of your Self-Service Portal is displayed again, but the Sign In button has been replaced by the Sign Out one. Copyright Orange Business Services 61 of 96

62 Token application features Click the icon in your Windows taskbar to launch the Token application. viewing Token application information Click the Help toolbar option, and then the About menu option. renaming a MP token Select your MP token, click the Tools toolbar option, and then the Rename Token menu option. Enter the new token name, and then click the OK button. resetting a MP token PIN (token-side only) Select your MP token, click the Tools toolbar option, and then the Change PIN menu option. Enter your current PIN, your new PIN (you are required to re-enter it for verification purposes), and then click the OK button. Copyright Orange Business Services 62 of 96

63 unlocking a MP token (token-side PIN) Depending on your organization s policies, your MP token can be unlocked without having to redeploy the MP token file to you. Select your MP token, click the Tools toolbar option, and then the Unlock Token menu option. Send the Unlock Challenge value to your IT administrator. Once your identity has been verified (to be certain that the person in possession of the MP token is the rightful owner), your IT administrator will send a Server Response Code to you. Enter it in the Server Response field and then click the OK button. Enter your new PIN (you are required to re-enter it for verification purposes), and then click the OK button in the Change PIN pop-up window. updating the Token application As part of the SAS Software Tools application, the Token application can t be updated separately. This option should only be used on instruction from your IT administrator. uninstalling the Token application As part of the SAS Software Tools application, the Token application can t be uninstalled separately. This option should only be used on instruction from your IT administrator. Follow the Windows standard process to uninstall the SAS Software Tools application. Copyright Orange Business Services 63 of 96

64 Token Manager application features Click the button in the Control Panel of your Windows Desktop to launch the Token Manager application. viewing MP token information Select your MP token, and then click the Token Information button (or click the Options toolbar option, and then the Token Info menu option). deleting a MP token This option should only be used on instruction from your IT administrator. Select your MP token, and then click the Remove Token button (or click the File toolbar option, and then the Remove Token menu option). Click the Yes button to confirm in the Remove Token pop-up window. Updating/uninstalling the Token application As part of the SAS Software Tools application, the Token application can t be updated/uninstall separately. This option should only be used on instruction from your IT administrator. Copyright Orange Business Services 64 of 96

65 Self-Service Portal features Refer to the FI-MFA Service Portal for MP chapter (click here for direct access). Copyright Orange Business Services 65 of 96

66 MP for Mac OS X introduction MP (aka Multi-Platform) for Mac OS X users can generate OTPs directly on their Mac computer, and use them to authenticate to FI-MFA-protected applications and resources. terminologies In this section: MP token: refers to any MP OTP software token provided by FI-MFA. OTP: replaces the token code term. MP-1 application: refers to the OTP application you have to install on your Mac computer before managing your MP tokens. supported platforms The MP application works with Mac OS X v10.7 Lion, and OS X v10.8 Mountain Lion. Web browser: Safari enrolling MP token for Mac OS X Step 1: you have or will receive a Self-enrollment notification. Open it, click the selfenrollment Web site link (beginning with and then switch to your Web browser to start the self-enrollment process. Step 2: select the Mac OS X Lion option, and then click the Next button. Switch to your mailbox after reading instructions. Copyright Orange Business Services 66 of 96

67 If the MP-1 application is already installed on your Mac computer, ignore steps for downloading and installing it, and then go to step 5. Step 3: you have or will receive a Token Installation for Mac OS X notification. Open it, and then click the link (Step 1 in the ) to start downloading the MP-1 Application. Step 4: at the end of the download, click the down arrow in the upper right corner of your Safari browser to display the downloads, and then click the MP-1.pkg file to launch the MP- 1 Installer. Click the Continue button twice, the Read License button, read the software license agreement carefully, and then click the Agree button. Select the Disk where you want to install the MP-1 Application, click the Continue button, if necessary click the Change Install Location button to select a different installation type, and then click the click Install button. Copyright Orange Business Services 67 of 96

68 On completion of the installation process, click the Close button. Switch to the Token Installation for Mac OS X . Step 5: copy the MP Token Import Code (by highlighting the text to include the first and last characters, up to and including the trailing BSID characters at the end of the code). Step 6: click the icon in the Dock to launch the MP-1 application. Copyright Orange Business Services 68 of 96

69 Step 7: click the + button, the Paste button (to paste the MP Token Import Code), and then the Continue button (to import the MP token). Memorize the displayed PIN and then click the Continue button. If your MP token is tokenside PIN-protected, you may be required to change the PIN on first use: enter the PIN you memorized, your new PIN (you are required to re-enter it for verification purposes) and then click the Continue button. Step 8: your MP token is now active and able to generate OTPs (MP token indicator is green). Copyright Orange Business Services 69 of 96

70 Switch to your Web browser and close it. Copyright Orange Business Services 70 of 96

71 authenticating with a MP token QUICKLog operation mode You have the ability to authenticate with your MP token against any systems that require a logon password (such as your Self-Service Portal described below). Step 1: open the Self-enrollment notification you previously received, click the Self- Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. Click the Sign In button, and then the Sign in using your token button. Step 2: click the icon in the Dock to launch the MP-1 application, and then select your MP Token (depending on your organization s policies, you may need to enter your PIN). Click the Copy button to copy the generated OTP to the clipboard. From the Service Portal Web, enter your User ID in the User ID field, paste the OTP from the clipboard in the OTP field (depending on your organization s policies, you may need to enter your PIN either before or after the OTP), and then click the OK button. Copyright Orange Business Services 71 of 96

72 Step 3: if successful, the homepage of your Self-Service Portal is displayed again, but the Sign In button has been replaced by the Sign Out one. challenge-response operation mode You have the ability to authenticate with your MP token only against systems that support challenge-response operation mode (such as your Self-Service Portal described below). Step 1: open the Self-enrollment notification you previously received, click the Self- Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. Click the Sign In button, the Sign in using your token button, enter your User ID in the User ID field, click the OK button without entering any value in the OTP field, and then copy the displayed challenge to the clipboard. Step 2: click the icon in the Dock to launch the MP-1 application, and then select your MP Token (depending on your organization s policies, you may need to enter your PIN), paste the challenge from the clipboard to the Challenge Code field, click the Continue button, and then the Copy button to copy the generated OTP to the clipboard. From the Service Portal Web, paste the passcode from the clipboard in the OTP field, and then click the OK button. Step 3: if successful, the homepage of your Self-Service Portal is displayed again, but the Sign In button has been replaced by the Sign Out one. Copyright Orange Business Services 72 of 96

73 MP-1 application features Click the icon in the Dock to launch the MP-1 application. viewing MP-1 application information Click the MP-1.app entry in the Applications directory. viewing MP token information The serial number displayed under your MP token name is the only MP token information available. Copyright Orange Business Services 73 of 96

74 renaming a MP token Select your MP token, click the Continue button, the Settings gear, and then the Rename menu option (depending on your organization s policies, you may need to enter your PIN). Enter the new token name and then click the Continue button. resetting a MP token PIN (token-side only) Select your MP token, click the Continue button, the Settings gear, and then the Change PIN menu option. Enter your current PIN, your new PIN (you are required to re-enter it for verification purposes), and then click the Continue button. Copyright Orange Business Services 74 of 96

75 deleting a MP token This option should only be used on instruction from your IT administrator. Select your MP token, click the - button, check the Remove Token box and then click the Continue button. updating the MP-1 application This option should only be used on instruction from your IT administrator. uninstalling the MP-1 application This option should only be used on instruction from your IT administrator. Follow the Mac OS X standard process to uninstall the MP-1 application. Self-Service Portal features Refer to the FI-MFA Service Portal for MP chapter (click here for direct access). Copyright Orange Business Services 75 of 96

76 MP for ios introduction MP (aka Multi-Platform) ios users can generate OTPs directly on their ios devices, and use them to authenticate to FI-MFA-protected applications and resources. terminologies In this section: MP token: refers to any MP OTP software token provided by FI-MFA. OTP: replaces the token code term. MP-1 application: refers to the OTP application you have to install on your ios device before managing your MP tokens. supported platforms Web browser: Safari enrolling MP token for ios Step 1: you have or will receive a Self-enrollment notification. Open it, tap the selfenrollment Web site link (beginning with and then switch to your Web browser to start the self-enrollment process. Step 2: select the iphone option, and then click the Next button. Switch to your mailbox after reading instructions. Copyright Orange Business Services 76 of 96

77 If the MP-1 application is already installed on your ios device, ignore steps for downloading and installing it, and then go to step 5. Step 3: you have or will receive a Token Installation for Mac OS X notification. Open it, and then tap the icon (Step 1) to download the MP-1 Application. Step 4: from the Apple App store, tap the FREE button, and then the INSTALL APP button. Switch to the Over-The-Air (OTA) Installation mail. Step 5: tap the link (Step 2) and then switch to your Web browser to start the download of your MP token file (.7mp extension). Copyright Orange Business Services 77 of 96

78 Step 6: tap the Open in MP-1 button to install your MP token. If your MP token is token-side PIN protected and depending on your organization s policies, you may be required to change the PIN on first use: enter your new PIN, tap Done, you are required to re-enter it for verification purposes, and then tap Done. If successful, the following screen is displayed: Step 7: switch to your Web browser and close it. Your MP token is now active and able to generate OTPs Copyright Orange Business Services 78 of 96

79 authenticating with a MP token QUICKLog operation mode You have the ability to authenticate with your MP token against any systems that require a logon password (such as your Self-Service Portal described below). Step 1: open the Self-enrollment notification you previously received, click the Self- Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. Tap the Sign In button, and then the Sign in using your token button. Step 2: tap the icon in your ios Gallery to launch the MP-1 application, and then select your MP Token (depending on your organization s policies, you may need to enter your PIN). Copy the generated OTP to the clipboard. From the Service Portal Web, enter your User ID in the User ID field, paste the passcode from the clipboard in the OTP field (depending on your organization s policies, you may need to enter your PIN either before or after the passcode), and then tap the OK button. Copyright Orange Business Services 79 of 96

80 Step 3: if successful, the homepage of your Self-Service Portal is displayed again, but the Sign In button has been replaced by the Sign Out one. Copyright Orange Business Services 80 of 96

81 challenge-response operation mode You have the ability to authenticate with your MP token only against systems that support challenge-response operation mode (such as your Self-Service Portal described below). Step 1: open the Self-enrollment notification you previously received, tap the Self- Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. Tap the Sign In button, the Sign in using your token button, enter your User ID in the User ID field, tap the OK button without entering any value in the OTP field, and then copy the displayed challenge to the clipboard. Step 2: tap the icon in your ios Gallery to launch the MP-1 application, and then select your MP Token (depending on your organization s policies, you may need to enter your PIN), paste the challenge code from the clipboard in the Challenge Code field, tap the Done button, and then copy the generated OTP to the clipboard. From the Service Portal Web, paste the passcode from the clipboard in the OTP field, and then tap the OK button. Step 3: if successful, the homepage of your Self-Service Portal is displayed again, but the Sign In button has been replaced by the Sign Out one. Copyright Orange Business Services 81 of 96

82 MP-1 application features Tap the icon in your ios Gallery to launch the MP-1 application. viewing MP-1 application information Pad the icon in the bottom right corner. viewing MP token information Edit your MP Token, and then tap the Operation tile. Copyright Orange Business Services 82 of 96

83 renaming a MP token Edit your MP Token, tap the Rename Token tile, enter your new token name, and then tap the Done button. resetting a MP token PIN (token-side only) Edit your MP Token, tap the Change PIN tile, enter your new PIN, tap the Done button, reenter your new PIN (for verification purposes), and then tap the Done button again. Copyright Orange Business Services 83 of 96

84 deleting a MP token This option should only be used on instruction from your IT administrator. Tap the tile of the MP token you want to delete, the Edit button, the button, and the Delete Token button to confirm. icon, the Delete updating the MP-1 application Updates are automatically managed by the Apple App store. uninstalling the MP-1 application This option should only be used on instruction from your IT administrator. Follow the ios standard process to uninstall the MP-1 application. Self-Service Portal features Refer to the FI-MFA Service Portal for MP chapter (click here for direct access). Copyright Orange Business Services 84 of 96

85 MP for Android introduction MP (aka Multi-Platform) Android users can generate OTPs directly on their Android devices, and use them to authenticate to FI-MFA-protected applications and resources. terminologies In this section: MP token: refers to any MP OTP software token provided by FI-MFA. OTP: replaces the token code term. MP-1 application: refers to the OTP application you have to install on your Android device before managing your MP tokens. supported platforms Web browser: native, Chrome, Firefox, Opera, Skyfire, and Dolphin. enrolling MP token for Android Step 1: you have or will receive a Self-enrollment notification. Open it, tap the selfenrollment Web site link (beginning with and then switch to your Web browser to start the self-enrollment process. Step 2: select the Android option, and then click the Next button. Switch to your mailbox after reading instructions. Copyright Orange Business Services 85 of 96

86 If the MP-1 application is already installed on your Android device, ignore steps for downloading and installing it, and then go to step 5. Step 3: you have or will receive a Over-The-Air (OTA) Installation for Android Device notification. Open it, and then tap the icon (Step 1) to download the MP-1 Application. Step 4: from the Google Play store, tap the INSTALL button, and the ACCEPT button (if App permissons are requested). On completion of the installation process, close the Google Play store (without opening the MP-1 application). Switch to the Over-The-Air (OTA) Installation mail. Copyright Orange Business Services 86 of 96

87 Step 5: select the code in the step 2 section (by highlighting the text to include the first and last characters, up to including the trailing BSID characters at the end of the code) and then copy it to the clipboard. Step 6: tap the icon in your Android Gallery to launch the MP-1 application, the Import button (the Token Import Code was automatically pasted from the clipboard), the Import button again, in the button to install your MP token. If your MP token is token-side PIN protected and depending on your organization s policies, you may be required to change the PIN on first use: enter your new PIN, tap Done, you are required to re-enter it for verification purposes, and then tap Done. If successful, the following screen is displayed: Copyright Orange Business Services 87 of 96

88 Step 7: switch to your Web browser and close it. Your MP token is now active and able to generate OTPs Copyright Orange Business Services 88 of 96

89 authenticating with a MP token QUICKLog operation mode You have the ability to authenticate with your MP token against any systems that require a logon password (such as your Self-Service Portal described below). Step 1: open the Self-enrollment notification you previously received, click the Self- Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. Tap the Sign In button, and then the Sign in using your token button. Step 2: tap the icon in your Android Gallery to launch the MP-1 application, then select your MP Token (depending on your organization s policies, you may need to enter your PIN). Copy the generated OTP to the clipboard. From the Service Portal Web, enter your User ID in the User ID field, paste the passcode from the clipboard in the OTP field (depending on your organization s policies, you may need to enter your PIN either before or after the passcode), and then tap the OK button. Copyright Orange Business Services 89 of 96

90 Step 3: if successful, the homepage of your Self-Service Portal is displayed again, but the Sign In button has been replaced by the Sign Out one. Copyright Orange Business Services 90 of 96

91 challenge-response operation mode You have the ability to authenticate with your MP token only against systems that support challenge-response operation mode (such as your Self-Service Portal described below). Step 1: open the Self-enrollment notification you previously received, tap the Self- Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. Tap the Sign In button, the Sign in using your token button, enter your User ID in the User ID field, tap the OK button without entering any value in the OTP field, and then copy the displayed challenge to the clipboard. Step 2: tap the icon in your Android Gallery to launch the MP-1 application, and then select your MP Token (depending on your organization s policies, you may need to enter your PIN), paste the challenge code from the clipboard in the Challenge Code field, tap the Done button, and then copy the generated OTP to the clipboard. From the Service Portal Web, paste the passcode from the clipboard in the OTP field, and then tap the OK button. Step 3: if successful, the homepage of your Self-Service Portal is displayed again, but the Sign In button has been replaced by the Sign Out one. Copyright Orange Business Services 91 of 96

92 MP-1 application features Tap the icon in your Android Gallery to launch the MP-1 application. viewing MP-1 application information Pad the icon in the bottom right corner. viewing MP token information Edit your MP Token, and then tap the Operation tile. Copyright Orange Business Services 92 of 96

93 renaming a MP token Edit your MP Token, tap the Rename Token tile, enter your new token name, and then tap the Done button. resetting a MP token PIN (token-side only) Edit your MP Token, tap the Change PIN tile, enter your new PIN, tap the Done button, reenter your new PIN (for verification purposes), and then tap the Done button again. Copyright Orange Business Services 93 of 96

94 deleting a MP token This option should only be used on instruction from your IT administrator. Tap the tile of the MP token you want to delete, the Edit button, the button, and the Delete Token button to confirm. icon, the Delete updating the MP-1 application Updates are automatically managed by the Google Play store. uninstalling the MP-1 application This option should only be used on instruction from your IT administrator. Follow the Android standard process to uninstall the MP-1 application. Self-Service Portal features Refer to the FI-MFA Service Portal for MP chapter (click here for direct access). Copyright Orange Business Services 94 of 96

95 Self-Service Portal for MP accessing the Self-Service Portal Web site Open the Self-enrollment notification you previously received, click the Self-Service Portal Web site link (beginning with and then switch to your Web browser to display the homepage. resynchronizing a MP token Step 1: from the Self-Service Portal homepage, click the Resync Token icon, enter your User ID in the User ID field, click the Next button, enter the serial number of your MP token in the Serial field (refer to the viewing MP token information chapter to retrieve the serial number), and then click the Next button. Step 2: copy the displayed challenge to the clipboard. Step 3: select your MP token from your OTP application, select the Resync Token option, paste the challenge code and generate the response code. Step 4: enter this response code in the Response field, and then click the OK button. Step 5: in case of success, the Token successfully synchronized. message is displayed. You can close your Web browser. Copyright Orange Business Services 95 of 96

Flexible Identity. Tokenless authenticators guide. Multi-Factor Authentication. version 1.0

Flexible Identity. Tokenless authenticators guide. Multi-Factor Authentication. version 1.0 Flexible Identity Multi-Factor Authentication Tokenless authenticators guide version 1.0 Publication History Date Description Revision 2014.02.07 initial release 1.0 Copyright Orange Business Services

More information

Welcome Guide for MP-1 Token for Microsoft Windows

Welcome Guide for MP-1 Token for Microsoft Windows Welcome Guide for MP-1 Token for Microsoft Windows Protecting Your On-line Identity Authentication Service Delivery Made EASY Copyright 2012 SafeNet, Inc. All rights reserved. All attempts have been made

More information

User Guide. SafeNet MobilePASS for Windows Phone

User Guide. SafeNet MobilePASS for Windows Phone SafeNet MobilePASS for Windows Phone User Guide Technical Manual Template Release 1.0, PN: 000-000000-000, Rev. A, March 2013, Copyright 2013 SafeNet, Inc. All rights reserved. 1 Document Information Product

More information

BlackShield Authentication Service

BlackShield Authentication Service BlackShield Authentication Service Guide for Users of CRYPTOCard MP-1 Software Tokens on Smart Phones Protecting Your On-line Identity Authentication Service Delivery Made EASY Copyright Copyright 2011.

More information

SafeNet MobilePASS Version 8.2.0, Revision B

SafeNet MobilePASS Version 8.2.0, Revision B SafeNet MobilePASS Version 8.2.0, Revision B User Guide Software Version 8.2.0 Documentation Version: 20101118 2012 SafeNet, Inc. All rights reserved Preface All intellectual property is protected by copyright.

More information

NetIQ Advanced Authentication Framework - Smartphone Applications

NetIQ Advanced Authentication Framework - Smartphone Applications NetIQ Advanced Authentication Framework - Smartphone Applications User Guide Version 3.0 1 Table of Contents 1 Table of Contents 2 Introduction 3 About This Document 3 System Requirements 4 Install Smartphone

More information

MCBDirect Corporate Logging on using a Soft Token

MCBDirect Corporate Logging on using a Soft Token MCBDirect Corporate Logging on using a Soft Token Document issue: 2.1 Date of issue: September 2014 Contents About Soft Token authentication... 3 Logging onto MCBDirect Corporate online banking... 4 Soft

More information

Sophos Mobile Control user help. Product version: 6.1

Sophos Mobile Control user help. Product version: 6.1 Sophos Mobile Control user help Product version: 6.1 Document date: May 2016 Contents 1 About this help...4 2 About Sophos Mobile Control...5 3 Login to the Self Service Portal...6 3.1 First login...6

More information

BlackShield ID MP Token Guide. for Java Enabled Phones

BlackShield ID MP Token Guide. for Java Enabled Phones BlackShield ID MP Token Guide for Java Enabled Phones Copyright 2010 CRYPTOCard Inc. http:// www.cryptocard.com Trademarks CRYPTOCard and the CRYPTOCard logo are registered trademarks of CRYPTOCard Corp.

More information

Sophos Mobile Control User guide for Apple ios. Product version: 4

Sophos Mobile Control User guide for Apple ios. Product version: 4 Sophos Mobile Control User guide for Apple ios Product version: 4 Document date: May 2014 Contents 1 About Sophos Mobile Control...3 2 About this guide...4 3 Login to the Self Service Portal...5 4 Set

More information

WatchDox for Mac User Guide

WatchDox for Mac User Guide WatchDox for Mac User Guide Version 2.3.0 Confidentiality This document contains confidential material that is proprietary to WatchDox. The information and ideas herein may not be disclosed to any unauthorized

More information

Sophos Mobile Control Startup guide. Product version: 3.5

Sophos Mobile Control Startup guide. Product version: 3.5 Sophos Mobile Control Startup guide Product version: 3.5 Document date: July 2013 Contents 1 About this guide...3 2 What are the key steps?...5 3 Log in as a super administrator...6 4 Activate Sophos Mobile

More information

Flexible Identity Federation

Flexible Identity Federation Flexible Identity Federation User guide version 1.0.1 Publication History Date Description Revision 2015.09.25 initial release 1.0.0 2015.12.10 minor corrections 1.0.1 Copyright Orange Business Services

More information

Net 2. NetApp Electronic Library. User Guide for Net 2 Client Version 6.0a

Net 2. NetApp Electronic Library. User Guide for Net 2 Client Version 6.0a Net 2 NetApp Electronic Library User Guide for Net 2 Client Version 6.0a Table of Contents 1 INTRODUCTION AND KEY FEATURES... 3 SOME OF THE KEY FEATURES INCLUDE:... 3 INSTALLATION PREREQUISITES:... 3 2

More information

Sophos Mobile Control User guide for Apple ios

Sophos Mobile Control User guide for Apple ios Sophos Mobile Control User guide for Apple ios Product version: 2.5 Document date: July 2012 Contents 1 About Sophos Mobile Control... 3 2 Login to the Self Service Portal... 4 3 Set up Sophos Mobile Control

More information

Mobile Iron User Guide

Mobile Iron User Guide 2015 Mobile Iron User Guide Information technology Sparrow Health System 9/1/2015 Contents...0 Introduction...2 Changes to your Mobile Device...2 Self Service Portal...3 Registering your new device...4

More information

Sophos Mobile Control Startup guide. Product version: 3

Sophos Mobile Control Startup guide. Product version: 3 Sophos Mobile Control Startup guide Product version: 3 Document date: January 2013 Contents 1 About this guide...3 2 What are the key steps?...5 3 Log in as a super administrator...6 4 Activate Sophos

More information

SafeWord 2008 Customer Release Notes

SafeWord 2008 Customer Release Notes SafeWord 2008 Customer Release Notes Product Version: 2.1.0.04 Release Notes Issue Date: October 14, 2010 Last Updated: October 14, 2010 1. Product Description SafeWord 2008 by SafeNet is a two-factor

More information

ONLINE ACCOUNTABILITY FOR EVERY DEVICE. Quick Reference Guide V1.0

ONLINE ACCOUNTABILITY FOR EVERY DEVICE. Quick Reference Guide V1.0 ONLINE ACCOUNTABILITY FOR EVERY DEVICE Quick Reference Guide V1.0 TABLE OF CONTENTS ACCOUNT SET UP Creating an X3watch account DOWNLOADING AND INSTALLING X3WATCH System Requirements How to install on a

More information

Advanced Configuration Steps

Advanced Configuration Steps Advanced Configuration Steps After you have downloaded a trial, you can perform the following from the Setup menu in the MaaS360 portal: Configure additional services Configure device enrollment settings

More information

Remote Access End User Reference Guide for SHC Portal Access

Remote Access End User Reference Guide for SHC Portal Access Remote Access End User Reference Guide for SHC Portal Access Version 2.0 6/7/2012 This remote access end user reference guide provides an overview of how to install Citrix receiver, which is a required

More information

Instructions to Sign On and Off of Self Service Applications. Internet Explorer 9 (IE9) Users: Turn Off Compatibility View:

Instructions to Sign On and Off of Self Service Applications. Internet Explorer 9 (IE9) Users: Turn Off Compatibility View: Instructions to Sign On and Off of Self Service Applications NOTE: Internet Explorer 7 and 8 are the only supported Browsers for the PeopleSoft Student Self Service applications. If you experience technical

More information

This document shows new Citrix users how to set up and log in to their Citrix account.

This document shows new Citrix users how to set up and log in to their Citrix account. Citrix Set up Set up and Log in to Citrix Objective: This document shows new Citrix users how to set up and log in to their Citrix account. Procedure This document shows you how to set up and log in to

More information

Cloud Services MDM. ios User Guide

Cloud Services MDM. ios User Guide Cloud Services MDM ios User Guide 10/24/2014 CONTENTS Overview... 3 Supported Devices... 3 System Capabilities... 3 Enrollment and Activation... 4 Download the Agent... 4 Enroll Your Device Using the Agent...

More information

Guide for Setting Up Your Multi-Factor Authentication Account and Using Multi-Factor Authentication

Guide for Setting Up Your Multi-Factor Authentication Account and Using Multi-Factor Authentication Guide for Setting Up Your Multi-Factor Authentication Account and Using Multi-Factor Authentication This document serves as a How To reference guide for employees to execute the following MFA tasks: 1.

More information

SHC Client Remote Access User Guide for Citrix & F5 VPN Edge Client

SHC Client Remote Access User Guide for Citrix & F5 VPN Edge Client SHC Client Remote Access User Guide for Citrix & F5 VPN Edge Client Version 1.1 1/15/2013 This remote access end user reference guide provides an overview of how to install Citrix receiver (a required

More information

Quick Start Guide. Version R9. English

Quick Start Guide. Version R9. English Mobile Device Management Quick Start Guide Version R9 English February 25, 2015 Agreement The purchase and use of all Software and Services is subject to the Agreement as defined in Kaseya s Click-Accept

More information

CONNECT-TO-CHOP USER GUIDE

CONNECT-TO-CHOP USER GUIDE CONNECT-TO-CHOP USER GUIDE VERSION V8 Table of Contents 1 Overview... 3 2 Requirements... 3 2.1 Security... 3 2.2 Computer... 3 2.3 Application... 3 2.3.1 Web Browser... 3 2.3.2 Prerequisites... 3 3 Logon...

More information

Technology Services Group Procedures. IH Anywhere guide. 0 P a g e

Technology Services Group Procedures. IH Anywhere guide. 0 P a g e VDI Pilot Technology Services Group Procedures IH Anywhere guide 0 P a g e Installation Disable Apple Security Table of Contents IH Anywhere for Apple OSX (MAC)... 2 1. Installation... 2 Disable Apple

More information

a. StarToken controls the loss due to you losing your Internet banking username and password.

a. StarToken controls the loss due to you losing your Internet banking username and password. 1. What is StarToken? StarToken is the next generation Internet banking security solution that is being offered by Bank of India to all its Internet Banking customers (Retail as well as Corporate). StarToken

More information

Security Upgrade FAQs

Security Upgrade FAQs Security Upgrade FAQs Your online security is important to us. Soon, we ll be upgrading your online banking experience to include a new security service, which is known in the online security industry

More information

Remote Desktop Services User's Guide

Remote Desktop Services User's Guide Contents Remote Desktop Services Document Revision Control Revision Description Author DATE 1.0 Initial Release Karen M. Hess 3/24/2015 1.1 Added section for viewing mapped drives Karen M. Hess 4/15/2015

More information

Managing policies. Chapter 7

Managing policies. Chapter 7 Chapter 7 Managing policies You use the Policies tab in Admin Portal to create policy sets for roles. A policy set lets you configure the following categories of policies: Mobile Device Policies Use to

More information

GO!Enterprise MDM Device Application User Guide Installation and Configuration for Android with TouchDown

GO!Enterprise MDM Device Application User Guide Installation and Configuration for Android with TouchDown GO!Enterprise MDM Device Application User Guide Installation and Configuration for Android with TouchDown GO!Enterprise MDM for Android, Version 3.x GO!Enterprise MDM for Android with TouchDown 1 Table

More information

New Online Banking Guide for FIRST time Login

New Online Banking Guide for FIRST time Login New Online Banking Guide for FIRST time Login Step 1: Login Enter your existing Online Banking User ID and Password. Click Log-In. Step 2: Accepting terms and Conditions to Proceed Click on See the terms

More information

Sophos SafeGuard Native Device Encryption for Mac Administrator help. Product version: 7

Sophos SafeGuard Native Device Encryption for Mac Administrator help. Product version: 7 Sophos SafeGuard Native Device Encryption for Mac Administrator help Product version: 7 Document date: December 2014 Contents 1 About SafeGuard Native Device Encryption for Mac...3 1.1 About this document...3

More information

Department of Veterans Affairs Two-Factor Authentication MobilePASS Quick Start Guide November 18, 2015

Department of Veterans Affairs Two-Factor Authentication MobilePASS Quick Start Guide November 18, 2015 Department of Veterans Affairs Two-Factor Authentication Quick Start Guide November 18, 2015 Introduction: This guide provides instructions for installation of the soft token on your non-piv enabled or

More information

Generating an Apple Push Notification Service Certificate for use with GO!Enterprise MDM. This guide provides information on...

Generating an Apple Push Notification Service Certificate for use with GO!Enterprise MDM. This guide provides information on... Generating an Apple Push Notification Service Certificate for use with GO!Enterprise MDM This guide provides information on...... APNs Requirements Tips on Enrolling in the ios Developer Enterprise Program...

More information

Two Factor Authentication (TFA; 2FA) is a security process in which two methods of authentication are used to verify who you are.

Two Factor Authentication (TFA; 2FA) is a security process in which two methods of authentication are used to verify who you are. Two Factor Authentication Two Factor Authentication (TFA; 2FA) is a security process in which two methods of authentication are used to verify who you are. For example, one method currently utilized within

More information

Mobile Device Management Fleet manager s guide. Philippe CAJET Admin Guide MDM R1.6_2013 August 1 st _V 1

Mobile Device Management Fleet manager s guide. Philippe CAJET Admin Guide MDM R1.6_2013 August 1 st _V 1 Mobile Device Management Fleet manager s guide Philippe CAJET Admin Guide MDM R1.6_2013 August 1 st _V 1 2 Summary Pages Pages Mobile Device Management Fleet manager s guide 1 SUMMARY 2 SUMMARY 3 0. connection

More information

Allianz Global Investors Remote Access Guide

Allianz Global Investors Remote Access Guide Allianz Global Investors Remote Access Guide Web Address: http://remote.allianzgi-us.com/ Page 1 of 34 pages Please contact the Service Desk at Table of Contents 1. Introduction to the Remote Access Page

More information

Akin Gump Strauss Hauer & Feld LLP Remote Access Resources (DUO)

Akin Gump Strauss Hauer & Feld LLP Remote Access Resources (DUO) Akin Gump Strauss Hauer & Feld LLP Remote Access Resources (DUO) Firm Laptop Windows Home PC Mac Computer Apple ipad Android Devices Exit akingump.com 2015 Akin Gump Strauss Hauer & Feld LLP Check Point

More information

Sophos Mobile Control User guide for Windows Phone 8. Product version: 3.5

Sophos Mobile Control User guide for Windows Phone 8. Product version: 3.5 Sophos Mobile Control User guide for Windows Phone 8 Product version: 3.5 Document date: July 2013 Contents 1 About Sophos Mobile Control...3 2 About this guide...4 3 Login to the Self Service Portal...5

More information

Sophos Mobile Control User guide for Android

Sophos Mobile Control User guide for Android Sophos Mobile Control User guide for Android Product version: 2.5 Document date: July 2012 Contents 1 About Sophos Mobile Control... 3 2 Login to the Self Service Portal... 4 3 Set up Sophos Mobile Control

More information

Sophos Mobile Control User guide for Apple ios. Product version: 2 Document date: December 2011

Sophos Mobile Control User guide for Apple ios. Product version: 2 Document date: December 2011 Sophos Mobile Control User guide for Apple ios Product version: 2 Document date: December 2011 Contents 1 About Sophos Mobile Control... 3 2 Set up Sophos Mobile Control on an Apple iphone... 4 3 Set up

More information

SafeGuard Enterprise Web Helpdesk. Product version: 6 Document date: February 2012

SafeGuard Enterprise Web Helpdesk. Product version: 6 Document date: February 2012 SafeGuard Enterprise Web Helpdesk Product version: 6 Document date: February 2012 Contents 1 SafeGuard web-based Challenge/Response...3 2 Installation...5 3 Authentication...8 4 Select the Web Helpdesk

More information

GoldKey Software. User s Manual. Revision 7.12. WideBand Corporation www.goldkey.com. Copyright 2007-2014 WideBand Corporation. All Rights Reserved.

GoldKey Software. User s Manual. Revision 7.12. WideBand Corporation www.goldkey.com. Copyright 2007-2014 WideBand Corporation. All Rights Reserved. GoldKey Software User s Manual Revision 7.12 WideBand Corporation www.goldkey.com 1 Table of Contents GoldKey Installation and Quick Start... 5 Initial Personalization... 5 Creating a Primary Secure Drive...

More information

MC3WAVES Wireless Connection Wizard

MC3WAVES Wireless Connection Wizard MC3WAVES Wireless Connection Wizard When viewing available wireless networks on either MCCC campus you will see a network named public. Connection to public is open to all. Upon connecting to the network

More information

Bell Mobile Device Management (MDM)

Bell Mobile Device Management (MDM) Bell MDM Technical FAQs 1 Bell Mobile Device Management (MDM) Frequently Asked Questions INTRODUCTION Bell Mobile Device Management provides business customers an all in one device administration tool

More information

Password Manager Windows Desktop Client

Password Manager Windows Desktop Client Password Manager Windows Desktop Client EmpowerID provides an extension that allows organizations to plug into Password Manager to customize the Windows logon experience beyond that supplied by the standard

More information

UP L18 Enhanced MDM and Updated Email Protection Hands-On Lab

UP L18 Enhanced MDM and Updated Email Protection Hands-On Lab UP L18 Enhanced MDM and Updated Email Protection Hands-On Lab Description The Symantec App Center platform continues to expand it s offering with new enhanced support for native agent based device management

More information

AVG Business SSO Partner Getting Started Guide

AVG Business SSO Partner Getting Started Guide AVG Business SSO Partner Getting Started Guide Table of Contents Overview... 2 Getting Started... 3 Web and OS requirements... 3 Supported web and device browsers... 3 Initial Login... 4 Navigation in

More information

Android App User Guide

Android App User Guide www.novell.com/documentation Android App User Guide ZENworks Mobile Management 2.7.x August 2013 Legal Notices Novell, Inc., makes no representations or warranties with respect to the contents or use of

More information

Sophos Mobile Control SaaS startup guide. Product version: 6

Sophos Mobile Control SaaS startup guide. Product version: 6 Sophos Mobile Control SaaS startup guide Product version: 6 Document date: January 2016 Contents 1 About this guide...4 2 About Sophos Mobile Control...5 3 What are the key steps?...7 4 Change your password...8

More information

Self-Service Password Manager

Self-Service Password Manager WWW.ROSE-HULMAN.EDU/EIT OFFICE OF ENTERPRISE INFORMATION TECHNOLOGY Self-Service Password Manager Rose-Hulman Institute of Technology has implemented a self-service password manager that provides an easy-to-use

More information

GO!Enterprise MDM Device Application User Guide Installation and Configuration for Android

GO!Enterprise MDM Device Application User Guide Installation and Configuration for Android GO!Enterprise MDM Device Application User Guide Installation and Configuration for Android GO!Enterprise MDM for Android, Version 3.x GO!Enterprise MDM for Android 1 Table of Contents GO!Enterprise MDM

More information

IBM Security Access Manager for Enterprise Single Sign-On Version 8.2.1. User Guide IBM SC23-9950-05

IBM Security Access Manager for Enterprise Single Sign-On Version 8.2.1. User Guide IBM SC23-9950-05 IBM Security Access Manager for Enterprise Single Sign-On Version 8.2.1 User Guide IBM SC23-9950-05 IBM Security Access Manager for Enterprise Single Sign-On Version 8.2.1 User Guide IBM SC23-9950-05

More information

Generating an Apple Push Notification Service Certificate for use with GO!Enterprise MDM. This guide provides information on...

Generating an Apple Push Notification Service Certificate for use with GO!Enterprise MDM. This guide provides information on... Generating an Apple Push Notification Service Certificate for use with GO!Enterprise MDM This guide provides information on...... APNs Requirements Tips on Enrolling in the ios Developer Enterprise Program...

More information

Mobility Manager 9.5. Users Guide

Mobility Manager 9.5. Users Guide Mobility Manager 9.5 Users Guide LANDESK MOBILITY MANAGER Copyright 2002-2013, LANDesk Software, Inc. and its affiliates. All rights reserved. LANDesk and its logos are registered trademarks or trademarks

More information

MITEL UNIFIED COMMUNICATOR ADVANCED

MITEL UNIFIED COMMUNICATOR ADVANCED MITEL UNIFIED COMMUNICATOR ADVANCED About UC Advanced Mitel Unified Communicator (UC) Advanced is a software communications product integrated with the advanced call management features of Mitel Communications

More information

Defender 5.7 - Token Deployment System Quick Start Guide

Defender 5.7 - Token Deployment System Quick Start Guide Defender 5.7 - Token Deployment System Quick Start Guide This guide describes how to install, configure and use the Defender Token Deployment System, based on default settings and how to self register

More information

GO!Enterprise MDM Device Application User Guide Installation and Configuration for ios with TouchDown

GO!Enterprise MDM Device Application User Guide Installation and Configuration for ios with TouchDown GO!Enterprise MDM Device Application User Guide Installation and Configuration for ios with TouchDown GO!Enterprise MDM for ios Devices, Version 3.x GO!Enterprise MDM for ios with TouchDown 1 Table of

More information

Brainloop Secure Dataroom Version 8.30. QR Code Scanner Apps for ios Version 1.1 and for Android

Brainloop Secure Dataroom Version 8.30. QR Code Scanner Apps for ios Version 1.1 and for Android Brainloop Secure Dataroom Version 8.30 QR Code Scanner Apps for ios Version 1.1 and for Android Quick Guide Brainloop Secure Dataroom Version 8.30 Copyright Brainloop AG, 2004-2015. All rights reserved.

More information

LogMeIn Rescue Step-by-Step Connection Guide

LogMeIn Rescue Step-by-Step Connection Guide LogMeIn Rescue Step-by-Step Connection Guide Contents About this Guide...3 Starting a PIN Code Session: Windows + Internet Explorer...4 Starting a PIN Code Session: Windows + Firefox...6 Starting an Email

More information

2-FACTOR AUTHENTICATION WITH

2-FACTOR AUTHENTICATION WITH 2-FACTOR AUTHENTICATION WITH 2X JUNE 2014 Two-Factor Authentication and Authy What is Two-Factor Authentication? Two-Factor Authentication is a process involving two stages to verify the identity of someone

More information

SafeGuard Enterprise Web Helpdesk

SafeGuard Enterprise Web Helpdesk SafeGuard Enterprise Web Helpdesk Product version: 5.60 Document date: April 2011 Contents 1 SafeGuard web-based Challenge/Response...3 2 Installation...5 3 Authentication...8 4 Select the Web Help Desk

More information

How to Use Remote Access Using Internet Explorer

How to Use Remote Access Using Internet Explorer Introduction Welcome to the Mount s Remote Access service. The following documentation is intended to assist first time or active users with connecting, authenticating and properly logging out of Remote

More information

Windows and MAC User Handbook Remote and Secure Connection Version 1.01 09/19/2013. User Handbook

Windows and MAC User Handbook Remote and Secure Connection Version 1.01 09/19/2013. User Handbook Windows and MAC User Handbook How to Connect Your PC or MAC Remotely and Securely to Your U.S. Department of Commerce Account Developed for You by the Office of IT Services (OITS)/IT Service Desk *** For

More information

NASDAQ Web Security Entitlement Installation Guide November 13, 2007

NASDAQ Web Security Entitlement Installation Guide November 13, 2007 November 13, 2007 Table of Contents: Copyright 2006, The Nasdaq Stock Market, Inc. All rights reserved.... 2 Chapter 1 - Entitlement Overview... 3 Hardware/Software Requirements...3 NASDAQ Workstation...3

More information

Administrators Help Manual

Administrators Help Manual Administrators Help Manual Lepide Active Directory Self Service Lepide Software Private Limited Page 1 Administrators Help Manual for Active Directory Self-Service Lepide Active Directory Self Service

More information

Sophos SafeGuard Native Device Encryption for Mac quick startup guide. Product version: 7

Sophos SafeGuard Native Device Encryption for Mac quick startup guide. Product version: 7 Sophos SafeGuard Native Device Encryption for Mac quick startup guide Product version: 7 Document date: December 2014 Contents 1 About SafeGuard Native Device Encryption for Mac...3 2 Working with SafeGuard

More information

Accessing Citrix on a MAC using OS X (Mountain Lion and Newer)

Accessing Citrix on a MAC using OS X (Mountain Lion and Newer) These instructions are specifically designed for OS X Mountain Lion and Mavericks. Earlier versions of the OS will require a different installation. These instructions assume that there are no Java, Citrix

More information

Microsoft Office 365 Microsoft Office 2013 Pro Plus for PC Installation and Activation Walkthrough

Microsoft Office 365 Microsoft Office 2013 Pro Plus for PC Installation and Activation Walkthrough Microsoft Office 365 Microsoft Office 2013 Pro Plus for PC Installation and Activation Walkthrough Contents Introduction... 2 System Requirements... 2 Installing Microsoft Office 2013... 2 Manage/Deactivate

More information

User Self-Service Configuration Overview

User Self-Service Configuration Overview User Self-Service Configuration Overview Version 8.2 Mobile Service Manager Legal Notice This document, as well as all accompanying documents for this product, is published by Good Technology Corporation

More information

Guide for Setting Up Your Multi-Factor Authentication Account and Using Multi-Factor Authentication. Mobile App Activation

Guide for Setting Up Your Multi-Factor Authentication Account and Using Multi-Factor Authentication. Mobile App Activation Guide for Setting Up Your Multi-Factor Authentication Account and Using Multi-Factor Authentication Mobile App Activation Before you can activate the mobile app you must download it. You can have up to

More information

Citrix Remote Access Portal U s e r M a n u a l

Citrix Remote Access Portal U s e r M a n u a l Citrix Remote Access Portal U s e r M a n u a l 1 P a g e Table of Contents Table of Contents... 2 Introduction... 3 1. What is Citrix and how does it work?... 4 2. PC Setup/Internet Explorer - Connecting

More information

VPN Web Portal Usage Guide

VPN Web Portal Usage Guide VPN Web Portal Usage Guide Table of Contents WHAT IS VPN WEB CLIENT 4 SUPPORTED WEB BROWSERS 4 LOGGING INTO VPN WEB CLIENT 5 ESTABLISHING A VPN CONNECTION 6 KNOWN ISSUES WITH MAC COMPUTERS 6 ACCESS INTRANET

More information

MRU Secure Remote Access Service (SRAS) External User Guide

MRU Secure Remote Access Service (SRAS) External User Guide MRU Secure Remote Access Service (SRAS) External User Guide The MRU Secure Remote Access Service (SRAS) allows MRU approved vendors and external clients, restricted remote access to internal computing

More information

RSA Authentication Manager 8.1 Help Desk Administrator s Guide

RSA Authentication Manager 8.1 Help Desk Administrator s Guide RSA Authentication Manager 8.1 Help Desk Administrator s Guide Contact Information Go to the RSA corporate website for regional Customer Support telephone and fax numbers: www.emc.com/domains/rsa/index.htm

More information

GO!Enterprise MDM Device Application User Guide Installation and Configuration for ios Devices

GO!Enterprise MDM Device Application User Guide Installation and Configuration for ios Devices GO!Enterprise MDM Device Application User Guide Installation and Configuration for ios Devices GO!Enterprise MDM for ios Devices, Version 3.x GO!Enterprise MDM for ios Devices 1 Table of Contents GO!Enterprise

More information

Setting Up and Accessing VPN

Setting Up and Accessing VPN Setting Up and Accessing VPN Instructions for establishing remote access to the URMC network for PC or Mac Duo Two-Factor Authentication If you have already enrolled and setup Duo Two-Factor Authentication

More information

SafeGuard Enterprise Web Helpdesk. Product version: 6.1

SafeGuard Enterprise Web Helpdesk. Product version: 6.1 SafeGuard Enterprise Web Helpdesk Product version: 6.1 Document date: February 2014 Contents 1 SafeGuard web-based Challenge/Response...3 2 Scope of Web Helpdesk...4 3 Installation...5 4 Allow Web Helpdesk

More information

Apple Mail... 36 Outlook Web Access (OWA)... 38 Logging In... 38 Changing Passwords... 39 Mobile Devices... 40 Blackberry...

Apple Mail... 36 Outlook Web Access (OWA)... 38 Logging In... 38 Changing Passwords... 39 Mobile Devices... 40 Blackberry... Contents Email Accounts... 3 Adding accounts... 3 Account Modifications... 6 Adding Aliases... 7 Primary E-mail Addresses... 10 Mailbox Quotas... 12 Removing accounts... 13 Mail Forwarding and Distribution

More information

How To Use The Syndicate Bank Rsa Security Token For Internet Banking On Pc Or Mac Or Mac (For A Web Browser) For A Long Time (For An Ipad) For Free (For Free) For An Unlimited Time) For Your

How To Use The Syndicate Bank Rsa Security Token For Internet Banking On Pc Or Mac Or Mac (For A Web Browser) For A Long Time (For An Ipad) For Free (For Free) For An Unlimited Time) For Your Syndicate Bank Supply and Commissioning of Two Factor Authentication for Internet with Two Factor Authentication for Bank s Internal Users for Various Applications Desktop based User Manual for using SyndProtect

More information

New Brunswick Internal Services Agency. RSA Self-Service Console User Guide

New Brunswick Internal Services Agency. RSA Self-Service Console User Guide New Brunswick Internal Services Agency RSA Self-Service Console User Guide Version: 1.0 Created: November 27, 2013 Modified: November 27, 2013 Table of Contents Introduction...1 Logging on to the RSA Self-Service

More information

Internet and Email Help. Table of Contents:

Internet and Email Help. Table of Contents: Internet and Email Help The following tips are provided to assist you in troubleshooting and managing your Plex Internet and email services. For additional issues or concerns, you may also call our Product

More information

Quick Start Guide to Logging in to Online Banking

Quick Start Guide to Logging in to Online Banking Quick Start Guide to Logging in to Online Banking Log In to Internet Banking: Note: The first time you log in you are required to use your Customer ID. Your Customer ID is the primary account holder s

More information

NetIQ Advanced Authentication Framework

NetIQ Advanced Authentication Framework NetIQ Advanced Authentication Framework Security Officer Guide Version 5.2.0 1 Table of Contents 1 Table of Contents 2 Introduction 3 About This Document 3 Authenticators Management 4 Card 8 Email OTP

More information

Junos Pulse for Google Android

Junos Pulse for Google Android Junos Pulse for Google Android User Guide Release 4.0 October 2012 R1 Copyright 2012, Juniper Networks, Inc. Juniper Networks, Junos, Steel-Belted Radius, NetScreen, and ScreenOS are registered trademarks

More information

Mobile Online Banking

Mobile Online Banking Mobile Online Banking User Guide Table of Contents Enrolling Through Traditional Online Banking, pg. 2 Enrolling Using Your Mobile Device, pg. 4 Login Screen, pg. 7 Locations, pg. 7 Mobile Browser View,

More information

BlackBerry Internet Service. Version: 4.5.1. Administration Guide

BlackBerry Internet Service. Version: 4.5.1. Administration Guide BlackBerry Internet Service Version: 4.5.1 Administration Guide Published: 2014-01-22 SWD-20140122155744258 Contents 1 Getting started...6 Administrative feature availability... 6 Availability of features

More information

RSA Authentication Manager 8.1 Help Desk Administrator s Guide. Revision 1

RSA Authentication Manager 8.1 Help Desk Administrator s Guide. Revision 1 RSA Authentication Manager 8.1 Help Desk Administrator s Guide Revision 1 Contact Information Go to the RSA corporate website for regional Customer Support telephone and fax numbers: www.emc.com/domains/rsa/index.htm

More information

Kaseya 2. User Guide. Version 1.0

Kaseya 2. User Guide. Version 1.0 Kaseya 2 Mobile Device Management User Guide Version 1.0 March 12, 2012 About Kaseya Kaseya is a global provider of IT automation software for IT Solution Providers and Public and Private Sector IT organizations.

More information

Merchant On The Move Android Professional Edition User Guide and Tutorial

Merchant On The Move Android Professional Edition User Guide and Tutorial Merchant On The Move Android Professional Edition User Guide and Tutorial Copyright (c) 2010 Primary Merchant Solutions Inc All rights reserved Merchant On The Move for Android p. 1 Requirements Merchant

More information

Sophos Mobile Control User guide for Android. Product version: 4

Sophos Mobile Control User guide for Android. Product version: 4 Sophos Mobile Control User guide for Android Product version: 4 Document date: May 2014 Contents 1 About Sophos Mobile Control...3 2 About this guide...4 3 Login to the Self Service Portal...5 4 Set up

More information

BlackBerry Universal Device Service. Demo Access. AUTHOR: System4u

BlackBerry Universal Device Service. Demo Access. AUTHOR: System4u Demo Access AUTHOR: System4u BlackBerry Universal Device Service Revisions Date Version Description Author June 26 th 2012 1.0 Roman Přikryl September 25 th 2012 1.5 Revision Roman Přikryl October 5 th

More information

RSA SecurID Software Token 1.3 for iphone and ipad Administrator s Guide

RSA SecurID Software Token 1.3 for iphone and ipad Administrator s Guide RSA SecurID Software Token 1.3 for iphone and ipad Administrator s Guide Contact Information See the RSA corporate web site for regional Customer Support telephone and fax numbers: www.rsa.com Trademarks

More information

DPH TOKEN SELF SERVICE SITE INSTRUCTIONS:

DPH TOKEN SELF SERVICE SITE INSTRUCTIONS: DPH TOKEN SELF SERVICE SITE INSTRUCTIONS: The purpose of this document is to provide users with assistance on resolving connection issues with Department of Public Health (DPH) Entrust tokens. These instructions

More information

OS X 10.6 SNOW LEOPARD: KEYCHAIN ACCESS MANAGING & UNDERSTANDING KEYCHAIN

OS X 10.6 SNOW LEOPARD: KEYCHAIN ACCESS MANAGING & UNDERSTANDING KEYCHAIN OS X 10.6 SNOW LEOPARD: KEYCHAIN ACCESS MANAGING & UNDERSTANDING KEYCHAIN MANAGING KEYCHAINS Mac OS X features a sophisticated system that automatically protects all your authentication assets in encrypted

More information

How To Get A Certificate From Digicert On A Pc Or Mac Or Mac (For Pc Or Ipa) On A Mac Or Ipad (For Mac) On Pc Or Pc Or Pb (For Ipa Or Mac) For Free

How To Get A Certificate From Digicert On A Pc Or Mac Or Mac (For Pc Or Ipa) On A Mac Or Ipad (For Mac) On Pc Or Pc Or Pb (For Ipa Or Mac) For Free DigiCert User Guide Version 3.7 Contents 1 User Management... 7 1.1 Roles and Account Access... 7 1.1.1 Administrator Role... 7 1.1.2 User Role... 7 1.1.3 CS Verified User... 7 1.1.4 EV Verified User...

More information