Free5 minutesbeginner

Setting Up Multi-Factor Authentication

Secure your Zenovay account with multi-factor authentication using authenticator apps, SMS, or security keys.

mfa2fasecurityauthenticationtotp
Last updated: January 15, 2025

Multi-factor authentication (MFA) adds an extra layer of security to your account. Even if someone learns your password, they can't access your account without the second factor.

MFA Methods Available

Zenovay supports two MFA methods:

MethodSecurity LevelConvenienceBest For
Authenticator App (TOTP)HighMediumMost users
Security Keys (WebAuthn)HighestMediumSecurity-conscious users

Recommended

We recommend authenticator apps for the best balance of security and convenience.

Setting Up Authenticator App (TOTP)

TOTP (Time-based One-Time Password) uses an authenticator app to generate codes.

Supported Authenticator Apps

  • Google Authenticator (iOS, Android)
  • Authy (iOS, Android, Desktop)
  • 1Password (All platforms)
  • Microsoft Authenticator (iOS, Android)
  • Bitwarden (All platforms)

Setup Steps

1

Go to Security Settings

Navigate to SettingsSecurity in your dashboard.

2

Enable MFA

Click Enable Multi-Factor Authentication.

3

Choose Authenticator App

Select Authenticator App as your method.

4

Scan QR Code

Open your authenticator app and scan the QR code displayed. Alternatively, enter the secret key manually.

5

Enter Verification Code

Type the 6-digit code from your authenticator app to verify setup.

6

Save Backup Codes

Download or write down your backup codes. Store them securely.

Save your backup codes immediately! They're the only way to recover your account if you lose access to your authenticator.

Setting Up Security Keys (WebAuthn)

Pro Plan

Security keys provide the strongest protection against phishing.

Supported Security Keys

  • YubiKey (all models)
  • Google Titan
  • Thetis
  • Feitian
  • Built-in platform authenticators (Touch ID, Windows Hello)
1

Go to Security Settings

Navigate to SettingsSecurity.

2

Enable MFA

Click Enable Multi-Factor Authentication.

3

Choose Security Key

Select Security Key as your method.

4

Insert Security Key

Insert your security key into a USB port or have NFC ready.

5

Touch Security Key

When prompted, touch the button on your security key.

6

Name Your Key

Give your key a recognizable name (e.g., "Office YubiKey").

7

Add Backup Method

Add a backup method (another key or authenticator app) for recovery.

Using MFA When Logging In

After enabling MFA:

  1. Enter your email and password as usual
  2. When prompted for your second factor:
    • Authenticator: Enter the 6-digit code
    • Security Key: Insert and touch your key
  3. Optionally check "Remember this device" on trusted computers

Managing MFA Settings

Viewing Enabled Methods

  1. Go to SettingsSecurity
  2. See all enabled MFA methods
  3. View when each was added

Changing Methods

To switch MFA methods:

  1. Add the new method first
  2. Verify it works by logging out and back in
  3. Remove the old method if desired

Disabling MFA

Disabling MFA reduces your account security. Only do this if absolutely necessary.

  1. Go to SettingsSecurity
  2. Click Disable MFA
  3. Confirm with your current MFA code
  4. Enter your password to confirm

Backup Codes

Backup codes let you access your account if you lose your MFA device.

About Backup Codes

  • 10 single-use codes generated
  • Each code can only be used once
  • Codes don't expire unless regenerated
  • Store them securely (password manager, safe, etc.)

Using a Backup Code

  1. On the MFA prompt, click Use backup code
  2. Enter one of your backup codes
  3. You'll be logged in (that code is now invalid)

Regenerating Backup Codes

If you've used codes or lost them:

  1. Log in to your account
  2. Go to SettingsSecurity
  3. Click Regenerate Backup Codes
  4. Confirm with your current MFA code
  5. Save the new codes (old ones become invalid)

Troubleshooting

Authenticator Code Not Working

  • Ensure your device time is correct (sync automatically)
  • Make sure you're using codes for Zenovay, not another service
  • Try the next code (they refresh every 30 seconds)
  • Use a backup code if issues persist

Lost Authenticator App

  1. Use a backup code to log in
  2. Disable the old MFA method
  3. Set up MFA again with a new device

Security Key Not Recognized

  • Try a different USB port
  • Update browser (Chrome recommended)
  • Check key is WebAuthn compatible
  • Try the key on another computer

Enterprise MFA

Enterprise Plan

Enterprise accounts have additional MFA options:

  • Mandatory MFA: Require MFA for all team members
  • Approved Methods: Limit which MFA methods are allowed
  • SSO Integration: Use your identity provider's MFA
  • Audit Logging: Track all MFA events

Best Practices

  1. Use authenticator apps for the best balance of security and convenience
  2. Register multiple methods as backup (e.g., TOTP app and a security key)
  3. Store backup codes securely (encrypted password manager)
  4. Enable MFA on your email too
  5. Keep authenticator app backed up (Authy supports this)

Next Steps

Was this article helpful?