Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

...

You may already have an app installed if you have 2FA for other internet sites.

If you are already using 2FA for Confluence login, this is not the same.

A new authentication account will need needs to be added to the app that is just used for Comala Document Control approvals.

The first time a user is required to approve content in the QMS workflow, they will be aree required to initialize the signing token to create their authentication account in the authentication app. inWebo multi-factor authentication can also be used with Comala Document Management for Cloud. Using inWebo will disable the use of other 2FA apps and the OTP authentication is managed through inWebo. 

Initialize Signing Token

The very first time a user is expected to approve a page, they are asked to set up a personal code.

...

The two-step setup process is shown:.

...

You must first download and install the 2FA app on your smart device.

  • the approval signing token can be is generated using one of several different apps such as Google Authenticator available from Google Play and Apple App Store

  • the authentication client must be installed and linked to your email for the Confluence instance

...

  • add your email address to Step 2 in Comala Document Control signing token setup dialogue box

  • choose Validate to generate a confirmation email with a link that will allow allows you to set up the authentication app installed on your device

...

  • signing token creation date for the setup and the expiry date are displayed

  • Confluence administrators can reset the need to initialise initialize the signing token

Setting up approval signing token through the workflow report

...

If the signing token setup is complete and valid, the link will display displays confirmation.

...

If there is no valid token setup, the link displays the signing token setup dialogue box. 

Info

Once set up for a user, new numeric signing tokens are generated every 30 seconds by the authentication app.

At the time a user with With e-signature set up, when the user undertakes an approval

  • the numeric signing token displayed by the authentication app is required to activate the content review

  • the e-signature credentials are checked when the approve or reject decision is made.

Navigating away from the popup and returning later may require a new 6-figure numeric token generated by the authentication app.

...

  • for usability, user validation is provided against previous, current, and the next calculated signing tokens generated by the authenticator app

  • the e-signature process submits the user email address and approval signing token through Comalatech's the Appfire Comala secure server without storing these details

...