GreatSoft has the ability to secure your Cloud system with an industry-standard Multi-Factor Authentication(MFA) security layer.
MFA consists of “something you know” (Username and Password) and “something you have” (Authenticator App on Mobile phone).
The Authenticator App provides a 6 digit code only your mobile phone and GreatSoft Cloud knows, which changes every 30 seconds allowing this industry-standard, 2nd layer of security to your system.
Which Authenticator app should you use?
GreatSoft MFA is designed to work with the following Authenticator Apps:
• Google Authenticator
• Microsoft Authenticator
• Authy
Below is a link to an article detailing each Authenticator and their use cases. GreatSoft does not have a preference which Authenticator App you choose, only that you select the “Time-Based” method when prompted.
How to choose the right two-factor authenticator app
Logging into GreatSoft with MFA
On the first login to GreatSoft Cloud, you will be presented with the login screen.

After successfully entering your Username and Password, you will be prompted with a QR code to be scanned by the Multi-Factor Authentication app you have chosen to install.

You’ll need to scan the QR Code as shown in the image above, a 6 digit code will be presented on your mobile device. This code changes every 30 seconds.

Enter the code shown on your mobile device into the box prompt and click the VALIDATE button to sync your mobile device and GreatSoft Cloud. This will allow you access to GreatSoft Cloud for the first time.
For each subsequent login, after you have successfully entered your Username and Password, you will be prompted to enter the 6 digit code presented by your chosen Authenticator App as shown below.

Note:
Additional to MFA, all GreatSoft Cloud websites have a customisable timeout setting which resets your login if there is no activity detected for a user for a specified period of time.
There is also a standard lockout feature for 5 failed login attempts, requiring your system administrator intervention to release that user's login.