You are on page 1of 9

MANUAL

MULTI-FACTOR-AUTHENTICATION
XX06

MFA | Revision 02 ©

ILF & PARTNERS ENGINEERING COMPANY


Prince Muhammad Bin Abdulaziz Road, Olaya Towers, Tower B / 11th floor, P.O. Box 10311, 11433 Riyadh
Phone.: +966 / 11 / 465 4145
Fax: +966 / 11 / 464 4616
Email: ilf.ksa@ilf.com | www.ilf.com
REVISIONS

02 22.04.2020 Second Issue Zuha, Mohamed Tobler, Peter Tobler, Karl

01 20.04.2020 First Issue Zuha, Mohamed Tobler, Peter Tobler, Karl

REV. DATE ISSUE, MODIFICATION PREPARED CHECKED APPROVED

MANUAL_MFA_Rev02.docx | Revision 02 | © Page 1/8


Multi-Factor-Authentication
ILF IT is enhancing the security level of login attempts to several external services via multi-
factor-authentication (MFA).

If you only use a password to authenticate, it leaves an insecure vector for attack. If the pass-
word is weak or has been exposed elsewhere, is it really the user signing in with the username
and password, or is it an attacker?
When you require a second form of authentication, security is increased as this additional fac-
tor isn't something that's easy for an attacker to obtain or duplicate.
Azure Multi-Factor Authentication works by requiring two or more of the following authentica-
tion methods:

 Something you know, typically a password.


 Something you have, such as a trusted device that is not easily duplicated, like a phone
or hardware key.

You will not be asked for MFA during your normal logon to the computer, however our goal is
to better protect those systems which are exposed to the Internet like Outlook Web Access,
FortiClient VPN, MS Teams and internal websites, such as the ticketing system or SharePoint
portals.

Note: Before you proceed, we recommend to watch the explanatory video:

MANUAL_MFA_Rev02.docx | Revision 02 | © Page 2/8


Please follow the below steps in order to configure your MFA:

1. Login to MFA Website

Please visit the following website: https://aka.ms/mfasetup

Use your ILF credentials to login (do not use Windows Hello PIN)

Microsoft will automatically send you a six (06) digits one-time-password (OTP) to
your mobile phone, which is registered in our ILF records.

Type in the OTP number you received on your phone and click “Verify” in order to
continue the configuration.

OR

if your mobile number is not properly registered in the ILF records, you will receive the
image below:

MANUAL_MFA_Rev02.docx | Revision 02 | © Page 3/8


In this case please click “Next” to assign your mobile phone number to receive one-
time-password.

Important: Immediately inform your HR department to update your mobile phone


number in the ILF system to avoid future problems.

MANUAL_MFA_Rev02.docx | Revision 02 | © Page 4/8


2. Setup Microsoft Authenticator

Once you login to the “Additional security verification” website, please download the
Microsoft Authenticator App as well. This application is essential to use FortiClient
VPN and other resources within ILF-KSA.

If you are an ILF MDM user, MS Authenticator will be installed by default on your mo-
bile phone (iOS or Android). If you are not, please install the MS Authenticator by
yourself:

After you log in, the following screen will appear on your computer:

Please click “Set up Authenticator app”, as can be seen on the screenshot above.

MANUAL_MFA_Rev02.docx | Revision 02 | © Page 5/8


The following message will appear:

Then, please open the “MS Authenticator” app on your mobile phone and select
“+ Add account”.

If you already are a “MS Authenticator” user, it will not conflict with your accounts you
might already have configured in the past.

MANUAL_MFA_Rev02.docx | Revision 02 | © Page 6/8


Then select “Work or school account” option and scan the QR code presented on the
website:

Once you have completed the scan, you will notice the following on you mobile
phone:

Then, you will see on your computer the message below:

Consecutively, you will get a popup on your mobile phone to complete the above
shown verification:

Select “APPROVE” to complete the process.

MANUAL_MFA_Rev02.docx | Revision 02 | © Page 7/8


Finally, you will see the below configuration under your profile:

 What’s your preferred option?


Notify me through app

 Authenticator app or Token has been ticked 


 Authenticator app – your mobile device name should appear.

If your selection is not similar to the screenshot above, please modify the settings ac-
cordingly and save the configuration to avoid any inconveniences.

Reminder: In case you are planning to change your mobile device, please do not forget to
change the “MS Authenticator” to the new device and remove the “MS Authen-
ticator” from your old one.

If you have any issues with the installation, please feel free to contact your IT support.

MANUAL_MFA_Rev02.docx | Revision 02 | © Page 8/8

You might also like