Enabling MFA for a user

When multi-factor authentication (MFA) is enabled on the system and a user profile has an authentication method of *TOTP, they will be required to enter a TOTP value as the additional factor when authenticating.

To enable TOTP for a user profile, the user must have a TOTP key and the user profile’s authentication method must be set to *TOTP. Setting a user’s authentication method to *TOTP involves actions by both the user and the administrator.

Setting up *REGFAC authentication method requires the administrator to register the authentication exit program and set the user profile’s authentication method to *REGFAC.