Overview
How to enroll, authenticate and manage existing devices in Duo Mobile for Multi-Factor Authentication.
Procedures
To improve security access many RPI systems will require Multi-Factor Authentication using Duo Mobile. This article will explain on how to install this on a smartphone and how to connect.
First section will be installing and configuring. Scroll down for managing existing devices including adding a new or additional device.
Installing and Configuring Duo Mobile
1. Go to App Store for iOS or Play Store for Android and download and install: Duo Mobile
[image for Duo Mobile app]
Note -- Requires iOS 13 or above or Android OS 8 or above. If you do not have a smart phone, tablet (iPad) OR you have an older smart phone, please reference the Hardware token section below:
How to find OS version:
- iOS: Settings - General - About
- Android: Settings - About Phone or About Device - Android Version
2. On a computer (not on your phone) open a web browser go to:
https://apex.cct.rpi.edu/apex/f?p=119
3. At the login screen login with your RCS userid and password
[login screen prompting for RCSid and password - click Login]
4. At the next screen click on Start Setup
[Protect Your Rensselaer Polytechnic Institute Account screen showing the Start setup button highlighted]
5. At the next screen "What type of device are you adding?" Choose Mobile phone or Tablet (iPad) and click Continue (Note -- Requires iOS 12 or above or Android OS 8 or above. If you do not have a smart phone, tablet (iPad) OR you have an older smart phone, please submit a Support Request for assistance)
(Screen for What type of device are you using? with Mobile phone recommended selected)
6. At the next screen enter mobile phone number including area code - you will be prompted to check a box to confirm you entered the correct number - click Continue
*Note* If registering a tablet, skip to step 7
(Screen with blank box in front of +1 to add mobile phone number with area code)
7. At the next screen select What type of operating system appropriately - click Continue
8. At the next screen choose I have Duo Mobile Installed
(screen showing Install Duo Mobile for iOS - your device may be different - I have Duo Mobile installed)
9. Next screen will show an activation bar code
(Screen showing activation bar code for an iOS device)
10. Open Duo Mobile app on your phone/ tablet
11. Tap New to Duo - Add Account or Get Started or + (may be prompted to allow Camera permissions)
12. Scan the activation barcode showing on your computer - click Continue
13. At the next screen choose from the drop down When I log in "Automatically send this device a Duo Push" - click Continue to Login
Logging in when prompted for a second password or a prompt for MFA
1. Various RPI systems will require using the Duo app for a multi-factor authentication. At the login screen you may be prompted to send a push (which goes to your phone) or Enter a Passcode (which is from a hardware token - see below for more information on hardware tokens)
or
a Second password may be needed. For the Second password enter: push. Go to Duo app on your phone/ tablet to Approve.
If push does not work, open the Duo Mobile app on your smart phone - click the refresh icon to the right of the code that comes up to generate a new code and this is your second password (no spaces).
or the Second password is the code showing on your hardware token (see below for additional information on hardware tokens)
Changing your Duo Settings and Devices - including adding a new or additional device
NOTE: If you need to replace your old device and you do not have access to it, you will need to submit a Support Request to have helpdesk remove your old device from the server. Please include your RIN for identity verification.
1. Verify your computer is not currently connected to the VPN or on the RPI network either hard wire or WiFi. Then in a web browser go to:
https://apex.cct.rpi.edu/apex/f?p=119
2. At the login screen login with your RCS userid and password
[login screen prompting for RCSid and password - click Login]
3. IF you get prompted with an automatic Duo Push, click on Cancel in the bottom right. Then select either Add a new device or My Settings & Devices depending on whether you wish to add or modify a device. You can also remove a device IF you still have access to it. Do not choose an authentication method on this page.
4. Once you click the appropriate link, need to confirm it is really you. Select either Send Me a Push or Call Me -- which will happen on your current device.
5. Follow prompts to modify or add new device.
If you need assistance with this please submit a Support Request
How to obtain and use a Hardware token to login with Multi-Factor authentication
- Hardware tokens we are able to support are available to purchase at the Rensselaer Collegiate Bookstore for the price of $24.95.
- Once you obtain a hardware token from the bookstore, please submit a Support Request providing your RIN for identity verification and the serial number that is on the back of the token.
- Once we assign your hardware token to your account we will let you know it is ready.
- When you are presented with a login requiring multi-factor authentication:
- Userid: RCSuserid
- Password: RCS password
- Second password – hit the button on the token and enter the 6 digits, no spaces as your second password
OR a notification to choose click Enter a Passcode - hit the button on the token and enter the 6 digits, no spaces as your second password
References
Duo Mobile Privacy Information:
https://help.duo.com/s/article/4683?language=en_US
If you do not have the VPN installed:
https://itssc.rpi.edu/hc/en-us/articles/360008783172-VPN-Installation-and-Connection
How to login to the VPN using Duo Mobile - Multi-Factor Authentication
Additional references on Cisco Duo:
https://help.duo.com/s/article/2094?language=en_US
Comments
0 comments
Article is closed for comments.