Skip to main content
Role AvailabilityRead-OnlyInvestigatorAnalystManager
To protect your USM Anywhere account, enable . MFA adds extra security because it requires multiple factors to a user, making it more difficult for an unauthorized person to gain access to the account. In USM Anywhere, MFA provides a layered defense of two independent credentials: what you know (your username and password) and what you have (security token on your personal device). To use multifactor authentication in USM Anywhere, you must have a mobile device that supports an Authenticator app. LevelBlue recommends the Google Authenticator app, which is available for iOS and Android devices. Google Authenticator implements two-step verification services using the Time-Based One-Time Password (TOTP) algorithm and HMAC-Based One-Time Password (HOTP) algorithm for authentication.
Before you set up MFA for your account, you must install the Authenticator app on your device.To configure MFA for your account
  1. In the lower-left corner of the USM Anywhere web user interface (UI), click the icon, and then select Profile Settings.
  2. Select Enable Multi-Factor Authentication, and then click Save.
  3. Click the icon, and then select Logout.
  4. Click Login.
  5. On the login page, enter your username and password, and then click Login. USM Anywhere displays the Multi-factor authentication page to prompt you to complete your MFA configuration. The displayed page provides a unique QR code that is used by the Authenticator app to retrieve a verification code.
  6. Open the Authenticator app on your device.
  7. Scan the QR code using the Authenticator app.
  8. Enter the one-time passcode in the text box of the USM Anywhere, and then click Verify Code and Login.
Users in a manager role can require non-admin users to log in using MFA. If a manager user enables this setting and you do not already have MFA configured, you will be prompted to set up MFA upon your next log in.Before you set up MFA for your account, you must install the Authenticator app on your device.To activate required MFA
  1. On the login page, enter your username and password, and then click Login. USM Anywhere displays the Multi-factor authentication page to prompt you to complete your MFA configuration. The displayed page provides a unique QR code that is used by the Authenticator app to retrieve a verification code.
  2. Open the Authenticator app on your device.
  3. Scan the QR code using the Authenticator app.
  4. Enter the one-time passcode in the text box of the USM Anywhere, and then click Verify Code and Login.
In the event that you lose or change your mobile device, there is a function to reset the MFA for your user account. Another user in your USM Anywhere environment can edit your user account to reset the QR code used to pair the device with your account.To change your authentication device
  1. Go to Settings > Users.
  2. Click the icon of the user for whom you want to reset the MFA account. Your role must be Manager.
  3. Click Reset Multi-Factor Authentication.
    A message displays at the top of the page to inform you about the success of the MFA reset request.
  4. Click Cancel. After the reset, USM Anywhere displays the Multi-factor authentication page at your next . Follow the same steps to set up the authentication with the new device.
To view other related training videos, click here.
I