All Collections
Edgefolio for Fund Managers
Setting up your FundPortal
How to use or enforce Multi Factor Authentication
How to use or enforce Multi Factor Authentication

How to setup and use MFA (Multi Factor Authentication) to protect your account, and how to enforce MFA on some users of your FundPortal.

Bastien Bourdon avatar
Written by Bastien Bourdon
Updated over a week ago

MFA is a security feature that adds (at least) one second factor to a user account authentication method, in addition to the password, such as adding a phone number to receive SMS codes.

Any portal user (including your regular contacts and prospects) can now enable and setup MFA on their account, self-service. They can do this by visiting the new MFA menu under their user Account Settings.

There are three methods available:

  • Token generator: supports any standard smartphone app (such as Google Authenticator or Microsoft Authenticator app) as well as some password managers such as 1Password.

  • SMS: adding a phone number to receive codes by SMS

  • Voice call: adding a phone number to receive phone calls spelling out a code

In addition, it is possible to add backup phone numbers and generate unique backup tokens to store in a safe place.

FundPortal MFA security policy setting

FundPortal Owners have access to a new security setting under the Portal Security menu for the portal, defining a policy enforcing MFA on certain users of the portal.

The setting allows defining a Privilege Level for which all portal users (your colleagues or contacts) with that Privilege Level or above will be forced to setup and use MFA to access the content of your FundPortal.

For example, by setting this policy to "Due Diligence", all "Due Diligence", "Board Level" and "Admin Level" users will be forced to use MFA to access any page of your FundPortal.

You can change this setting at any time, and it is disabled by default. When disabled, users can still enable and use MFA on their own if they wish.

Did this answer your question?