how to set up for one-time password...

8
1 How to set up for one-time password (TOTP) TUT Information and Media Center Toyohashi University of Technology has introduced two-factor authentication using a time-based one-time password to securely identify users and prevent unauthorized use when using important systems (after this referred to as TOTP authentication). In this authentication, strong authentication is realized by using a one-time password that can only be generated with the smartphone owned by the user, in addition to the username and password that the user remembers. Therefore, you need to install an application to use TOTP authentication on your smartphone and register with our user authentication system. This document describes how to register a one-time password application with the authentication system and the TOTP authentication procedure. Some systems switch authentication methods based on the type of network from which a user is accessing (on-campus or off-campus). For example, an access from an on-campus network requires only a username and password to authenticate, while an access from an off-campus network requires TOTP authentication in addition. In this judgment, the following networks are classified as "outside of our university". Connection from off campus by VPN Wired guest network (e.g., The Village Tempaku network) Wireless network SSID: eduroam Wireless network SSID: tutguest How to set up for install app of one-time password(TOTP). 1. Install a one-time password app on your smart phone. Some of the most popular one-time password applications are: Google Authenticator iOS: https://apps.apple.com/jp/app/google-authenticator/id388497605 Android: https://play.google.com/store/apps/details?id=com.google.android.apps.authenticator2 Microsoft Authenticator iOS: https://apps.apple.com/jp/app/microsoft-authenticator/id983156458 Android: https://play.google.com/store/apps/details?id=com.azure.authenticator

Upload: others

Post on 13-Apr-2020

9 views

Category:

Documents


0 download

TRANSCRIPT

1

How to set up for one-time password (TOTP)

TUT Information and Media Center

Toyohashi University of Technology has introduced two-factor authentication using a time-based

one-time password to securely identify users and prevent unauthorized use when using important

systems (after this referred to as TOTP authentication). In this authentication, strong

authentication is realized by using a one-time password that can only be generated with the

smartphone owned by the user, in addition to the username and password that the user remembers.

Therefore, you need to install an application to use TOTP authentication on your smartphone and

register with our user authentication system. This document describes how to register a one-time

password application with the authentication system and the TOTP authentication procedure.

Some systems switch authentication methods based on the type of network from which a user is

accessing (on-campus or off-campus). For example, an access from an on-campus network requires

only a username and password to authenticate, while an access from an off-campus network requires

TOTP authentication in addition. In this judgment, the following networks are classified as "outside

of our university".

Connection from off campus by VPN

Wired guest network (e.g., The Village Tempaku network)

Wireless network SSID: eduroam

Wireless network SSID: tutguest

How to set up for install app of one-time password(TOTP).

1. Install a one-time password app on your smart phone. Some of the most popular one-time

password applications are:

■Google Authenticator

iOS: https://apps.apple.com/jp/app/google-authenticator/id388497605

Android: https://play.google.com/store/apps/details?id=com.google.android.apps.authenticator2

■Microsoft Authenticator

iOS: https://apps.apple.com/jp/app/microsoft-authenticator/id983156458

Android: https://play.google.com/store/apps/details?id=com.azure.authenticator

2

2. Open the "User Profile Maintenance" page in your PC browser. To display the "User Profile

Maintenance" page, click "Change Password" on the Quick Menu of the Information and Media

Center Home page (https://imc.tut.ac.jp/).

3. Click "Register the one time password generator" on the "User Profile Maintenance" page.

3. When the QR code is displayed on the browser, start the one-time password application

installed on your smartphone and scan the displayed QR code.

Even if you have not registered a one-time password application, the message "Your

smartphone is already registered with … " may be displayed. In this case, click the "reissue"

button.

3

■ The procedure for Google Authenticator

① Tap「設定を開始」

② Tap「バーコードをスキャン」

4

③ Scan the QR code displayed on your browser.

■ The procedure for Microsoft Authenticator

① Tap 「アカウントを追加」

When the QR code is projected in

the green frame, it is

automatically scanned and a 6-

digit number is displayed as

shown below

5

② When asked "What kind of account do you want to add?"(「どのような種類のアカウン

トを追加しますか?」), select "Work or school account and others"

③ The “Scan QR Code” screen will appear. Scan the QR code displayed on your browser.

④ When scanning is successful, a 6-digit number will be displayed. Enter the number in the

entry field of the browser and click the “Register” button.

⑤ Registration is complete when the message "Processing completed successfully." Is

displayed on the browser. Click the "OK" button.

When the QR code is projected in

the blue frame, it is automatically

scanned and a 6-digit number is

displayed as shown below.

Enter the 6-digit

6

7

Authentication Procedure with TOTP

1. When you access a page that requires TOTP authentication, you will be redirected to the

“Password Authentication” page. Enter your username and password, and click the "Login"

button.

2. You will be redirected to the "Client Certificate Authentication" page. Click the "Log in using

one-time password app" button.

Your account

Password

8

3. You will be redirected to the "TOTP authentication" page. Start the one-time password

application, enter the displayed 6-digit number on the application, and click the "Login" button.

※ The one-time password has a lifetime (Up to 30 seconds). After entering, please make

sure to press the login button within the valid period.

※ If you have not registered a one-time password application, you can register a one-time

password application from "TOTP Registration" link on this page.

Enter the 6 digit, displayed one time password