Multifactor Authentication (MFA)
Demonstrating our committment to providing the highest level of security for the e-OSCAR application
Announcement of our Future Requirement to Enable Multi-Factor Authentication (MFA)
At Online Data Exchange, we take the protection of data within the e-OSCAR System very seriously, and understand that the confidentiality, integrity and availability of data is critical.
We are announcing that no later than September 30, 2024, we will require all e-OSCAR Registrants to enable MFA in order to access the e-OSCAR System. MFA will be available at no cost.
WHAT IS MFA AND WHY IS IT GOING TO BE REQUIRED?
MFA is a secure authentication method that requires Operator to prove their identity by supplying two or more pieces of evidence (or "factors") when they log in. One factor is something the Operator knows, such as their username and password. Other factors are verification methods that the user has in their posession, such as a security key, passcode, or authentication application. By tying Operator access to multiple types of factors, MFA makes it much more difficult for common threats such as phishing attacks and account takeovers to succeed.
The global threat landscape is constantly evolving, and the types of attacks that can cripple a business and exploit consumers are on the rise. As businesses transition to support remote work environments, it’s more important than ever to implement stronger security measures. MFA is one of the easiest, most effective tools for enhancing login security, and safeguarding your business and data against security threats.
WHAT IS THE MFA REQUIREMENT?
Beginning no later than September 30, 2024, all Operators who log into the e-OSCAR System must use MFA.
WHAT MFA OPTIONS WILL BE OFFERED?
We will offer two separate options of MFA: email delivery of a one-time password, a mobile-device-based authencicator application and a web-based authenticator application. We will not be offering MFA via SMS-delivery of a one-time passcode.
Each e-OSCAR Registrant will be required to select one method of MFA that will be applicable to their entire registration.
WHAT WILL THE ROLLOUT OF MFA LOOK LIKE?
Beginning June 1, 2024 we will begin the voluntary deployment of MFA via email delivery of a one-time password.
Automatic deployment of MFA will begin for all e-OSCAR Registrants in mid-July and will continue through the beginning of September. Your company will receive notice from us in advance of your automatic deployment.
WHAT DO I NEED TO DO TO BE READY TO DEPLOY MFA DURING THE VOLUNTARY PERIOD?
We're committed to helping you succeed with deployment of MFA. There are a number of very important steps that you must take to ensure successful implementation of MFA. Check out the Multifactor Authentication Quick Guide for Admins to learn what you need to do and how to request voluntary deployment of MFA.
Ensure Organizational Readiness
In order to determine if your company is ready to deploy MFA using this approach, you will need to complete the following steps:
​
-
VALIDATE that all operators in your e-OSCAR organization have an email address in their Operator Profile
-
CONFIRM that every email address is unique. You cannot have multiple operator IDs with identical email addresses
-
CORRECT any duplication of email addresses, often achieved through consolidation of multiple Operator IDs for the same user
Okta Verify for Windows
Using Okta Verify for Windows requires the downloading and installation of a desktop-based software program to each operator's computer. Administrative rights to each computer are required to successfully download and install this software. You should coordinate this with your internal IT partners.
​
NOTE: Only download this software if your company intends to use the Windows desktop application for e-OSCAR MFA. If you are using email-based MFA or the mobile app version of MFA, you do not need to download this software.
You can find official Okta information regarding the Windows version of Okta Verify at the following links:
​
​
​
​
​
​
​
​
​
NOTE: If you intend to use Okta Verify for Wiindows, you will need to:
1. Specifically advise us that you intend to use Okta Verify for Windows
2. Have an individual with system administrative rights download the Okta Verify application software (link above)
2. Schedule a work session so we can walk you through correct installation and configuration. Send email to tedwards@newmgtservices.com to begin this process.
Requesting early enrollment in MFA
If you are ready to deploy MFA, once you have confirmed your organization's readiness to enable MFA, please submit a Multifactor Authentication Enablement ticket request via the e-OSCAR Support ticketing portal.
​
This request must be submitted by your Registration Administrator or Operator Administrator.
​
NOTE: If you have never submitted a support ticket through the e-OSCAR Support ticketing portal, you will need to create a new user ID by entering your email address and then activating your access via email.
Okta Verify for Mobile
Using Okta Verify for Mobiile requires the downloading and installation of a software program to each operator's personal mobile device.
​
Okta Verify for mobile devices can be downloaded from the Apple Store and Google App Store.