Authentication via Bravura One app
Organizations often deploy Bravura Privilege on their private, corporate network. Using their work PCs, users can access the web portal of any of these products either through the physical corporate network (Ethernet or WiFi) or using a VPN.
Users may wish to access these same Bravura Security products, which are not normally reachable from the public Internet, using a personal device such as a smart phone or tablet.
The Bravura One app allows personal mobile devices to access the Bravura Security Identity and Access Management (IAM) system deployed on the corporate private network.
Connectivity between the phone or tablet, attached to the public Internet, and the on-premise Bravura Security software, is mediated by a proxy server, deployed either on-premises or in the cloud.
See the Mobile access for more information about Bravura One and the Bravura One app.
Configure two-factor authentication via Bravura One app
The following steps demonstrate how to allow for users to authenticate using a QR Code that is provided by this module for two-factor authentication. The QR Code must be scanned from the Bravura One app that is registered for Bravura One for the user.
Click Home.
Click Manage components.
Search for "2factor".
Select
Scenario.hid_authchain_2factor
.Click Install component(s) in the details panel.
Wait for the install to complete.
The component is installing all of its own dependencies and also the dependencies of
Functional.hid_authchain_2factor
.When complete, the DETAILS panel will show:
Installed: True
Enabled: True
On the desktop:
Access the log-in page.
Enter a user name and click Continue.
A QR code appears with a time limit of 60 seconds.
On your mobile device:
Open the Bravura One app .
Tap the rocket icon.
Tap Computer Login.
Tap Authenticate User.
Aim the device’s camera at the unobstructed QR code being displayed on the desktop monitor.
Once the code has been recognized, the Choose an authentication method page will be displayed on the desktop.
Select the desired method. For example, Use password or Answer security questions.
Complete the authentication using the second method and click Log in.