Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

User account compromises typically involve someone re-using their password on an external site or mistakenly entering in a password to a familiar-looking, fraudulent site.  Multi-factor authentication (MFA) greatly reduces the llikelihood that an unauthorized user can gain access to your account – even if someone happens to get your password, it is unlikely they will also have your phone or fingerprint.

Whitman has partnered with Duo Security to enable an additional layer of security when logging in to various Whitman-manage managed services.

Multi-factor authentication (MFA) is the process of identifying users by validating two or more “factors,” or characteristics that are unique to that user.

...

    1. something you know  (a password)
    2. something you have  (a smartphone or a token)
    3. something you are  (a fingerprint or face scan)

Using more than one factor greatly decreases the likelihood that an unauthorized user can gain access to your account – even if someone happens to get your password, it is unlikely they will also have your phone or fingerprint.

The college is offering encouraging (sometimes requiring) MFA for employee all Whitman accounts – pilot groups are coming online during various campus groups have been successfully using this process since the 2019-2020 academic year.

More information can be found at the Multi-Factor FAQ page.

The WCTS Help Desk or the Information Security Office can answer any questions you may have.


Current List of Protected Services:

Once your account has been enrolled in the program, the following services will ask for a second factor:

  1. MyWhitman (and anywhere you see the MyWhitman login flow)**
    1. Whitmail (Google Mail)
    2. Canvas
    3. CLEo
    4. Web Help Desk
    5. PathwaysU
    6. TerraDotta
    7. WhitLife (Presence)
  • PeopleAdmin/SimpleHire
  • Business-Secure terminal server
      1. BambooHR
      2. Sharefile
    1. Millennium terminal server
    2. Blackboard terminal server
    3. Whitman VPN services
    4. various IT-related servers and applications (system administration roles)

    ** web-based services allow you to 'remember' a device for 12 hours by selecting the option during verification


    Filter by label (Content by label)
    showLabelsfalse
    max5
    spacesKB
    showSpacefalse
    sortmodified
    reversetrue
    typepage
    cqllabel in ("password","security","login") and type = "page" and space = "KB"
    labelssecurity password login

    ...

    Page Properties
    hiddentrue


    Related issues