Security Policies - Configure MFA | Mobile Guide - Zoho One

Configure MFA

Multi-factor authentication (MFA) adds an additional layer of security to your organization. When MFA is enabled, your users will have to verify their identity not only with their password, but also with a second factor. The second factor could be an authenticator app like  Zoho OneAuth, a hardware security key (YubiKey), or an SMS-based OTP.

When MFA is enabled for a user, they will not be able to sign in without setting up their preferred authentication mode and verifying themself. You can configure the list of MFA modes your users can choose from.

Prerequisites

  1. Organization Owner
  2. Organization Admin
iOS
  1. Open the Zoho One Admin app on your mobile device.
  2. Tap in the bottom right, then tap Security Policies.
  3. Tap the required security policy, then tap Multi-Factor Authentication.
  4. If your enabling MFA for the first time, tap the toggle bar to enable it. Select the required MFA modes.
  5. If the MFA is already applied, proceed to select the required MFA modes.
  6. Set MFA Lifetime and enable backup recovery codes if needed. MFA Lifetime refers to the duration for which users will not be enforced to use MFA after signing in from a trusted browser.
  7. Tap Save.

To disable an MFA policy

  1. Open the Zoho One Admin app on your mobile device.
  2. Tap in the bottom right, then tap Security Policies.
  3. Tap the required security policy, then tap Multi-Factor Authentication.
  4. Tap the toggle bar to disable MFA.
  5. Tap Update.

Android
  1. Open the Zoho One Admin app on your mobile device.
  2. Tap in the bottom-right corner, then tap Security Policies.
  3. Tap on the required security policy, then check Multi-factor Authentication.
    1. If you are enabling MFA for the first time for that policy, tap the toggle bar to enable it. Select the required MFA modes.
    2. If MFA is already applied for that policy, then proceed to select the required MFA modes.
  4. Set MFA lifetime and enable the option for users to use backup recovery codes if needed. MFA Lifetime refers to the duration for which users will not be enforced to use MFA after signing in from a trusted browser.
  5. Tap in the top-right corner.

To disable an MFA policy

  1. Open the Zoho One Admin app on your mobile device.
  2. Tap in the bottom-right corner, then tap Security Policies.
  3. Tap on the required security policy, then uncheck Multi-factor Authentication.
  4. Enter your password, then tap Disable