How does CaseGuide implement MFA?

CaseGuide uses Short Message Service (SMS) aka text messaging to deliver a unique, randomly-generated, six-digit, numeric code. This code is texted to the phone number listed for the user attempting to log in. An entry field is provided to the user to enter the code and, if matching, complete the authentication process. 

To facilitate logins, a "token lifetime" can be set that allows successive logins from the same browser so that the second factor is not requested until the end of the time period. Or, the second factor may be required at every login.

During new account setup, CaseGuide's Support Team will enable MFA with a "token lifetime" of 30 days unless another setting is requested by the Organization Owner.

Note that browser cookies mush be enabled for the token period to work.

 


Will CaseGuide offer other MFA options in the future?

Yes, while CaseGuide currently only offers SMS as the option for second factor, additional factors are on our development roadmap. The next second factor option will be an authenticator app. Future authentication options, including single-sign on (SSO) options like SAML and OAUTH2, are also being considered.