How do I Enable Multi-Factor Authentication (MFA) ?
Multi-Factor Authentication (MFA) adds an extra layer of security to your account by requiring you to verify your identity in addition to entering your password.
During the current MFA rollout, admins can enable MFA for their account when they are ready. Once MFA is enabled on an NXT account, it is automatically applied to all users on the account.
Important: MFA works differently depending on your account type. On NXT accounts, enabling MFA applies it to the admin and all users. On Classic accounts, MFA applies only to the admin.
Before You Begin
Make sure you have access to the email address associated with your account. You will receive a 6-digit verification code by email during the MFA setup process.
You will also be asked to create a new password that meets the updated password requirements.
Enable MFA
Step 1: Select "Enable Now"
When you sign in as an account admin, you may see a security prompt introducing MFA and the updated password policy.
Select Enable now to begin setting up MFA.
If you choose Ask me later, you can enable MFA at a later time from:
Settings → Password Management → Enable MFA
The MFA prompt will continue to appear until MFA is enabled or mandatory enforcement begins.
Step 2: Verify Your Email
A 6-digit verification code will be sent to the email address associated with your account.
Enter the code when prompted.
If you don't receive the code or the code expires, select Didn't receive a code? to request a new verification code.
Step 3: Update Your Password
After your email is verified, you'll be prompted to update your password.
Enter:
- Your current password
- A new password that meets the updated password requirements
- Your new password again to confirm it
Select the option to save your new password when finished.
Step 4: Sign In Again
After your password is updated, you will be signed out of your account.
Sign in again using your new password.
Step 5: Choose Whether to Trust Your Device
After signing in, you'll be asked whether you want to remember your device as a trusted device.
Selecting Remember allows future sign-ins from that device to skip the verification-code step.
For security, only select Remember on a personal or company-managed device. Do not use this option on shared or public computers.
If you select Not now, you'll be asked to verify the device again the next time you sign in.
Once you've made your selection, MFA setup is complete.
What Happens to Other Users on an NXT Account?When an admin enables MFA on an NXT account, MFA is automatically enforced for every user on that account.
Admins do not need to enable MFA individually for each user.
Users With an Active Session
Users who are currently signed in will be automatically signed out.
The Next Time a User Signs In
Users will see a notification explaining that MFA has been enabled for their account and that they must complete setup before continuing.
Users will then complete the MFA setup process:
- Enter the 6-digit email verification code.
- Create a new password that meets the updated requirements.
- Sign in again with the new password.
- Choose whether to remember the device as trusted.
After completing these steps, the user can access the account normally.
NXT vs. Classic AccountsMFA behavior depends on your account type.
| Account Type | Who Is Required to Set Up MFA? |
|---|---|
| NXT | The admin and all users |
| Classic | The admin only |
On Classic accounts, enabling MFA does not require other users on the account to set up MFA.
Frequently Asked Questions
Is MFA mandatory right now?
No. During the current rollout, MFA is available as an opt-in security feature. An admin can enable it for the account before mandatory enforcement begins.
Can I enable MFA if I previously selected "Ask me later"?
Yes. Go to:
Settings → Password Management
From there, select Enable MFA to begin the setup process.
What happens if a user is signed in when MFA is enabled?
The user will be automatically signed out. The next time they sign in, they will be prompted to complete MFA setup.
Do I need to set up MFA separately for every user?
For NXT accounts, no. Once the admin enables MFA, it is automatically enforced for all users on the account.
For Classic accounts, MFA applies only to the admin during this rollout.
What should I do if I don't receive my verification code?
Select Didn't receive a code? on the verification screen to request a new code.
Should I choose "Remember" when setting up a trusted device?
Only use Remember on a personal or company-managed device. Avoid using it on shared or public computers.
Can I disable MFA after enabling it?
The current MFA Release 1 documentation does not provide instructions for disabling MFA. If you need assistance with this, please contact Support.
Quick Setup SummaryFor account admins:
- Sign in and select Enable now, or go to Settings → Password Management.
- Enter the 6-digit verification code sent to your email.
- Update your password.
- Sign in again using your new password.
- Choose whether to trust your device.
- MFA setup is complete.
For NXT accounts, MFA will then be enforced for all users, who will complete the same verification and setup process the next time they sign in.