Open account security
Sign in and open the account or production-control area where MFA setup is presented.
Register the authenticator
Scan the setup code using the authenticator application and store any recovery information securely.
Verify a current code
Enter the time-based verification code to complete enrollment and raise the session assurance level.
Test privileged access
Open a protected administrative workflow and confirm that the application recognizes the verified session.
Document recovery ownership
Define who can assist when an administrator loses access. Do not store recovery information in a shared public document.
Validation and responsibility
- HisabERP requires stronger authentication for protected administrative mutations.
- MFA cannot protect a session if the user approves a fraudulent prompt or exposes recovery material.