Authentication Profiles - Login with Two-Step Authentication

This article contains information on Mimecast's Two-Step Authentication process, including verification code delivery methods (email, SMS, third-party apps), registration steps, handling lost devices, and ensuring secure access to the Mimecast Administration Console.

If Two-Step Authentication is enabled, logging in to Mimecast requires an additional step. You'll enter your email address, choose between a Mimecast cloud or domain password, and enter your password as normal. However, once that is completed successfully, you'll be asked for a verification code.

Verification Code Delivery Method

Your IT department will decide how you receive this verification code, which can be via:

  • Email.
  • SMS.
  • Third Party Application (e.g. Google Authenticator).

Email

If you've configured to receive the verification code via Email, you'll see a screen like the one below, once you have successfully entered your password:

Your email address is displayed on the screen as the delivery destination.

  1. Enter the Verification Code you received by email.
  2. Click on the Verify button.
Two Factor code via email

SMS

Mobile Number Registered

If you've configured to receive the verification code via SMS and your mobile number is already registered, you will see a screen below once you have successfully entered your password:

Two Factor code sent via SMS

Your email address is displayed on the screen as the delivery destination.

  1. Enter the Verification Code you receive on your mobile device.
  2. Click on the Verify button.

Mobile Number Not Registered

If you're configured to receive the verification code via SMS and your mobile number is not yet registered, you can self-register during the two-step Authentication login process. You will see a screen as below after you have successfully entered your password:

Set up 2-Step Authentication
  1. Select your Country Code by clicking the down arrow next to the flag icon. The default value is taken from your browser's location.
  2. Enter your Mobile Number with no leading zeros.
  3. Click on the Next button.
  4. Enter the Verification Code you receive on your mobile device.
  5. Click on the Verify button.

Third-Party Application

If you're configured to authenticate via a Third Party Application, the next time you log in, you'll have to register your application. Registration is the process of linking the application on your cell phone with Mimecast so that the application generates verification codes we can use to verify your identity.

You can register the application, by using the following steps:

  1. Download an Authenticator Application (e.g. Google Authenticator) from your app store.

    Ask your IT department for guidance if you're unsure.

  2. To display a six-digit verification code, either:
    • Scan the QR Code displayed using the authenticator application.
    • Press the Enter key.
Register for 2-Step Authentication
  1. Log in using your User ID and Password.
  2. Click on the Next button.
  3. Enter the Verification Code.
  4. Click on the login button.

    Keep your Authenticator Application on your phone, as you'll need it each time you log in. If you can't log in, contact your IT department for assistance.

Successful registration 

When your second factor has been successfully registered, you will receive a confirmation email.

Two-Factor Authentication configured successfully

Lost / Stolen Devices

If the device you've used to set up an Authenticator Application with Mimecast is lost or stolen, contact your IT department as soon as possible. They'll be able to force a re-registration for you.

See Also...

Was this article helpful?
1 out of 4 found this helpful

Comments

0 comments

Please sign in to leave a comment.