Tired of changing your password? Never do it again with Duo

Written by 

Ever used an ATM? Then you’ve used two-factor authentication. Sliding your debit card into the machine provides the first factor: using something you have. Typing in your PIN provides the second: using something you know.

UAB’s two-factor authentication process (2FA) is just as simple. By entering your BlazerID and password — something you know — and verifying the action in the Duo Mobile app on your smartphone or tablet — something you have — you can safely sign into UAB sites and applications without compromising your sensitive information. Plus, unless your account is compromised, you’ll never be prompted to change your password again.

UAB students, faculty and staff are now required to use Duo 2-factor authentication. Students will be prompted to enroll once they have registered for classes. Faculty and staff will be prompted to sign up during a phased-in enrollment process throughout the spring and summer.

Follow these 5 simple steps to sign up for 2FA.

1. Sign up on a computer.

1. Sign up on a computer.

Be sure your second device — your most-used phone or a tablet — is handy, then visit the sign-up page.
2. Use that second device to activate your 2FA account.

2. Use that second device to activate your 2FA account.

Download the Duo app on your iPhone or Android smartphone or iPad or Android tablet. You also can use any phone capable of receiving a call or mobile phones that can receive SMS texts from Duo. Check out the enrollment guides for each type of device in the 2FA FAQs.
3. Log in to a UAB site or application from your computer.

3. Log in to a UAB site or application from your computer.

Accessing a site such as Box, Oracle Self-Service or Outlook online will prompt you to log in with your BlazerID and password. When prompted to authenticate, choose “Send Me a Push” or “Enter a Passcode” — these two methods use the app, so they are recommended by UAB IT.

Use your second device to respond to the push notification or passcode request.

Once a device is linked to your Duo account, that device can use multiple methods to help you log in to a site that requires Duo 2FA.

Duo authentication is not required to log in to Canvas or Kronos.
4. Check “Remember Me” to exempt yourself from 2FA for 30 days.

4. Check “Remember Me” to exempt yourself from 2FA for 30 days.

It’s not necessary to verify your identity with the Duo app each time you log in to a UAB site or application. Checking the “Remember Me” option means that you will only need to verify your identity about once per month.

Duo is device-specific and browser-specific. That means you need to check the “Remember me for 30 days” box for each device and/or browser you use.
5. Never change your password.

5. Never change your password.

Using 2FA and Duo means you can skip those regular password changes — unless your account is compromised. Learn about phishing scams to keep that from happening.

Still have questions? Check the extensive 2FA FAQs available online for questions about Duo and lost or stolen devices, troubleshooting inquiries and more.

 

 
]