2 Factor what?
2FA, or Two-Factor Authentication, is a method that combines two authentication methods when logging into an application. A username and password is the simple method that you are familiar with. The second method is a code generated by a so-called authenticator app. This gives you two methods that are required to log into our systems: Two-Factor Authentication ;).
Most people already have an authenticator app on their smartphone. After all, many systems today require or strongly recommend 2FA, such as Facebook. Installing 2FA in our control panel is very easy. You can find more information about the specific application in our Level27 Academy. But first, let's take a closer look at the advantages of 2FA.
I don't want 2FA, it's annoying!
Yes, it is a bit annoying. Because you have probably already saved your password in your browser and have immediate access to our control panel. Now, from time to time, we ask for an extra code, for which you have to take your smartphone, read the code, and type it into your browser. Really annoying!
But let's take a moment to consider the risks that arise when you don't use 2FA:
- Hacking: if you only use a password, your account is more vulnerable to hacking. If someone manages to obtain your password, by whatever means, they can immediately accessyour account in our systems.
- Identity theft: without 2FA, someone with malicious intent can more easily impersonate you and gain access to your personal data and sensitive information.
- Reputational damage and financial losses: if someone impersonates you and performs all kinds of actions in your name, others may start to question your behavior. Without you even knowing it!
- Specific to Level27: ultimately, someone with your account can access all your data in the Level27 control panel and can modify or even shut down your servers at will.
It's a real pain, but 2FA stops all that!
2FA at Level27
We have done everything possible to maintain the highest level of safety while minimizing inconvenience for you. Here is what we are doing:
- Your device can be trusted for a while based on certificates and secure tokens. This means you don't have to perform 2FA verification every time you log in.
- The 2FA procedure has been made as simple as possible, so anyone can do it.
- At present, 2FA is not mandatory, but strongly recommended. As an administrator for your organization, you can enable 2FA for all your colleagues in the control panel. Once you do so, it will become mandatory.
- Finally, as an administrator, you have the option to immediately expire all accounts in your organization. At that point, everyone will have to immediately re-enter their 2FA verification. This is very useful in certain cases, for example if you know that a PC in your organization has been hacked.



