Modify Temporary Access Code settings
Use this procedure to update Temporary Access Code settings in IDaaS.
If a Temporary Access Code is expired or near expiry, you can adjust settings so the user can continue to authenticate while they restore access to a primary authenticator.
Any changes made to temporary access codes take effect the next time they are used for authentication.
tip
You can click Undo to reverse any modified settings that have not been saved. Clicking Undo does not revert these settings to their default value.
Modify Temporary Access Code settings
- Click > Policies > Authenticators. The Authenticators page appears.
- Select Temporary Access Code. The Temporary Access Code settings appear.
- Set Length to the number of characters or digits that can be included in a user's Temporary Access Code.
- Set Alphabet to the characters that can be included in each user's Temporary Access Code. Alphabet characters must be unique and cannot contain white space.
- Select Case Sensitive to enforce letter case in the configured alphabet. If Case Sensitive is not selected, use either uppercase or lowercase letters in the alphabet, but not both.
- Select Replace Similar Characters if you want to replace similar looking characters in a response. For example, replace O with 0 and I with 1.
- Set Maximum Uses to the number of times the Temporary Access Code can be used for an authentication challenge. Setting this field to
0allows unlimited uses. - Set Lifetime (secs.) to the amount of time in seconds before a Temporary Access Code expires.
- If a warning appears, select Confirm Changes.
- Select Enable Admin Contact to allow users to see admin contact information on the authentication screen in order to request a temporary access code.
- If applicable, enter the Admin Contact information that appears on the authentication screen. The contact can be an email or a phone number.
- Click Save.
Validate your changes
After saving Temporary Access Code settings, validate the result.
- Confirm updated policy values remain selected after refresh.
- Confirm a test Temporary Access Code follows the configured length and alphabet rules.
- Confirm code usage and expiry behavior match Maximum Uses and Lifetime (secs.) settings.
- If enabled, confirm Admin Contact appears on the authentication screen.