Multi Factor Authentication (MFA) Frequently Asked Questions

From UCSC Genomics Institute Computing Infrastructure Information

Revision as of 18:15, 10 February 2025 by Weiler (talk | contribs) (Created page with "__TOC__ == Why Do We Need MFA To Login To The VPN? == We need to comply with '''NIST 800-171''' Security Standards in order to store data downloaded from NIH, according to new regulations. '''NIST 800-171''' controls require we enable MFA for VPN logins to harden our security posture. MFA is a good idea, security-wise, anyway though! Even though it can be somewhat annoying. == What Kind of MFA System Are We Using here at the GI? == We are using '''Duo Mobile''' as...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

Why Do We Need MFA To Login To The VPN?

We need to comply with NIST 800-171 Security Standards in order to store data downloaded from NIH, according to new regulations. NIST 800-171 controls require we enable MFA for VPN logins to harden our security posture. MFA is a good idea, security-wise, anyway though! Even though it can be somewhat annoying.

What Kind of MFA System Are We Using here at the GI?

We are using Duo Mobile as our MFA authentication mechanism. You probably are already using it to authenticate to CruzID related systems.

Do I need a CruzID before I can use Duo Mobile at the Genomics Institute?

Yes, you do. If you do not yet have a CruzID, please ask your sponsor or PI to get you a CruzID set up. You will need this active before you can authenticate to the Genomics Institute VPN.

Duo is Working To Login to the GI VPN, But It Is Calling My Phone Instead of Sending Me a Push! What Can I Do?

If you previously set up Duo to send you a text with a code, or to call you to authenticate, and you would prefer to just receive a Push Notification instead,