risk-based authentication (rba) self-service user … authentication (rba) self-service user guide...

Post on 06-Jul-2018

291 Views

Category:

Documents

0 Downloads

Preview:

Click to see full reader

TRANSCRIPT

> www.dpw.state.pa.us >

www.dhs.state.pa.us

1

Risk-Based Authentication (RBA)

Self-Service

User Guide

> www.dpw.state.pa.us >

www.dhs.state.pa.us

2

• Overview of Risk-Based Authentication (RBA)

• Changing Your Device

• Resetting MobileOTP PIN

• Appendix

• Support

Table of Contents

> www.dpw.state.pa.us >

www.dhs.state.pa.us

3

About Risk-Based Authentication (RBA)

What is Risk Based Authentication?

Why is the change needed?

How does this affect my login process and how long will it take to complete?

RBA is an advanced security feature to protect the identity of users. An additional layer of security has been added through the use of a RBA solution to enhance secure access mechanisms to users’ personal information.

The Department of Human Services has taken measures to protect users’ personal information. RBA has been implemented to ensure the identity of users are protected on state agency sites.

You are required to download the CA MobileOTP Application to generate a One Time Password (OTP) every time you want to connect to the VPN. The Application also requires you to set a security PIN to access the OTP. You will set-up 3 security questions with answers in case you forget your PIN. This process should only take few minutes to complete (after 1st log in).

> www.dpw.state.pa.us >

www.dhs.state.pa.us

4

Changing the Device of MobileOTP Application

> www.dpw.state.pa.us >

www.dhs.state.pa.us

5

Changing the Device of MobileOTP App

1 Open a new session in Internet Explorer (desktop) or in your default browser (Android or iOS) on your new device.

1a If you are in Internet Explorer hold ALT + F, on your keyboard. Then click “New Session”.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

6

Changing the Device of MobileOTP App

2 In the new session, copy the Risk Based Authentication (RBA) Home Page for DHS VPN link, seen below, and paste it into the search bar of your browser.

https://www.rbauth.state.pa.us/arcotafm/Security/index.html

3 Choose the Mobile Device platform of your new device. The application must be downloaded and installed prior to registering your new device.

If you are an Android User, click on “Download Google Play” to download the CA MobileOTP Application. If you are an iOS User, click on “Download on the App Store” to download the CA MobileOTP Application. Please refer to Installation Guide

> www.dpw.state.pa.us >

www.dhs.state.pa.us

7

Changing the Device of MobileOTP App

4 Navigate to the login screen, enter your b-Username, click next.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

8

Changing the Device of MobileOTP App

5 Click the Change Device / Forgot MobileOTP PIN? link.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

9

Changing the Device of MobileOTP App

6 Choose an authentication option, click submit.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

10

Changing the Device of MobileOTP App

6a If you chose Security Questions, enter the answers to the security questions displayed then click next. The registration details for your new device displays.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

11

Changing the Device of MobileOTP App

6b If you chose OTP by Email, enter the security code received in the email then click next. The registration details for your new device displays.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

12

Changing the Device of MobileOTP App

7 Navigate to the CA MobileOTP Application on your new device to enter the Server URL, User Identifier, and Activation Code.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

13

Entering Device Registration Details

7a After reading the Terms and Conditions, click Approve. The three screens you must input registration details on, are displayed below.

Copy & paste or type the Server URL, click next.

Enter your b-Username, click next.

Enter the Activation Code, click next.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

14

Creating a New PIN

7b Enter your new PIN, then re-enter it to confirm your PIN, click done.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

15

Changing the Device of MobileOTP App

8 Copy the OTP the Application displays.

Note: After registering your new device your old device will be automatically inactivated.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

16

Changing the Device of MobileOTP App

9 Navigate back to the RBA Device Registration Details page, click submit.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

17

Changing the Device of MobileOTP App

10 Paste or type the OTP that was generated by the Application. Click submit.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

18

You have successfully changed your device!

> www.dpw.state.pa.us >

www.dhs.state.pa.us

19

Forgotten / Resetting of MobileOTP Application PIN

> www.dpw.state.pa.us >

www.dhs.state.pa.us

20

Forgotten / Resetting MobileOTP PIN

1 Open a new session in Internet Explorer (desktop) or in your default browser (Android or iOS) on your device.

1a If you are in Internet Explorer hold ALT + F, on your keyboard. Then click “New Session”.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

21

Forgotten / Resetting MobileOTP PIN

3 Choose the Forgot/Unlock Mobile OTP PIN image.

2 In the new session, copy the Risk Based Authentication (RBA) Home Page for DHS VPN link, seen below, and paste it into the search bar of your browser.

https://www.rbauth.state.pa.us/arcotafm/Security/index.html

> www.dpw.state.pa.us >

www.dhs.state.pa.us

22

Forgotten / Resetting MobileOTP PIN

4 Navigate to the RBA login screen. Enter your b-Username, click next.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

23

Forgotten / Resetting MobileOTP PIN

5 Click the Change Device / Forgot MobileOTP PIN? link.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

24

Forgotten / Resetting MobileOTP PIN

6 Choose an authentication option, click submit.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

25

Forgotten / Resetting MobileOTP PIN .

6a If you chose Security Questions, enter the answers to the security questions displayed then click next. The registration details for your device displays. Click next.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

26

Forgotten / Resetting MobileOTP PIN

6b If you chose OTP by Email, enter the six digit OTP received in the email then click next. The registration details for your device displays. Click next.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

27

Forgotten / Resetting MobileOTP PIN

7 Navigate to the CA MobileOTP Application on your device to reset your PIN.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

28

Forgotten / Resetting MobileOTP PIN .

7a Navigate to the CA MobileOTP Application on your device. The Enter Pin screen will display. Click the menu icon in the top left hand corner.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

29

Forgotten/ Resetting MobileOTP PIN

7b Click the down arrow to expand the menu.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

30

Forgotten / Resetting MobileOTP PIN

7c Click the Add Account circle.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

31

Entering Device Registration Details

7d After clicking the Add Account button, the application walks you through the following screens:

Copy & paste or type the Server URL, click next.

Enter your b-Username, click next.

Enter the Activation Code, click next.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

32

Creating a New PIN

8 Enter your new PIN, then re-enter it to confirm your PIN, click done. You will receive an email notifying you successfully reset your PIN. Click done.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

33

Forgotten / Resetting MobileOTP PIN

9 Copy the one time password (OTP) the Application displays.

Note: After registering your new device your old device will be automatically inactivated.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

34

Forgotten / Resetting MobileOTP PIN

10 Navigate back to the RBA Device Registration Details page, click submit.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

35

Enrolling in RBA

11 Paste or type the OTP that was generated by the Application. Click submit.

> www.dpw.state.pa.us >

www.dhs.state.pa.us

36

You have successfully reset your Mobile OTP PIN!

> www.dpw.state.pa.us >

www.dhs.state.pa.us

37

Appendix – Sample Email Notifications

During the RBA login process, you may receive the following automated email notification:

For PIN resets:

> www.dpw.state.pa.us >

www.dhs.state.pa.us

38

Support

If you have additional questions and/or continuing to experience issues, please mail RA-PWDHSMFAHELPDESK@pa.gov or call 1-800-296-5335 for additional support

For any questions and/or issues, please refer to the FAQ document located here.

FAQ

top related