For the complete documentation index, see llms.txt. This page is also available as Markdown.

2FA for UKB-RAP

Two-factor authentication (2FA) is a mandatory security requirement for access to the UKB-RAP that provides an extra means of ensuring the security of all data to which you have access.

With two-factor authentication enabled, you must additionally enter a 6-digit code to log into RAP and access certain other services. This code is a time-based one-time password valid for a single session, generated by a third-party two-factor authenticator application, such as Google Authenticator.

Two-factor authentication protects your account by requiring both your credentials and an authentication code. This prevents unauthorized access even if your username and password are compromised.

Enabling Two-Factor Authentication

DNAnexus recommends using a time-based one-time password (TOTP)–compliant authenticator application on your mobile device. Popular options include Google Authenticator, Authy, Microsoft Authenticator, and 1Password. Google Authenticator is a free application that's available for both Apple iOS and Android mobile devices. Get it on Google Play or Apple App Store.

If you cannot use a smartphone application, use a compatible two-factor authenticator application for other platforms.

If you have not yet enabled 2FA for your RAP account, a setup window appears when you log into RAP. Follow these instructions to select an authenticator application and set up 2FA:

  1. Install a TOTP-compatible authenticator application to your mobile device and click Next.

  2. Enter your current Platform password and click Next.

  3. Scan the provided QR code with your authenticator app. If you cannot scan it, enter the displayed text code manually into your app instead.

  4. Enter the 6-digit code generated by your app and click Next.

  5. Click Print or Download to save your 10 one-time-use backup codes in a secure location.

    • Save the backup codes before closing the setup dialog. They won't be shown again.

  6. Click Finish & Log Out to complete setup.

Logging In with a Backup Code

If you lose access to your authenticator application, you can use a saved backup code to log in.

  1. Navigate to the UKB RAP login page and enter your username and password.

  2. When prompted for your two-factor authentication code, enter one of your saved backup codes instead.

Each backup code can only be used once. Keep track of which codes you have used and store remaining codes securely.

Resetting Two-Factor Authentication

If you plan to switch the mobile device you use for 2FA or change your authenticator app, you can reset the 2FA of your RAP account. Follow these steps to maintain access:

  1. Navigate to the Account Security screen of your profile.

  2. In the Two-Factor Authentication section, click Turn Off.

  3. Provide your RAP account password and either a valid two-factor authentication code or an unused backup code.

    • If you used a backup code to log in to your RAP account, you need a second backup code to confirm disabling 2FA, because each backup code can only be used once.

  4. Confirm the change.

The platform logs you out. On your next login, you can set up a new two-factor authentication method.

Disabling and re-enabling two-factor authentication requires reconfiguration of your authenticator application. This involves scanning a new QR code or entering a new secret key code, and saving a new set of backup codes.

Last updated