- 13 Jun 2023
- 1 Minute to read
- Print
- DarkLight
My Account
- Updated on 13 Jun 2023
- 1 Minute to read
- Print
- DarkLight
The My Account screen allows users to manage the details of their own account. Users can update their name, avatar image, and password, as well as manage their two-factor authentication (2FA) setup. Users can access the My Account screen by selecting the like-named link from the dropdown menu that is spawned by selecting the user avatar in the topbar.
Managing the User Profile
Users can change their names, avatar images, and enable and disable dark mode from the User Profile of the My Account screen.
Two-Factor Authentication Setup
A user can enable and disable 2FA in Two-Factor Auth section the My Account screen. Administrators can view the 2FA status of any user and disable it from within Ursa Studio.
Administrators cannot enable 2FA for a user in User Manager because the user would then have no means to generate the correct code. However, administrators can mandate two-factor authentication, either on an implementation-wide level (as is the default) on a per-user level (via the user screen if the environment variable ESCHEW_2FA is active). Any user for whom two-factor authentication is required but not yet set up will only be given access to a "setup two-factor authentication" screen until they complete their two-factor authentication setup.
Administrators can also disable an existing user 2FA setup by unclicking the "Two-Factor Auth Enabled" checkbox. Doing so is the key to unblocking users who cannot sign in to Ursa Studio because they've lost their phone or cannot access their 2FA app for some other reason, because it will put the user's account in a state where 2FA is required but not enabled, which is exactly the condition that will impel them to restart the 2FA setup workflow.
Analytics Portal’s 2FA is compatible with Google Authenticator, Authy, and any other two-factor app that supports the TOTP standard.
Two-Factor Authentication Bypass Tokens
Users with 2FA will be prompted if they want a computer to be remembered and thus bypass 2FA in the future. These bypass tokens last a year and are revocable via User Manager.