Multi-Factor Authentication (MFA) Guide
- View the guides for setting up MFA on your myHighline Student Account and ctcLink account.
What is Okta?
Okta is the system that Highline uses to manage the log-in security of all the college apps, which uses robust Multi-Factor Authentication (MFA) factors for security and identify authentication.
Why is Multi-Factor Authentication important to me?
Consider the amount of personal information in any account you may have as a student. For example, your ctcLink account displays vital personal data, such as name, social security number, and date of birth, which is all that’s needed to attempt to steal your identity. There may also be financial data, like direct deposit, financial aid, or payment information, leaving you at risk of theft.
It is equally crucial to take your account’s security seriously, as it can impact the safety of all other users’ personal data at Highline by potentially giving a hacker a way to break in to the whole system.
What is Multi-Factor Authentication (MFA)?
MFA is an advanced way to verify the user’s identity when they sign in to an application, by using more than just a username and password (which can be easily hacked) to prove your identity. This makes your account secure with more than a single factor (password), so it’s significantly harder for a hacker to imitate you. Hacking technology has continued to advance rapidly, so it is crucial to stay ahead of these security attacks. The more layers of Authentication Factors involved, the more difficult it is for anyone to try and imitate you to access your personal information, or gain entry to the broader system you are a part of.
MFA is increasingly being required on certain systems by federal regulations and cybersecurity insurance requirements in order to protect personally identifiable information and protect systems from cyberattacks.
These new pieces of personal information are Authentication Factors.
‘Authentication Factors,’ also called Security Factors, use credentials from the categories below:
- Something you know – Your Username, Password, PIN, Passphrase, Pattern
- Something you have – A physical Cryptographic Identification Device, a Security token
- Something you are – Biometric Identification, Fingerprint, Face ID
- Somewhere you are – Being physically located in a building, being attached to a specific network via a specific port inside the building, etc.
We recommend you set up at least two Authentication Factors so that you have multiple possible ways to log in.
What are ‘Authentication Methods?’
These are the tools you can use to verify your identity when signing in to your Highline accounts, such as myHighline and ctcLink. The most commonly used method are apps on your device that may use methods such as sending a code for you to enter on the log-in page, or a notification requesting permission to let you sign in.
You are able to use a single Authentication Method for most accounts/tools you will need to use, though we recommend setting up the Okta Verify app and one other One-Time-Password (OTP) application.
Recommended Authentication Methods
Option 1: Install the Okta Verify app (recommended)
This is an app on your phone that can be used to verify your identity through any of these methods:
- Push Notification – A message that will pop up on your phone just like other notifications or alerts, generated by the Okta Verify App. It may be used to text you a code on your phone for you to type in during the sign-in process; or it may send a prompt to your phone asking you to verify that you are logging in, and approve the sign-in attempt. Tutorial: How to use Push Notifications for Okta Verify
- Code Generator – Requires you to open the Okta Verify App, which displays a code on your phone for you to type in during the sign-in process.
- Okta Verify App Installation: Go to your phone’s app store to download the free Okta Verify app for Android or Apple, then follow our Okta Verify app setup guide to connect it to your Highline accounts.
Option 2: Other One-Time-Password (OTP) Applications
Some popular options are Google Authenticator, Microsoft Authenticator, and Authy.
Option 3: Alternate Method
If you require an alternative MFA method, please submit a ticket to the Help Desk and we will work with you to find the best solution. Some hardware tokens are available for checkout, or we can make a recommendation for purchase options that will meet your needs.
Questions?
- Please contact the Help Desk.
