Coins ERP+ two-factor authentication (2FA) is an optional feature to require users to authenticate with a normal user ID and password but also with a second method which involves a time-limited passcode that is sent to the user via SMS or email.
This allows a userโs authentication to be stored securely in private data in the browser so that they need to authenticate with user ID and password (and now with passcode) less frequently than each time they access Coins ERP+.
This adds a level of security on authentication to Coins ERP+ when using user and password and is particularly relevant if the Coins ERP+ system is available on the public Internet.
We recommend Single Sign-On using Microsoft but if this is not possible, and possibly for some key users like web service or process users, 2FA is a good option.
The password hashing algorithms have also been strengthened.
Authentication for mobile apps remains a simple user ID and password.
