Two-step verification (2SV) is a sign in process that uses your username and password, and an extra piece of information. This extra piece of information adds a second step to signing in and makes your account more secure.
You can manage your two-step verification settings in the User Settings for your Lobby account. You'll also need your mobile device for the second step.
If you have a new device or accidently deleted the authenticator app, your Org Admin will need to reset 2SV for you so you can sign in.
Two-step verification (2SV) is an extra layer of security and is also known as multi-factor authentication (MFA).
You already access Aconex or the Lobby using your email address and password. That’s the first step in two-step verification. The second step authenticates you using a physical device.
With two-step verification enabled, you use an authenticator app on your mobile device or computer to generate a unique code. You enter that code into the login page to get access. You'll need to generate and enter a new code from your authenticator app every time you log in. This ensures you’re the only person who can access your account.
If you use online banking or other cloud-based services, you may already be familiar with two-step verification.
It helps to prevent the situation in which a malicious party guesses your password and gains unauthorized access to your account. It also helps to avoid insecure practices like password sharing between users.
When you first log in you'll be asked if you want to set up 2SV. You may be able to skip this, but you must configure it if:
If you choose to skip, you may not be able to access some of your projects. You can enable 2SV on your account by following the below steps.
You can configure 2SV using the Oracle Authenticator App, or you may be able to use your preferred authenticator app if you already have one on your device.
Note: You won't be able to skip the 2SV setup if your organization manages its own Identity Domain and requires all users to use 2SV.
You may have previously used two-step verification for your Aconex account. Two-Step Verification for your Lobby account is configured separately, and replaces the 2SV code you entered to access your Aconex account. Your authenticator app will generate a code for your Lobby account each time you access Aconex.
Don't see the two-step verification heading? This means your organization manages it's own Identity Domain and has chosen not to enable 2SV. Learn more about how to configure password and 2SV policies.
The following methods may be available. Additional methods can be added by your organization administrator, if your organization manages its own Identity Cloud.
Oracle Authenticator App: A push notification is sent to your mobile device giving you the option to allow this sign-in attempt. If no internet connection is available you can choose to enter a passcode.
Mobile App: A mobile app generates a passcode. All mobile apps that use the TOTP RFC 6238 standard will work with this method.