FAQ Multi-Factor Authentication (MFA) at RRU
- Cecilia David
- Douglas 2brown
At RRU, we care about the security of our data so we’re implementing MFA to protect it.
What options are available for my second factor? And which scenario suits me best?
Multi-Factor Authentication (MFA) is a security measure used by organizations to improve their online security and protect their data.
MFA involves using more than one thing to prove who you are. Typically, the two things are "what you know" like a password, and "what you have" which is something that you carry with you. Using MFA is much more secure because it is less likely that someone with bad intentions will have both your password and the second method you choose.
Here's what you need to know about why organizations like us use MFA:
Safeguarding both your personal data and the sensitive information of our RRU and our students is paramount. Organizations implement MFA to enhance security and protect against unauthorized access to your accounts and confidential data.
MFA adds an extra layer of protection, ensuring that even if your password is compromised, unauthorized individuals still can't gain access without an additional verification step. This significantly reduces the risk of data breaches and enhances the overall security posture of organizations.
Enhanced security
Protection against unauthorized access
Reduced risk of phishing and credential theft
MFA adds an extra layer of security beyond just your username and password. It is harder for unauthorized individuals to access data or systems if they need to know your password AND have your cell phone or key fob to do so.
Remote Work and Mobile Access:
With the rise of remote work and mobile device usage, securing access to corporate resources from various locations and devices is critical. MFA ensures that even when you are not physically in your office, your access is secure.
User-Friendly Experience:
Modern MFA solutions are designed to be user-friendly, offering options like push notifications, biometrics, or one-time codes via SMS or mobile apps. This makes it easier for you to use MFA without significantly disrupting your work. Microsoft will soon stop supporting SMS (text) messaging so RRU will offer two options for your second factor: push notifications to the MS Authenticator app or a Security Key/Fob (a little USB stick that you carry around with you).
Adaptive Security:
Some MFA systems can adapt their security measures based on the context of the login attempt using access policies. For example, policies could specify that if you're on campus plugged into the network on an RRU device, there's low risk so there's no need to ask for MFA. But if you're trying to access our remote server from a personal computer in Greece, we will ask for MFA to make sure that's really you. Other policies are time-based and may ask you to MFA if you haven't done so in a certain period of time. The goal is to use these policies to manage when you're asked to MFA so that the process is not intrusive but that we remain secure.
Preventing Insider Threats:
MFA can also be effective in preventing insider threats by adding an additional layer of security for employees and trusted users. It helps ensure that even those with legitimate access are properly authenticated. None of the cybersecurity incidents experienced at RRU over the last two years were deliberately permitted by RRU staff. MFA would have prevented ALL of the cybersecurity incidents that RRU has experienced over the past two years.
Cost of Data Breaches:
Data breaches can be extremely costly in terms of both financial losses and damage to an organization's reputation. MFA reduces the likelihood of breaches, which can save organizations a significant amount of money and prevent long-term damage.
Scalability:
MFA solutions can scale with growth. We're implementing MFA starting in February by asking employees to register. Then we'll move on to contractors, then students. Initially, only a small number of applications will be MFA-enabled but we'll add others as we go.
MFA is important to RRU
We're on it! and we need you on it, too.
Here’s why it’s important for you to set up MFA:
Very real (and close to home) cyber security concerns
Some RRU resources like webmail already require MFA, even when you’re on campus
Soon there will be more applications behind MFA including other MS applications and eventually, Moodle and other non-MS applications
While outside the country, Outlook, webmail, and other MS applications always require MFA
you cannot independently set up MFA while outside the country
technical support is not available on evenings and weekends so you may find yourself locked out for an inconvenient amount of time
You need to set up MFA to prevent service interruptions that will negatively affect your access to resources. Better to do it now, then when you are in a time crunch and really need access to a resource behind MFA
We are truly all in this together. Please do your part to keep RRU secure from cyber criminals.
The current default* for people using Microsoft office products domestically on a personal computer is 12 hours. This is only enabled for Microsoft Webmail at this time.
The current default* for people using Microsoft office products internationally on a personal computer is 12 hours. This is enabled for most Microsoft Office programs including webmail, Teams and SharePoint/OneDrive
The current default* for people using Microsoft office products domestically or internationally on an RRU computer is 12 hours. This is not currently enabled for any Microsoft product locally but that might change in the future.
*As of August 1st, 2024 (subject to change without notice)
Yes, the setup will be a problem. Please contact the RRU Help Desk because we need to adjust your account so you can complete the setup process.
Once setup, MFA will work in any country as long as you have a wireless/data connection on your mobile device to authenticate.
about anchors: Anchors | Confluence Data Center 9.1 | Atlassian Documentation
How to Contact the Computer Services Department
Submit a ticket
To submit a ticket, you will be required to log in using your FULL Royal Roads email address (detailed instructions here)
New! If you do not have a full RRU email address (students not currently in a credit program and/or visitors), you can create a portal account using your personal email address.
Email us at IT Customer Service
Contact Form
Phone: 250-391-2659 Toll Free: 1-866-808-5429
Come visit us in the Sequoia Building
Hours of Operation