What is Strong Customer Authentication?
Strong Customer Authentication (SCA) is a security measure required for sensitive actions, such as:
Connecting to the platform from a new device.
Adding a beneficiary.
Approving a payment or currency conversion.
Adding a user.
SCA ensures that your account and funds remain safe and secure, especially if your platform credentials are compromised.
Strong Customer Authentication Methods at iBanFirst
The methods of Strong Customer Authentication used by iBanFirst include:
Time-based One-Time Password (TOTP): This can be generated using mobile or desktop apps such as Google Authenticator.
Yubikey.
Both methods are employed in a process known as two-factor authentication (2FA). This process requires you to authenticate your access credentials using two elements:
Something you know (your iBanFirst username and password).
Something you possess (your phone or Yubikey).
Note on SMS Authentication
Previously, SMS was used as a method for Strong Customer Authentication, but it is no longer supported.
Configuring Your Authentication Software
After your profile is created and you become a new platform user, you will receive an activation email prompting you to set up your account.
During this process, you will be guided through the steps to configure your authentication app. Initially, you will be asked to download either Google Authenticator.
For Apple
· Go to the App Store on your iPhone and download Google Authenticator. It’s free.
· Launch the app and tap the plus button.
· At the bottom of the screen, two options will appear. Select the option Scan barcode.
· Scan the barcode displayed on your computer screen, which will appear on the iBanFirst account setup page.
· If you have any issues scanning the barcode, you can select the option Enter key manually and fill in the information displayed on the computer screen via your telephone keypad.
· In this case, fill in the 6-digit code displayed on your authentication app and click Approve.
· You’re all set!
For Android
· Go to Google Play and download Google Authenticator. It’s free.
· Launch the app and tap the plus button.
· At the bottom of the screen, two options will appear. Select the option Scan the QR code.
· Scan the QR code displayed on your computer screen, which will appear on the iBanFirst account setup page.
· If you have any issues scanning the barcode, you can select the option Enter key manually and fill and fill in the information displayed on the computer screen via your telephone keypad.
· In this case, fill in the 6-digit code displayed on your authentication app and click Approve.
· You’re all set!
Troubleshooting authentication app issues
If the 6-digit Time-based One-Time Password (TOTP) generated by your authentication app is not recognised by the iBanFirst platform, please check that the time of day settings on your phone and computer are set to automated. This issue is often linked to poor synchronisation between the time of day settings on the computer from which you access the iBanFirst platform and the phone on which your authentication app is installed.