38
www.dhs.state.pa.us 1 Risk-Based Authentication (RBA) Self-Service User Guide

Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

  • Upload
    builien

  • View
    286

  • Download
    0

Embed Size (px)

Citation preview

Page 1: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

1

Risk-Based Authentication (RBA)

Self-Service

User Guide

Page 2: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

2

• Overview of Risk-Based Authentication (RBA)

• Changing Your Device

• Resetting MobileOTP PIN

• Appendix

• Support

Table of Contents

Page 3: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

3

About Risk-Based Authentication (RBA)

What is Risk Based Authentication?

Why is the change needed?

How does this affect my login process and how long will it take to complete?

RBA is an advanced security feature to protect the identity of users. An additional layer of security has been added through the use of a RBA solution to enhance secure access mechanisms to users’ personal information.

The Department of Human Services has taken measures to protect users’ personal information. RBA has been implemented to ensure the identity of users are protected on state agency sites.

You are required to download the CA MobileOTP Application to generate a One Time Password (OTP) every time you want to connect to the VPN. The Application also requires you to set a security PIN to access the OTP. You will set-up 3 security questions with answers in case you forget your PIN. This process should only take few minutes to complete (after 1st log in).

Page 4: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

4

Changing the Device of MobileOTP Application

Page 5: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

5

Changing the Device of MobileOTP App

1 Open a new session in Internet Explorer (desktop) or in your default browser (Android or iOS) on your new device.

1a If you are in Internet Explorer hold ALT + F, on your keyboard. Then click “New Session”.

Page 6: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

6

Changing the Device of MobileOTP App

2 In the new session, copy the Risk Based Authentication (RBA) Home Page for DHS VPN link, seen below, and paste it into the search bar of your browser.

https://www.rbauth.state.pa.us/arcotafm/Security/index.html

3 Choose the Mobile Device platform of your new device. The application must be downloaded and installed prior to registering your new device.

If you are an Android User, click on “Download Google Play” to download the CA MobileOTP Application. If you are an iOS User, click on “Download on the App Store” to download the CA MobileOTP Application. Please refer to Installation Guide

Page 7: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

7

Changing the Device of MobileOTP App

4 Navigate to the login screen, enter your b-Username, click next.

Page 8: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

8

Changing the Device of MobileOTP App

5 Click the Change Device / Forgot MobileOTP PIN? link.

Page 9: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

9

Changing the Device of MobileOTP App

6 Choose an authentication option, click submit.

Page 10: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

10

Changing the Device of MobileOTP App

6a If you chose Security Questions, enter the answers to the security questions displayed then click next. The registration details for your new device displays.

Page 11: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

11

Changing the Device of MobileOTP App

6b If you chose OTP by Email, enter the security code received in the email then click next. The registration details for your new device displays.

Page 12: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

12

Changing the Device of MobileOTP App

7 Navigate to the CA MobileOTP Application on your new device to enter the Server URL, User Identifier, and Activation Code.

Page 13: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

13

Entering Device Registration Details

7a After reading the Terms and Conditions, click Approve. The three screens you must input registration details on, are displayed below.

Copy & paste or type the Server URL, click next.

Enter your b-Username, click next.

Enter the Activation Code, click next.

Page 14: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

14

Creating a New PIN

7b Enter your new PIN, then re-enter it to confirm your PIN, click done.

Page 15: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

15

Changing the Device of MobileOTP App

8 Copy the OTP the Application displays.

Note: After registering your new device your old device will be automatically inactivated.

Page 16: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

16

Changing the Device of MobileOTP App

9 Navigate back to the RBA Device Registration Details page, click submit.

Page 17: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

17

Changing the Device of MobileOTP App

10 Paste or type the OTP that was generated by the Application. Click submit.

Page 18: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

18

You have successfully changed your device!

Page 19: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

19

Forgotten / Resetting of MobileOTP Application PIN

Page 20: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

20

Forgotten / Resetting MobileOTP PIN

1 Open a new session in Internet Explorer (desktop) or in your default browser (Android or iOS) on your device.

1a If you are in Internet Explorer hold ALT + F, on your keyboard. Then click “New Session”.

Page 21: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

21

Forgotten / Resetting MobileOTP PIN

3 Choose the Forgot/Unlock Mobile OTP PIN image.

2 In the new session, copy the Risk Based Authentication (RBA) Home Page for DHS VPN link, seen below, and paste it into the search bar of your browser.

https://www.rbauth.state.pa.us/arcotafm/Security/index.html

Page 22: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

22

Forgotten / Resetting MobileOTP PIN

4 Navigate to the RBA login screen. Enter your b-Username, click next.

Page 23: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

23

Forgotten / Resetting MobileOTP PIN

5 Click the Change Device / Forgot MobileOTP PIN? link.

Page 24: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

24

Forgotten / Resetting MobileOTP PIN

6 Choose an authentication option, click submit.

Page 25: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

25

Forgotten / Resetting MobileOTP PIN .

6a If you chose Security Questions, enter the answers to the security questions displayed then click next. The registration details for your device displays. Click next.

Page 26: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

26

Forgotten / Resetting MobileOTP PIN

6b If you chose OTP by Email, enter the six digit OTP received in the email then click next. The registration details for your device displays. Click next.

Page 27: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

27

Forgotten / Resetting MobileOTP PIN

7 Navigate to the CA MobileOTP Application on your device to reset your PIN.

Page 28: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

28

Forgotten / Resetting MobileOTP PIN .

7a Navigate to the CA MobileOTP Application on your device. The Enter Pin screen will display. Click the menu icon in the top left hand corner.

Page 29: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

29

Forgotten/ Resetting MobileOTP PIN

7b Click the down arrow to expand the menu.

Page 30: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

30

Forgotten / Resetting MobileOTP PIN

7c Click the Add Account circle.

Page 31: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

31

Entering Device Registration Details

7d After clicking the Add Account button, the application walks you through the following screens:

Copy & paste or type the Server URL, click next.

Enter your b-Username, click next.

Enter the Activation Code, click next.

Page 32: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

32

Creating a New PIN

8 Enter your new PIN, then re-enter it to confirm your PIN, click done. You will receive an email notifying you successfully reset your PIN. Click done.

Page 33: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

33

Forgotten / Resetting MobileOTP PIN

9 Copy the one time password (OTP) the Application displays.

Note: After registering your new device your old device will be automatically inactivated.

Page 34: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

34

Forgotten / Resetting MobileOTP PIN

10 Navigate back to the RBA Device Registration Details page, click submit.

Page 35: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

35

Enrolling in RBA

11 Paste or type the OTP that was generated by the Application. Click submit.

Page 36: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

36

You have successfully reset your Mobile OTP PIN!

Page 37: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

37

Appendix – Sample Email Notifications

During the RBA login process, you may receive the following automated email notification:

For PIN resets:

Page 38: Risk-Based Authentication (RBA) Self-Service User … Authentication (RBA) Self-Service User Guide > 2 •Overview of Risk-Based Authentication (RBA) •Changing Your Device •Resetting

> www.dpw.state.pa.us >

www.dhs.state.pa.us

38

Support

If you have additional questions and/or continuing to experience issues, please mail [email protected] or call 1-800-296-5335 for additional support

For any questions and/or issues, please refer to the FAQ document located here.

FAQ