Skip to main content

Enabling Two-Factor Authentication (2FA)

Step-by-step guide to enabling, using, and enforcing Two-Factor Authentication (2FA) in SalesWings. Learn how to secure logins, restore access with secret keys, manage enforcement policies, and ensure account protection for all users and administrators.

Desmond Wolkins avatar
Written by Desmond Wolkins
Updated this week

Enabling Two-Factor Authentication (2FA) in SalesWings

Two-Factor Authentication (2FA) adds an extra layer of security to your SalesWings account. When enabled, users must provide both their password and a temporary one-time code generated by an authentication app on their phone. Each code is valid for only a short time, protecting your account even if your password becomes compromised.

You have the following options:

  • 2FA can be enforced across your SalesWings account for all users

  • When 2FA is not enforced, each user still has the possibility to configure it for their own users


Enforcing 2FA (For Administrators)

Step 1: Access Enforcement Settings

Navigate to Settings → Security Policies → Two-Factor Authentication Enforcement, and locate the 2FA Enforcement toggle.

Step 2: Enable Enforcement

  • Set the Grace Period to allow users time to comply:

Option

Description

Immediately

Enforcement begins right away (not recommended during work hours). All users are immediately logged out.

At Midnight

Starts automatically at midnight 12:00 AM local time zone of the admin user (default).

After X Days

Custom delay before enforcement begins.

Step 3: Understand the Effects

User Type

Behaviour After Enforcement

Users with 2FA already enabled

No action needed. Access continues normally.

Users without 2FA

Receive an email notification and a banner reminder to enable 2FA.

Important Notes for Admins

  • Once the grace period ends:

    • Non-compliant users will be logged out automatically.

    • They must complete 2FA setup before regaining access.

  • Once 2FA enforcement is enabled, it cannot be disabled by either admins or users.

  • Select an appropriate grace period to avoid disruption.

  • Communicate your enforcement plan in advance to ensure a smooth rollout.


For Users: Meeting 2FA Requirements

When Enforcement Is Activated

You’ll receive an email from your administrator informing you of the requirement and your compliance deadline.

During the Grace Period

  • A notification banner will show how much time remains to enable 2FA.

  • Click the banner or email link to open the setup page.

  • Once 2FA is enabled, the banner disappears, and you can continue working normally.

After the Grace Period

If 2FA is still not enabled:

  • You’ll receive a second email stating your access is restricted.

  • You’ll be logged out and redirected to the 2FA setup page.

  • You must complete the setup before accessing any other part of SalesWings.

  • Once enabled, your access is restored immediately.


How to Enable 2FA for your personal User account

2FA app requirements

Your authentication app must support the TOTP (Time-Based One-Time Password) standard.
Compatible options include:

  • Google Authenticator

  • Microsoft Authenticator

  • Salesforce Authenticator

  • 1Password (password manager with TOTP support)

No internet or direct connection between SalesWings and the app is needed. The setup simply involves scanning a QR code.

Turning on 2FA for your user

  1. Log in to the SalesWings web application in your preferred browser.

  2. Navigate to Settings → Two-Factor Authentication.

  3. Back up your secret key securely.

    • This key is required to recover access if you lose your phone.

    • There is no automated recovery method, so store it safely.

Open your 2FA app on your phone.

  1. Scan the QR code displayed in SalesWings.

  2. Generate a new code in your 2FA app.

  3. Return to the Cockpit and enter the code, then click Enable 2FA.


Logging In with 2FA

  1. Enter your email address and password.

  2. Open your 2FA app and generate a new one-time code.

  3. Enter the code to complete the login.

If your code is rejected:

  • It may have expired (codes are valid for only 30 seconds).

  • Ensure your phone’s clock is synchronized, as time differences can invalidate codes.

  • Generate a new code and try again.


Disabling 2FA

  1. Log into the SalesWings web application.

  2. Go to Settings → Two-Factor Authentication.

  3. Open your 2FA app and generate a new code.

  4. Enter the code and click Disable 2FA.

After disabling:

  • Future logins will no longer require a one-time code.

  • You should manually remove the SalesWings setup from your 2FA app.


Restoring Access with the Secret Key

If you lose your phone, you can restore access using the secret key.
The key allows you to reconfigure your 2FA app manually—no QR code is needed.

SalesWings uses the following TOTP parameters (these are default settings in most apps):

Parameter

Value

Algorithm

SHA1

Digits

6

Interval

30 seconds

Example (Google Authenticator)

  1. Tap Add a code.

  2. Choose Enter a setup key.

  3. Enter an account name (e.g., “SalesWings”).

  4. Enter your secret key.

  5. Select Time-based as the key type.

  6. Tap Add to complete setup.

Did this answer your question?