Signing in¶
GISweaver offers several ways to sign in. Which of them a deployment offers is decided by the deployment, not by your organisation: the sign-in page asks the server which methods are available and draws only those, falling back to email and password.
Account methods¶
- Email and password
- Google — where the deployment offers it
- Microsoft — where the deployment offers it
- A sign-in link sent to your email
Two-factor authentication¶
Two-factor authentication is a per-account setting that you turn on yourself, from Preferences → Security. There is no organisation-wide policy that switches it on for everybody, and no administrator control that requires it: your second factor is yours.
When it is on, signing in asks for a time-based one-time password (TOTP) from your authenticator app after your primary method.
Recovery codes and signed-in devices¶
The same Security tab also ships:
- Recovery codes, generated when you turn the second factor on, which you can download and regenerate. They are how you get back in if you lose your authenticator.
- Your signed-in devices, with the ability to end any one session.
The challenge on public forms¶
Where the deployment is configured for it, public forms — sign-in, sign-up, password reset — carry a bot challenge you may have to complete.
This page is being written.
The step-by-step walkthroughs and screenshots — choosing a method, completing the TOTP challenge, and using a recovery code — are not written yet.