Set Up Multifactor Authentication (MFA)

Prev Next

Multifactor authentication (MFA) adds an extra layer of protection to your account by requiring a verification code in addition to your password. Enabling and enrolling in MFA strengthens account security and helps ensure that only authorized users can access the portal.

Note

You can oversee and assist with MFA activation and resets for individual merchants to maintain efficient self‑service management across your portfolios. For more information, see User Profile.

Enable MFA for Users

You can enable MFA for new users and existing users. No matter when a user creates their account, they can enhance their security by enabling MFA to add a layer of protection to their accounts.

Note

Partners integrating with API-only usage are not required to use MFA because their private API key acts as their secure authentication method. To proceed with this option, disable Portal Access and Login As Access parameters from the User Profile of each API-only user.

Enable MFA for New Users

To enable MFA for a new user:

  1. Click Users from the Management section of the left navigation panel.

  2. Click Add Users.

  3. Add the Role or Template and enter the user information to the Create A New User dialog.

  4. Set the Multifactor Authentication Enabled value to Yes.

  5. Click Add User to create a new user with MFA enabled.

When the new user logs in to the portal for the first time, they receive a prompt to complete MFA enrollment.

Enable MFA for Existing Users

To enable MFA for an existing user:

  1. Click Users from the Management section of the left navigation panel.

  2. Select the user you want to modify to access their User Profile page.

  3. Click the Edit icon.

  4. Update the Multifactor Authentication Enabled value to Yes.

  5. Click the checkmark icon in the upper right to save the change.

At the user's next login attempt, they will receive a prompt to complete MFA enrollment.

Note

  • Partners using their own MFA configurations in place can use single sign-on (SSO) to automatically redirect to the portal from their native application without manual sign-in or MFA required.

  • Merchants using SSO to log in to the portal through their partner are also not required to use MFA.

  • See Enable Single Sign-On (SSO) for more information.

Enroll in MFA

After MFA is enabled for the desired user, the user must enroll in Payrix Pro MFA using their preferred authenticator method the next time they attempt to log in to the portal. See Recommended MFA Authenticator Apps for a list of trusted authentication apps we recommend for MFA enrollment.

Refer to the compatibilities for MFA enrollment types by user:

  • Partners: MFA authenticator app.

  • Merchants: MFA authenticator app or SMS number.

To initiate the MFA enrollment process:

  1. Make sure you are logged out of the portal. Attempt to log back in.

  2. Upon viewing the portal prompt to secure your account, click Continue.

Register Your Preferred MFA Method

To register your preferred MFA method:

  1. Select Mobile App or Text (SMS) from the Select MFA Method prompt and click Continue.

  2. Follow the steps applicable to your chosen MFA method:

Register an authenticator app for MFA

  1. Download and set up your preferred authenticator app from the Apple App Store or Google Play Store.

  2. Using the authenticator app, scan the code shown on the Scan the QR Code prompt.

  3. Enter the six-digit code displayed on your app to authenticate the app method registration.

Register your SMS phone number for MFA

  1. Click Confirm to verify the phone number pulled from your User Profile information.

  2. (Optional) If your phone number does not match or is incorrect, click Modify to change the phone number. Then, click Confirm.

  3. Use the six-digit code sent in the following SMS message to the number you’ve confirmed to authenticate the SMS method registration:
    {Company} Verification Code: Use this one-time verification code to complete sign-in: XXXXXX. Do NOT share this code with anyone. This code is valid for 10 minutes. Reply STOP to opt out.

  1. Click Continue to complete your MFA enrollment.

Your user login is now enrolled in MFA as an added security measure to protect your account. Each time you log in to the portal, you must authenticate your login using your provided mobile app or SMS number enrollment. You can use the Remember Me feature in your browser to extend your MFA authentication to 30 days.