Carrier Runbook: Preparing for Multi-Factor Authentication (MFA) in BriteCore
1. Overview
This guide explains what your organization needs to do to prepare for Multi-Factor Authentication (MFA) in BriteCore. MFA adds an additional verification step at login and requires all users to have a valid email address and, ideally, an SMS-capable mobile phone number.
2. User Requirements
✓ Every user must have a unique login (no shared accounts). Users with shared accounts have the real potential of being locked out of the system.
✓ A valid email address is REQUIRED for all users.
✓ An SMS-capable mobile phone number is strongly recommended to support MFA via text message.
✓ User information should be updated before MFA enforcement.
3. Organizational Preparation
✓ Ensure that your site is enabled in the latest BriteAuth. This can be determined by the presence of the Users option in the left sidebar, and inside of User ->Settings there must be an option to “Enforce MFA”.
✓ If this is not available, submit a support ticket requesting the BriteAuth upgrade to your site.
✓ Establish an internal support contact for users who cannot complete MFA.
✓ Prepare a lockout recovery workflow (identify who updates user contact details).
✓ Determine the MFA activation date and communicate it to users in advance.
4. Notify Users
Before enabling MFA, all employees and agents who log into BriteCore must be notified.
Your communication should include:
• MFA activation date and time
• What MFA is and what to expect
• Instructions for checking/updating email and phone information
• Who to contact for login assistance
5. Enabling MFA in BriteCore
Once BriteCore informs you that the system is ready:
1. Navigate to Users → User Settings
2. Enable the option “Enforce MFA for All Users”
3. Save changes
All users will be required to authenticate with MFA at their next login.
6. Temporary Rollback (If Needed)
If issues arise after enabling MFA, you may temporarily disable it:
• Go to Settings → User Settings
• Uncheck “Enforce MFA for All Users”
This does not remove any user data and MFA can be re-enabled at any time.
7. User Notification Email Template
Subject: Upcoming Multi-Factor Authentication (MFA) Login Update
Hello,
We are improving system security by enabling Multi-Factor Authentication (MFA) for all BriteCore users.
MFA Activation Date: [Insert Date]
After this date, when logging in, you will receive a verification code by email or text message. Please ensure your email address and mobile phone number are correct before MFA begins.
If you need assistance, contact:
[Support Email]
[Support Phone]
Thank you,
[Carrier Name]