How do I enroll in ADSelfService Plus?

ManageEngine ADSelfService Plus requires you to enroll for the MFA verification methods configured by your administrator. ADSelfService Plus authenticates your identity using the information you provide during the enrollment process. Enrollment is mandatory for:

MFA authenticators in ADSelfService Plus

Enrollment using security question and answers

Enrollment using email address (Email verification)

Get verification code via email ID

Enrollment using Mobile numbers

Get verification code via SMS (SMS Verification)

Enrollment using Google Authenticator

Prerequisite:

Enrollment steps:

Enrollment using Microsoft Authenticator

Prerequisite:

Enrollment steps:

Enrollment using DUO Security

Enrollment using the ADSelfService Plus app

Push Notification Authentication

  1. Log in to the ADSelfService Plus mobile app and click Enrollment > Push Authentication.
  2. Follow the steps displayed on the webpage.
  3. Enrollment using push alert authentication

Enrollment using Biometric Authentication

  1. Log in to the ADSelfService Plus mobile app and click Enrollment > Biometric Authentication.
  2. Follow the steps displayed on the webpage.
  3. Enrollment using Fingerprint authenticator

Enrollment using QR code Authentication

  1. Log in to the ADSelfService Plus mobile app → click Enrollment → QR code Authentication.
  2. Follow the steps displayed in the webpage.
  3. Enrollment using QR code authenticator

Enrollment using TOTP Authentication

Enrollment using TOTP Authentication

Enrollment for YubiKey OTP

Enrollment using Zoho OneAuth

Prerequisite:

Install Zoho OneAuth on your mobile device. You can download it from the Google Play Store or the Apple App Store.

Enrollment steps:

Enrollment for Custom TOTP authentication

Prerequisite:

Software authenticator: Download the Custom Authenticator app to your workstation, or your mobile device from the Google Play Store or the Apple App Store.

Hardware authenticator: You must possess a hardware TOTP device issued by your organization.

Enrollment steps:

Enrollment for FIDO passkeys

Prerequisite:

Enrollment steps:

Backup verification codes

Backup verification codes are a set of 12-character codes that you can generate and use to verify your identity. There are 5 backup codes in a set. You can use these codes if you are unable to use your enrolled MFA methods for authentication or you don't have access to you MFA device.

Each code can be used only once for verifying your identity during machine, VPN, or ADSelfService Plus logins, or for performing any self-service actions.

Backup code generation:

The MFA backup codes section can be accessed from:

Offline MFA

Offline MFA ensures that your identity is authenticated and the access to your machine is secured even when the ADSelfService Plus server is unreachable. ADSelfService Plus supports offline MFA during local and remote Windows logins and User Account Control prompts. It uses the following authenticators:

How do I enroll a particular machine for offline MFA?

Once you successfully complete MFA when connected to the ADSelfService Plus server, based on admin configuration, you will be prompted to enroll for any authenticators required for offline MFA. You will then either be automatically enrolled or prompted to enroll your machine for offline MFA as shown in this image:

Offline MFA

Click Enroll & Continue to enroll your machine for offline MFA and access your machine. Your machine is now successfully enrolled for offline MFA. The next time the ADSelfService Plus server is unreachable, you can verify your identity using offline MFA and continue using your machine.

How to disenroll from offline MFA

If you do not want to continue using offline MFA in a machine, you can revoke the enrollment information. For this:

Note: The enrollment information will be erased only after this particular machine is connected back to the ADSelfService Plus server during online authentication.

Thanks!

Your request has been submitted to the ADSelfService Plus technical support team. Our technical support people will assist you at the earliest.

 

Need technical assistance?

  • Enter your email ID
  • Talk to experts
  •  
     
  •  
  • By clicking 'Talk to experts' you agree to processing of personal data according to the Privacy Policy.

Copyright © 2024, ZOHO Corp. All Rights Reserved.