Overview
Two-factor authentication (2FA) adds an additional layer of security to your SPRL account by requiring a second verification step during login.
Even if your password is compromised, 2FA can help prevent unauthorized access by requiring an additional authentication factor.
Recommended:
Enable two-factor authentication for accounts that have administrative responsibilities or access to important SPRL resources.
What Is Two-Factor Authentication?
Two-factor authentication requires two different types of information to verify your identity before access is granted.
| Authentication Factor | Example |
|---|
| Something You Know | Your account password. |
| Something You Have | A verification code or authentication device. |
Using more than one authentication factor makes it more difficult for an unauthorized person to access your account using a stolen or compromised password alone.
Why Enable 2FA?
Passwords can be exposed through phishing, credential reuse, malware, data breaches, or other security incidents. Two-factor authentication provides an additional security layer beyond your password.
- Provides additional protection against stolen passwords.
- Reduces the risk of unauthorized account access.
- Helps protect administrative accounts.
- Provides an additional authentication step during login.
- Strengthens your overall account security.
Good to Know:
Two-factor authentication does not replace a strong password. Use both a strong, unique password and 2FA for better account protection.
Before Enabling 2FA
Before enabling two-factor authentication, make sure you can securely access the device or authentication method required for the additional verification step.
- Make sure you can access your SPRL account.
- Use a trusted device for authentication.
- Ensure your authentication method is available when you need to sign in.
- Review any recovery or backup options provided during setup.
- Keep recovery information secure.
How to Enable 2FA
The exact options available may depend on the current SPRL account security settings.
- Sign in to your SPRL account.
- Open your account or security settings.
- Locate the Two-Factor Authentication or 2FA option.
- Start the 2FA setup process.
- Follow the verification instructions displayed by SPRL.
- Complete the additional verification step.
- Confirm that 2FA has been successfully enabled.
Tip:
Complete the setup carefully and keep any recovery information provided during the process in a secure location.
After Enabling 2FA
Once two-factor authentication has been enabled, you may be required to complete an additional verification step when signing in to your account.
Keep your authentication method available and protected. Do not share authentication codes with other people.
- Keep your authentication device secure.
- Do not share verification codes.
- Do not approve unexpected authentication requests.
- Be cautious of login requests you did not initiate.
- Keep recovery information secure.
Protecting Authentication Codes
Authentication codes are security credentials and should be treated as confidential information.
- Never share a verification code with another person.
- Never provide a code to someone claiming to be SPRL Support.
- Do not enter codes into suspicious websites.
- Do not store authentication codes in publicly accessible locations.
- Be cautious if you receive an unexpected authentication request.
Security Warning:
SPRL Support will not require you to disclose your password or authentication code through an unsolicited request.
2FA & Account Recovery
If you lose access to the device or authentication method used for two-factor authentication, account recovery may require additional verification.
Keep any recovery information provided during 2FA setup secure and accessible only to you or authorized personnel.
Important:
Do not store recovery information in publicly accessible documents, source code, screenshots, or shared communication channels.
2FA for Enterprise Organizations
Organizations should encourage appropriate users to enable two-factor authentication, particularly users with administrative responsibilities or access to important business resources.
- Encourage administrators to use 2FA.
- Include account security in employee onboarding processes.
- Review account access when responsibilities change.
- Educate users about phishing and authentication scams.
- Establish internal procedures for account recovery.
Common 2FA Issues
| Issue | Recommended Action |
|---|
| Verification Failed | Review the verification information and follow the instructions displayed during login. |
| Lost Authentication Device | Use the available account recovery process or contact SPRL Support if assistance is required. |
| Unexpected Authentication Request | Do not approve or provide the authentication information. Review your account security. |
| Cannot Access Account | Use the available recovery options or contact SPRL Support. |
Security Best Practices
- Enable 2FA whenever available.
- Use a strong and unique account password.
- Keep your authentication device secure.
- Never share authentication codes.
- Do not approve unexpected authentication requests.
- Protect recovery information.
- Review account sessions periodically.
- Report suspected unauthorized access promptly.
2FA Security Checklist
| Security Practice | Status |
|---|
| Strong and unique password configured | Recommended |
| Two-factor authentication enabled | Recommended |
| Authentication device secured | Required |
| Authentication codes kept confidential | Required |
| Recovery information secured | Required |
| Unexpected authentication requests reviewed | Recommended |
| Login sessions reviewed periodically | Recommended |
Frequently Asked Questions
What is 2FA?
Two-factor authentication is an additional security mechanism that requires another verification factor in addition to your password when accessing your account.
Why should I enable 2FA?
2FA provides additional protection if your password is compromised and makes unauthorized access more difficult.
Is 2FA required?
2FA requirements may depend on your account configuration and applicable SPRL security settings. Even when it is not required, enabling 2FA is recommended.
Can I share my authentication code?
No. Authentication codes should always be kept confidential.
What should I do if I receive an unexpected authentication request?
Do not approve the request or provide any authentication information. Review your account security and contact SPRL Support if you suspect unauthorized access.
What if I lose access to my authentication method?
Use the available account recovery options or contact SPRL Support for assistance.
Quick Reference
| Topic | Summary |
|---|
| Purpose | Add an additional security layer beyond your password. |
| Recommendation | Enable 2FA where available, especially for administrative accounts. |
| Authentication Codes | Keep codes confidential and never share them. |
| Recovery | Keep available recovery information secure. |
| Suspicious Requests | Never approve unexpected authentication requests. |
| Account Security | Use 2FA together with a strong, unique password. |
Learn More:
Explore the SPRL Help Center for detailed guides on Security Overview, Managing Login Sessions, Password Security Best Practices, Recognizing Phishing Attempts, Data Privacy, API Security, Domain & SSL Security, Reporting Security Issues, and Security FAQs.
Tip: Enabling two-factor authentication is one of the simplest ways to strengthen your SPRL account. Protect your authentication method and recovery information just as carefully as your password.