Skip to main content

2FA: Configuring Company-Wide Settings

This article is intended for users with Manager access rights in General Settings. It covers how to enable, edit, and disable 2FA for your entire organization from the Security tab in the Settings page.

Important: Only users with Manager permissions in General Settings can access and manage company-wide 2FA settings.

Accessing the Security Tab

  • Log in to Lucidya and navigate to Settings.

  • Select the Security tab.

  • Locate the Two-Factor Authentication for All Users section.

Enabling Company-Wide 2FA

Step 1 — Open the Enable dialog

Click the Enable button in the Two-Factor Authentication for All Users section. A configuration pop-up will appear.

Step 2 — Select verification method(s)

Choose at least one method. The Enable button remains inactive until a selection is made.

Package Type

Email

SMS

Authenticator App

Standard (no SMS package)

Available

Disabled — shows Paid label + Request button

Available

With SMS package

Available

Available

Available

Requesting the SMS add-on:

  • Click Request next to the SMS option.

  • The button changes to Requested (green) and becomes non-clickable.

  • A confirmation snackbar appears and an email is sent to the Customer Success team.

Step 3 — Configure Remember Device (optional)

A Remember Device toggle is available and is off by default. When enabled, users will see a checkbox on login that lets them skip 2FA verification for their browser for 7 days.

Info: This option displays as "Don't ask again for 7 days" on the user login screen.

Step 4 — Confirm your identity

After clicking Enable, you will be prompted to enter a verification code sent to your admin email address. Enter the code to complete the activation.

Note: You have 5 attempts to enter the verification code. After 5 failed attempts, the process is paused and the Enable button is temporarily disabled with a retry tooltip.

After Enabling

  • All active user sessions remain open, but each user receives an email prompting them to log in again and set up their 2FA method.

  • The Security tab will show a green Enabled label alongside Disable and Edit buttons.

Editing Company-Wide 2FA Settings

Click the Edit button next to the Enabled label.

Package Type

What Can Be Edited

Standard (no SMS package)

Remember Device toggle only

With SMS package

Verification methods + Remember Device toggle

  • At least one method must remain selected — the Next Step button is inactive otherwise.

  • Enter the verification code sent to your email to confirm the changes.

  • A green snackbar confirms the update was saved.

Disabling Company-Wide 2FA

  • Click the Disable button in the Security tab.

  • Confirm the action in the pop-up dialog.

  • Enter the verification code sent to your admin email.

  • On success, the Disable and Edit buttons are replaced with the Enable button and the Enabled label is removed.

Important: Disabling 2FA resets all user 2FA setups, including individual profile-level configurations.

Did this answer your question?