Authentication
After you set up your account, you (and any team members you add) can sign into the Hub.
Authentication Options
Akoya offers two user authentication options for the Hub:
Password-based authentication + MFA (and a biometric option) via Akoya's identity provider (IdP). This Akoya-hosted account is the "default" option.
Single sign-on (SSO) via identity federation between the Hub and your company's IdP such as Active Directory.
Admin and Viewer roles are available for both account types.
You manage Akoya-hosted accounts entirely within "My company" in the Hub, and manage federated accounts in your company’s IdP.
Configuring MFA
After setting your password, you configure MFA. You can either use a software authenticator app (i.e. Google Authenticator) or a hardware security key.
Method 1 - Google Authenticator or Similar
The Hub supports the following authentication apps:
Google Authenticator
Duo
Authy
When prompted, scan the QR code and enter the six-digit code from your authentication app to finish the setup.
A recovery code will display on the next screen. This code will allow you to sign into your account without the software authenticator in the event you lose access to your device or the you lose your app settings. Record this code in a safe place.
Check the box indicating that you’ve saved your code and click “Continue.”
Method 2 - Security Key
The exact steps to register your device may vary by device. The steps that follow are a guide only.
If you select the security key option, click “Use security key,” and insert your device when prompted. You may need to enter a pin to unlock your device.
Be sure to record your recovery code at the end. When you finish, you return to the Hub overview page.
Biometric Login
After configuring MFA, you have the option of configuring biometric login (fingerprint or face recognition) if your device supports it.
Troubleshooting MFA
What if I lose access to my MFA app or security key?
If you lose access to your authenticator device/app or its settings, you’ll need to use your recovery code to sign in. At the “Verify your identity” screen where you would normally enter your authenticator code, click the “Try another method” link and select “Recovery code.”
Enter your recovery code when prompted, and click “Continue.” You’ll be given a NEW recovery code to use moving forward. Be sure to record this code in a safe place and click “Continue.” You’ll return to the Hub Overview page.
If you don’t have the recovery code, have a team member delete your account and re-invite you (see the "Deleting Users" section in "My Company"). You will receive a new invite via email. Follow the earlier instructions to accept the invitation and configure MFA.
If your account is the only one in the Hub, contact support by emailing operationssupport (at) akoya.com.