Known issue: WP VIP currently requires secondary 2FA to be configured for all admin roles on a hosted application, even if our SSO already has 2FA. This applies to both the network Super Admin role, as well as sub-site Administrator roles.
You will need to register to the WP network application and configure a secondary 2FA before you can be given an administrator role on either the network or a network sub-site.
If you are given an administrator role and try to sign in without the secondary 2FA configured, your role will be automatically demoted back to "subscriber" (read only).
- Go to to the SSO login endpoint:
https://wpvip.hosting.gatech.edu/?option=saml_user_login - Authenticate to GT SSO with your PSA
- After redirecting back to the landing page: you will now be registered to the network and logged in, with a "Reader" role only
- Go to your user profile for to configure 2FA:
https://wpvip.hosting.gatech.edu/wp-admin/profile.php#two-factor-options - You can choose to enable Authenticator App, Email, and/or SMS-based 2FA. We recommend choosing Authenticator App to avoid common delivery issues.
To enable the Authenticator App for 2FA:
- Choose "Enable Authenticator App" to see the configuration QR code and a validation code prompt
- Open 1Password on your mobile device
- Create a new login item for the network:
- Fill initial fields:
- Title: wpvip.hosting.gatech.edu
- Username: your PSA username
- Password: leave empty/do not fill
- Add a one-time password field to the 1Password entry:
- In the Edit view, choose "add more" and select "One-Time Password"
- Tap the QR code icon next to the One-Time Password field to open the camera
- Scan the 2FA configuration QR code on the WP dashboard
- Save to confirm
- Enter in the 6-digit One-Time Password code on the WP VIP validation prompt to confirm the Authenticator App has been configured
- Choose "Enable Recovery Codes"
- Click the button to generate new recovery codes
- Edit your 1Password entry to access the Notes
- Copy-paste the codes into your 1Password entry Notes to save them
- Save the entry again
After 2FA has been set-up, let Heidi know and she will assign you the administrator role.