Account Update: Difference between revisions

From Network for Advanced NMR
Jump to navigationJump to search
Jwedell (talk | contribs)
No edit summary
Qcheng (talk | contribs)
updated language for all steps
Line 1: Line 1:
On '''TBD,''' NMRhub will switch over to requiring [https://en.wikipedia.org/wiki/Multi-factor_authentication Two factor authentication]. This will require setting up an authenticator and setting recovery questions.
Starting '''9/22/2026,''' NMRhub users will be required to use [[wikipedia:Multi-factor_authentication|Two factor authentication (2FA)]] to log into NMRhub services including NMRhub, NMRbox and NAN websites, connections to NMRbox servers via SSH or RealVNC, as well as FileZilla file copies to and from NMRbox servers. In addition, as part of the 2FA implementation, NMRhub accounts will be migrated to a new user account management system which requires a one-time password reset for all NMRhub accounts.  All NMRhub users should followed the process below to complete the initial setup steps include resetting password, setting password recovery questions and adding NMRhub in an authenticator application.


== Update process ==
== Step 1: Log into NMRhub to Generate the Magic Link ==
When logging in to website after update, you will receive a notification to check your institution email
Log into NMRhub with your current NMRhub account and password. A magic link will be sent to the email address associated with your NMRhub account to start the 2FA set up process.


[[File:Email check.png|frameless|600x600px]]
[[File:Email check.png|frameless|600x600px]]


Look for email similar to<blockquote>''Hello <user>,''
An email from support@nmrhub.org will be as below:<blockquote>''Dear <user>,''


''NMRbox is moving to a new account system, and your account needs a few minutes of your''


''attention before you can sign in again. Nothing has gone wrong, and you have not been''
''We received a request to reset your password for NMRhub username: <username>''


''locked out -- but this has to be done before the changeover, or you will lose access to''
''Please click here and follow the prompts to update your password.''


''NMRbox, including SSH and VNC.''
''If you did not request a password reset, please contact us at: support@nmrhub.org''


''Use this link to finish setting up your account:''


''<nowiki>https://nmrhub.org/forgot-password/</nowiki><long string>''  
''Thank you,''


''It will walk you through whatever is still outstanding: setting a password, choosing two''


''security questions, and setting up an authenticator app for two-factor sign-in. Have your''
''NMRhub Support Team''


''phone to hand -- you will need to install an authenticator app if you do not already have''
''UConn Health''</blockquote>


''one. The link is good for 24 hours; if it expires, just start signing in again and we''
== Step 2: Reset Password and Create Security Questions ==
Click on the link in the email. You will be guided through the following steps to complete the 2FA setup:


''will send you a fresh one.''
# Reset password. You may skip this step if you've recently reset your password. The new password must meet the current password complexity rules.
# Create security questions and the answers to them:


''If you have any trouble, reply to this message or write to''
=== Security questions ===
 
''support@nmrbox.org and we will help you through it.''
 
''— The NMRbox team''</blockquote>
 
 
If you've completed any of the following three steps, it will automatically be skipped if you resume this process again later.
 
== Password ==
Following the link, you will likely be prompted to set a new password (unless you have recently changed your password). f your old password meets our complexity rules, you can continue using it, but you must still go through this process to set it again. This is required as we are migrating to a new user management system and cannot automatically migrate your existing password.
 
== Security questions ==
After setting your password (if required), complete security questions:
After setting your password (if required), complete security questions:


[[File:Questions.png|frameless|600x600px]]
[[File:Questions.png|frameless|600x600px]]


== OTP QR code ==
== Step 3: Add NMRhub account to your authenticator phone application ==
You will then be prompted to add a QR (quick-response) code to your authenticator app and verify the code it returns.
Scan the QR code and add NMRhub to the authenticator app of your choosing.  


[[File:Qrcode.png|frameless|600x600px]]
[[File:Qrcode.png|frameless|600x600px]]


== Logging in ==
== Step 4: Log in ==
Finally, you'll be taken to the logon page for the website and Opensearch Dashboards.
After you finish setting up the 2FA authenticator, log into NMRhub - You will be required to enter a One-Time-Password (OTP) generated in your phone authenticator app.


While you can save your password in a password manager, the OTP will change and will need to entered.
While you may save your password in a password manager, the OTP will be generated in real time and need to be entered after the previous 2FA authentication expires.  


[[File:Keycloak.png|frameless|600x600px]]
[[File:Keycloak.png|frameless|600x600px]]
As long as you are using the same browser on the same machine, website logon will only be needed periodically.

Revision as of 23:41, 10 September 2026

Starting 9/22/2026, NMRhub users will be required to use Two factor authentication (2FA) to log into NMRhub services including NMRhub, NMRbox and NAN websites, connections to NMRbox servers via SSH or RealVNC, as well as FileZilla file copies to and from NMRbox servers. In addition, as part of the 2FA implementation, NMRhub accounts will be migrated to a new user account management system which requires a one-time password reset for all NMRhub accounts. All NMRhub users should followed the process below to complete the initial setup steps include resetting password, setting password recovery questions and adding NMRhub in an authenticator application.

Step 1: Log into NMRhub to Generate the Magic Link

Log into NMRhub with your current NMRhub account and password. A magic link will be sent to the email address associated with your NMRhub account to start the 2FA set up process.

An email from support@nmrhub.org will be as below:

Dear <user>,


We received a request to reset your password for NMRhub username: <username>

Please click here and follow the prompts to update your password.

If you did not request a password reset, please contact us at: support@nmrhub.org


Thank you,


NMRhub Support Team

UConn Health

Step 2: Reset Password and Create Security Questions

Click on the link in the email. You will be guided through the following steps to complete the 2FA setup:

  1. Reset password. You may skip this step if you've recently reset your password. The new password must meet the current password complexity rules.
  2. Create security questions and the answers to them:

Security questions

After setting your password (if required), complete security questions:

Step 3: Add NMRhub account to your authenticator phone application

Scan the QR code and add NMRhub to the authenticator app of your choosing.

Step 4: Log in

After you finish setting up the 2FA authenticator, log into NMRhub - You will be required to enter a One-Time-Password (OTP) generated in your phone authenticator app.

While you may save your password in a password manager, the OTP will be generated in real time and need to be entered after the previous 2FA authentication expires.