Skip to content Skip to navigation

Change Two-Step Authentication Challenge Level

This option is only available to you after you've set up two-step authentication. If you have not done so, or if you have removed two-step authentication from your account, you will not have a link to your challenge level.

You can choose your challenge level, which determines how often you're asked to authenticate  when you access a WebAuth-protected Stanford site. You have two choices.

  1. Open a browser and visit the Stanford Accounts Application
  2. Click Manage.
  3. Click the Two-Step Auth tab.  
  4. Click Set level.
     
    Set Level button
    Set Level button (displays default or current setting).
     
     
  5. You are presented with two  choices:
     
    • The Require two-step authentication once per device every 28 days challenge level is the default when you finish setting up two-step authentication for the first time. At this level, our systems require you to authenticate at least once every 28 days per device per browser (as well as when you log in to a site that requires two-step authentication).   You may be challenged more often, depending on the requirements of each site and your browser settings.
      select require two-step authentication once per week 
      Require two-step authentication once per device every 28 days button. Default setting.

       
    • The Always challenge level requires you to authenticate whenever you access a WebAuth-protected Stanford site. This ensures that no one can log into your account without both knowing your password and having your device. This provides the highest level of security and can help foil attempts by others to get into your Stanford account.
      Always require two-step authentication button
      Always require two-step authentication button.

       
  6. Click the option that you prefer. Your level will be set accordingly and you will return to the Two-Step Authentication settings page.

Reset two-step authentication for all browsers

If your challenge level is set to Require two-step authentication once per device every 28 days,  you are presented with an additional button when you return to the Two-Step Auth settings page. The Reset two-step authentication for all browsers button erases record of recently used browsers on computers or mobile devices. You will be prompted to authenticate with two-step the next time you log in, on each device. This can provide an extra measure of security if you are using a public or shared computer. 

Make sure you have access to your default two-step authentication device.. Then:

  1. Click Reset two-step authentication for all browsers.
     
    Reset two-step authentication for all browsers button
    Reset two-step authentication for all browsers button.
  2. On the next page, click Reset two-step authentication for all browsers or click cancel to return to the settings page. Note: this action cannot be undone. However, as you start to log in from your customary locations, they will be remembered for subsequent logins.

    screen where you click button to really reset two-step authentication for all browsers
Last modified January 29, 2015