Multi-Factor Authentication (MFA) enables you to protect your GroupWise system by adding additional authentication on top of your GroupWise login. GroupWise supports MFA through NetIQ Advanced Authentication that allows you to add different methods of authentication to your GroupWise LDAP password login. Strong MFA is achieved by using two of the following methods of authentication:
Something you know such as password, PIN, and security questions.
Something you have such as smartcard, token, and mobile phone.
Something you are such as biometric (fingerprint or iris).
NOTE:MFA only works with GroupWise LDAP users (Active Directory or eDirectory). It does not work for GroupWise only users like superadmin.
While MFA is new in GW 18.3, older versions of the GroupWise client can still use MFA. The list of authentication methods that work with older clients can be found in the Table of NetIQ Auth Methods and GroupWise Client Compatibility under the UI-less column.
The following sections take you through installing and configuring NetIQ Advanced Authentication for GroupWise:
Adding an LDAP Repository to the Advanced Authentication Server
Configuring the GroupWise Endpoint in Advanced Authentication
Table of NetIQ Auth Methods and GroupWise Client Compatibility