Skip to main content

How to Configure Re-authentication Workflow for Epic EHR in Tenant Admin Portal

Updated today

Introduction

The Reauthentication Workflow allows Tenant Admins to enforce additional authentication during an active Windows session for applications integrated with Epic EHR. This ensures that user identity is re-verified before performing sensitive actions or continuing access.

Prerequisites

Steps to Configure Re-authentication Workflow

  1. Log in to the Tenant Admin Portal.

  2. On the Applications page, select the preferred Windows Login application.

    The application details page is displayed.

  3. Click Configure tab > Epic EHR .

    The Epic EHR page is displayed.

  4. Do the following:

    1. Enable Reauthentication Workflow

    2. Configure Two User Authentication

    3. ReAuthentication Current User (Second Factor)

    4. Click Save.

    The Reauthentication workflow is successfully configured.

Enable Reauthentication Workflow

  1. Turn on Enable Reauthentication Workflow toggle button.

  2. Configure one of the available reauthentication modes:
    ​Application Factors: Uses authentication factors assigned at application level.
    ​First Factor Only: only reauthenticates using the first authentication factor configured.
    ​Second Factor Only: only reauthenticates using the second authentication factor configured.

  3. Click Save.

    Reauthenticate Current User: Reauthenticates the currently logged-in Windows user using the configured authentication device.

  4. Do the following:

    1. Select Reauthenticate Current User.

    2. From the Application Factor dropdown, choose the authentication factor assigned at the application level.

    3. Click Save.

Configure Two User Authentication

  1. Under Mode for 1st user, select the authentication factor from dropdown.

  2. Under Mode for 2nd user, select the authentication factor from dropdown.

  3. Click Save.

Reauthenticate Current User - Second Factor

  1. Select Reauthenticate Current User - Second Factor.

  2. From the Application Factor dropdown, choose the authentication factor assigned at the application level:

    1. OLOID is Used as Primary and Secondary Auth Device

    2. OLOID is Used as Primary Authentication Device

    3. OLOID is Used as Secondary Authentication Device

  3. Click Save.

Configure Factors

Configure the appropriate Primary and Secondary factors for second-factor reauthentication through Oloid.
To configure factors, do the following:

  1. Under Select Primary Factor, select the authentication factor from dropdown.

  2. Under Select Secondary Factor, select the authentication factor from dropdown.

  3. Click Save.

Note: When both options are enabled, ensure that the Primary and Secondary factors must be different.

Reauthentication workflow successfully configured.


Keywords

| Configure reauthentication workflow| Windows reauthentication Epic EHR | Reauthenticate current user Windows| Epic EHR reauthentication configuration |

Did this answer your question?