Introduction
The Two User Authentication reauthentication workflow in the Windows Login application requires verification from two users before granting access to Epic workflows. These workflows are configured in the Tenant Admin Portal.
Prerequisites
You must have access to Tenant Admin account.
The Windows Login application must be created in the Tenant Admin Portal, for more information refer: How to create and configure Application Type - Passwordless
Steps to Configure Two User Authentication
Log in to the Tenant Admin Portal.
On the Applications page, select the preferred Windows Login application.
The application details page is displayed.
Click Configure tab > Epic EHR .
The Epic EHR page is displayed.
Do the following:
Turn on Enable Reauthentication Workflow toggle button.
Select mode for Two User authentication:
Under Mode for 1st user, select the authentication factor from dropdown.
Under Mode for 2nd user, select the authentication factor from dropdown.
Click Save.
Note: Users can select one of the available reauthentication modes from dropdown:
βApplication Factors: Uses authentication factors assigned at application level.
βFirst Factor Only: only reauthenticates using the first authentication factor configured.
βSecond Factor Only: only reauthenticates using the second authentication factor
Two User Authentication is successfully configured.
Keywords
| Two user authentication Epic| Configure two user authentication Oloid| Epic reauthentication two users| Windows Login two user workflow |






