Multi-factor Authentication (MFA)

Multi-factor Authentication (MFA)

What is Multi-factor Authentication (MFA)?

When signing into online accounts be it banking apps, social media and/or email accounts, you must prove that you are who you say you are. Previously, we’ve done so through using a username and a password which is not quite safe. Multi-factor Authentication is added security that is a second verification method to prove who you are. For Payfast by Network, MFA is a mandatory login security feature and requires a user to provide an additional step for identity verification before allowing access into their account.

How do I set up MFA?

InfoNotePlease ensure that your preferred Authentication app, i.e., Google, Microsoft or LastPass, has been downloaded on your device before proceeding with setup. The following steps require registration via your authentication app.

1. Log in to your Payfast by Network Dashboard.

2. Navigate to Account > Security > Multi-factor AuthenticationClick 'Enable MFA'.


3. A new window will open to start the MFA Set Up process. Click 'Set Up Multi-factor Authentication'.


4. In Step 1, a QR code will be displayed on the page, together with a 16-digit key. This allows you to register your device as the authentication tool for future logins.


5. On your device, open your preferred authentication app and scan the QR code on the screen. Alternatively, manually enter the 16-digit key displayed above the QR code in your authentication app.


6. Once the QR code has been scanned successfully, or the 16-digit key entered manually, your authentication app will generate a code (typically 6-digits long).

Note: This code will expire after a set amount of time (usually 30 seconds). If this happens, a new code will be automatically generated.


7. Copy the generated code, return to the Payfast by Network screen, enter it in Step 2, then click 'Verify Code'. This will link your device to your Payfast by Network profile.


8. A set of emergency recovery codes will be displayed with the option to copy them, or download them as a PDF file.
Note: Keep them in a secure storage like Google Drive so you can retrieve them in the event that you lose access to your authentication device. Once saved, click 'Login' to access your Payfast by Network Dashboard.


How do I log in after MFA has been enabled on my profile?

Once Multi-factor Authentication has been successfully set up on your profile, you will need to generate a new code on your authentication app every time you log in to your Payfast by Network Dashboard.

1. Log in to your Payfast by Network Dashboard.


2. Go to your authentication app and copy the code displayed, then enter it on the Payfast by Network MFA screen. Click 'Login' to access your Payfast by Network Dashboard.



What happens if I lose my phone?

In the event that you lose access to your authentication device, you can use your emergency recovery codes to log in to your Payfast by Network profile.

AlertNoteEach code can be used only once.

1. Log in to your Payfast by Network Dashboard.

2. Click the 'Emergency Recovery Code' link on the MFA screen. 

3. Retrieve your emergency recovery codes from your secure storage location and enter one of them, then click 'Log In'.


Contact our support staff on support@payfast.help who will be able to assist you to reset your MFA and register a new device.
Note: Once your emergency recovery codes have been used up, you will not be able to log in to your Payfast by Network Dashboard.
    • Related Articles

    • What is two-factor authentication?

      Two-factor authentication (2FA) adds extra security to your Payfast profile by requiring two things for a successful login: your password and a unique code (generated on your phone or sent to it via SMS). Even if your password is compromised, people ...
    • How do I enable two-factor authentication (2FA)?

      Two-factor authentication is an optional (yet recommended) login security feature that requires both your password and your mobile phone to successfully log in to your PayFast account. ​ To enable two factor authentication for your PayFast account, ...
    • How do I change my phone number for two-factor authentication?

      To change your phone number, do the following: Log in to your PayFast account. Navigate to Profile > Security Info. Click Edit.   Click the Two Factor Authentication tab.  Enter your new phone number and click Subscribe. Please note: If you are using ...
    • How do I obtain a two-factor authentication key to log in with?

      There are two ways to obtain an authentication key. If you are using a smartphone, download the Authy app for your iPhone or Android mobile phone. Every time you log in, you will need to generate a secure token using the Authy app. If you don't have ...
    • Can I switch off two-factor authentication?

      Yes, although certain high-risk clients may be required to use it to protect their accounts. This feature can be switched on and off by logging in to your PayFast account and clicking the Profile tab.