Skip to main content
Administrator Guide
Last Updated: 2024-03-22
Steps: Set Up Mobile Authentication

Steps: Set Up Mobile Authentication

  • Review your existing configuration of authentication policies for the Workday desktop experience. See Concept: Authentication Policies.
  • Security:
    Set Up: Tenant Setup - Security
    domain in the System functional area.
You can set up mobile authentication so your mobile users can sign in to Workday on Android, iPad, and iPhone with these authentication options:
  • Personal Identification Number (PIN).
  • Biometric (on supported devices only).
    • Fingerprint authentication (Touch ID).
    • Face ID.
  1. Access the
    Mobile Authentication
    section on the
    Edit Tenant Setup - Security
    task.
    Select these check boxes to enable mobile PIN and biometric authentication:
    • Enable Biometric Authentication
      .
    • Enable Mobile PIN Authentication
      .
  2. (Optional) Create an authentication policy or edit your existing authentication policy to control which user groups can sign in with biometric authentication or a mobile PIN.
    On the
    Authentication Ruleset
    grid:
    • Select
      Mobile PIN/Biometric
      as an allowed authentication type on rules to enable security groups to use biometric authentication or a mobile PIN.
    • Remove
      Mobile PIN/Biometric
      as an allowed authentication type from rules to restrict security groups from using biometric authentication or a mobile PIN.
    If you enable mobile PIN or biometric authentication but don't create an authentication policy, all users can sign in with the authentication types you enabled.
When users sign in, Workday prompts them to authenticate with the methods you've enabled. Users can configure their preferred sign-in methods in the app settings.
If you enable biometric authentication, users with supported devices can authenticate with:
  • A fingerprint on Android.
  • Touch ID or Face ID on iPad or iPhone devices that have Touch ID or Face ID enabled.