Steps: Set Up Mobile Authentication
- Review your existing configuration of authentication policies for the Workday desktop experience. See Concept: Authentication Policies.
- Security:Set Up: Tenant Setup - Securitydomain in the System functional area.
You can set up mobile authentication so your mobile users can sign in to Workday on Android, iPad, and iPhone with these authentication options:
- Personal Identification Number (PIN).
- Biometric (on supported devices only).
- Fingerprint authentication (Touch ID).
- Face ID.
- Access theMobile Authenticationsection on theEdit Tenant Setup - Securitytask.Select these check boxes to enable mobile PIN and biometric authentication:
- Enable Biometric Authentication.
- Enable Mobile PIN Authentication.
- (Optional) Create an authentication policy or edit your existing authentication policy to control which user groups can sign in with biometric authentication or a mobile PIN.On theAuthentication Rulesetgrid:
- SelectMobile PIN/Biometricas an allowed authentication type on rules to enable security groups to use biometric authentication or a mobile PIN.
- RemoveMobile PIN/Biometricas an allowed authentication type from rules to restrict security groups from using biometric authentication or a mobile PIN.
If you enable mobile PIN or biometric authentication but don't create an authentication policy, all users can sign in with the authentication types you enabled.
When users sign in, Workday prompts them to authenticate with the methods you've enabled. Users can configure their preferred sign-in methods in the app settings.
If you enable biometric authentication, users with supported devices can authenticate with:
- A fingerprint on Android.
- Touch ID or Face ID on iPad or iPhone devices that have Touch ID or Face ID enabled.