Devolutions Authenticator/Workspace: Transfer accounts

Implemented

Devolutions Authenticator/Workspace: Transfer accounts

avatar

I would like to both save the accounts on my android phone and then recover them onto a replacement phone.

I'm getting stuck at the first fence. I need to connect to my account using either a QR or User key+Device Key+Authorization key.

Where do I get that?

I have created a Password Hub Personal Vault but I can't see how to proceed from here. I can't find any tutorials or docs on the subject.

All Comments (12)

avatar

Hello,

Simply go to this URL to configure the 2FA on your Devolutions account:
https://account.devolutions.com/security/two-step-verification

Once completed, you can do a backup and you will be able to restore it on your other device.

Best regards,

Richard Boisvert

avatar

Thank you - that was a great help but I was still stuck with responding on the Device Login page to the request:

Unlock encrypted data
Your password is required to unlock and authorize access to your encrypted data.

To me, the implication was that I had to enter some password related to encrypted data - which I did not have.

Eventually, I tried my account password and it all worked.

I would suggest that the wording be reviewed by adding something like "Enter again your Devolutions Account password ..."

avatar

Hello,

My pleasure! I will check with the team if we could change the message to be clearer.

Best regards,

Richard Boisvert

avatar

Hello,

Just to be certain we will modify the correct authentication window, is it this one? If not, is it the one you received when configuring the Workspace application to use your account or another one?

forum image

Best regards,

Richard Boisvert

avatar

No, that is not the right screen. I did post the correct screen in response to the above but it does not seem to have been saved. I'll try and find the page again...

Its URL: https://account.devolutions.com/security/device-login

forum image

avatar

Hello,

Thank you, one of the developers sent me a screenshot, no need to look for it. The phrasing is confusing, we will look into modifying it. Thank you fro bringing it up!

forum image

Best regards,

Richard Boisvert

avatar

Hello,

Thanks a lot for the suggestion LesD, our team changed the texts in the Device Login page to be more precise on which password is required.

Here's a preview of what's to come in production soon:
forum image

Best regards,

Maxime Forest

avatar

Better - but...

What is "'Devolutions Password"? Is it obvious to all that it is the the account password to log into the Devolutions account?
Maybe "'Devolutions Account Password" would be better.

avatar

Hello,

Could you clarify what other password you would want to enter if you saw this screen?

Best regards,

Maxime Forest

avatar

If you are going to make that argument then there is no need to make any changes at all.

If there is only one possible password to use then just ask: Enter password

My initial point, and my subsequent follow up, is simply that it is not good practice to force the user to make guesses or logical deductions. He must be told in simple language what to do - what is wanted from him.

I've been designing systems for 50+ years and have learned that clarity is everything.

The screen in question is not a simple 'login' screen. It relates to bringing to life an app that is on a smartphone which has its own security settings which most users will not really understand.

When I was presented with that screen I did not know what to enter! Was it a password from the phone app, some other password that I had failed to set up somewhere ....?

It took quite a while of mental reverse engineering to work out that there really was NO relevant password to enter. The password was just an extra layer of security redundancy that the designer had decided was a useful thing to add - asking the user to re-enter the account password that he had entered just a few seconds earlier to log into the account.

Adding the word 'Account' into the instruction makes the meaning clear - there is no ambiguity - there is no need to think.

As an after-though: Maybe even better would be to use "re-Enter your D account password" to make things absolutely clear.

avatar

Just wanted to say that I was not trying to make an argument. We love suggestions like yours and it makes our products better!

I totally agree that it's a good practice for a user to not have to do deductions or guesses which is why we've decided to implement your suggestions.

We've added the word "Account" in both sentences to make it clear that it's the same password when you log to your Devolutions Account.

Title:
Re-enter your Devolutions Account Password

Description:
Your Devolutions Account Password is required to unlock and authorize access to your encrypted data.

Thanks again for the suggestions, and don't hesitate if you find something else that could be improved.

Best regards,

Maxime Forest

avatar

Thank you.
Not arguments! Just Questions and Answers - the way to get clarity. :)