User Guide
This guide explains how to use all features of the Identity Service as an end user.
Getting Started
Accessing the Identity Portal
- Open your web browser and navigate to your organization's Identity portal
- You will see the login page with email and password fields
- The interface supports multiple languages (English, Hungarian, German) - select your preferred language from the header
Language Selection
Click the flag icon in the header to change the interface language:
- 🇬🇧 English
- 🇭🇺 Magyar (Hungarian)
- 🇩🇪 Deutsch (German)
Theme Selection
Toggle between light and dark mode by clicking the sun/moon icon in the header. Your preference is saved automatically.
Logging In
Standard Login
- Enter your email address in the email field
- Enter your password in the password field
- (Optional) Check "Remember me" to stay logged in for 30 days
- Click Sign In
Login with Two-Factor Authentication (2FA)
If you have 2FA enabled:
- Complete the standard login steps above
- A verification screen will appear
- Open your authenticator app (Google Authenticator, Authy, etc.)
- Enter the 6-digit code shown in your app
- Click Verify
The 2FA code changes every 30 seconds. If your code is rejected, wait for a new code and try again.
Login with PIN
If PIN verification is required:
- Complete the standard login steps
- Enter your 6-digit PIN when prompted
- Click Verify
Forgot Password
If you forgot your password:
- Click Forgot Password? on the login page
- Enter your email address
- Click Send Reset Link
- Check your email for the password reset link
- Click the link and set a new password
Password reset links expire after 60 minutes. Request a new link if yours has expired.
Dashboard
After logging in, you'll see your personal dashboard.
Security Score
The security score shows how well-protected your account is:
| Score | Status | Recommendation |
|---|---|---|
| 100% | Excellent | Your account is fully secured |
| 70-99% | Good | Consider enabling additional features |
| 50-69% | Fair | Enable 2FA for better security |
| Below 50% | Poor | Your account needs attention |
How to improve your score:
- ✅ Enable Two-Factor Authentication (+30 points)
- ✅ Set up a Security PIN (+20 points)
- ✅ Change password regularly (+10 points)
- ✅ Verify email address (+10 points)
Quick Actions
The dashboard provides quick access to:
- Profile Settings - Update your personal information
- Security Settings - Manage 2FA, PIN, and password
- Active Devices - View and manage logged-in devices
Recent Activity
View your recent account activity including:
- Login events
- Profile changes
- Security changes
- Device changes
Each entry shows:
- Action type
- Date and time
- IP address
- Location (if available)
Active Devices
See all devices currently logged into your account:
- Device type (Desktop, Mobile, Tablet)
- Browser and operating system
- Last activity time
- Current session indicator
Profile Settings
Viewing Your Profile
- Click on Profile in the navigation menu
- View your current profile information
Updating Profile Information
- Navigate to Profile
- Click Edit Profile
- Update the following fields:
- First Name - Your given name
- Last Name - Your family name
- Display Name - How your name appears to others
- Phone - Your contact phone number
- Timezone - Your preferred timezone
- Language - Your preferred language
- Click Save Changes
Uploading Profile Picture
- Navigate to Profile
- Click on the avatar image or Change Photo
- Select an image file (JPG, PNG, max 2MB)
- Adjust the crop area if needed
- Click Upload
Security Settings
Accessing Security Settings
- Click on Security in the navigation menu
- You'll see all available security options
Changing Your Password
Requirements for a strong password:
- Minimum 12 characters
- At least one uppercase letter (A-Z)
- At least one lowercase letter (a-z)
- At least one number (0-9)
- At least one special character (!@#$%^&*)
- Cannot be one of your last 5 passwords
To change your password:
- Navigate to Security
- Find the Change Password section
- Enter your Current Password
- Enter your New Password
- Confirm your new password
- Click Update Password
- Use a password manager to generate and store strong passwords
- Never reuse passwords across different services
- Consider using a passphrase (e.g., "Coffee-Mountain-42-Sunset!")
Two-Factor Authentication (2FA)
Two-Factor Authentication adds an extra layer of security by requiring a code from your phone in addition to your password.
Enabling 2FA
- Navigate to Security
- Find the Two-Factor Authentication section
- Click Enable 2FA
- A QR code will appear on screen
- Open your authenticator app (Google Authenticator, Authy, Microsoft Authenticator)
- Scan the QR code with your app
- Enter the 6-digit code from your app
- Click Verify & Enable
Save your Recovery Codes in a safe place! You'll need them if you lose access to your authenticator app.
Using 2FA
After enabling, you'll need to enter a 2FA code when:
- Logging in from a new device
- Logging in after your session expires
- Performing sensitive operations
To enter a 2FA code:
- Open your authenticator app
- Find the entry for "Vecton Identity"
- Enter the 6-digit code shown
- The code refreshes every 30 seconds
Recovery Codes
Recovery codes are backup codes you can use if you lose your phone:
- Each recovery code can only be used once
- You receive 8 recovery codes when enabling 2FA
- Store them securely (password manager, printed in a safe location)
To view recovery codes:
- Navigate to Security
- Click View Recovery Codes
- Enter your password to confirm
To regenerate recovery codes:
- Navigate to Security
- Click Regenerate Recovery Codes
- Enter your password
- Save the new codes (old codes will stop working)
Disabling 2FA
- Navigate to Security
- Find the Two-Factor Authentication section
- Click Disable 2FA
- Enter your password to confirm
- Click Confirm Disable
Disabling 2FA makes your account less secure. Only disable if necessary.
Security PIN
The Security PIN provides quick verification for sensitive operations.
Setting Up Your PIN
- Navigate to Security
- Find the Security PIN section
- Click Set PIN
- Enter a 6-digit PIN
- Confirm your PIN
- Click Save
PIN Rules:
- Must be exactly 6 digits
- Cannot be sequential (e.g., 123456, 654321)
- Cannot be all the same digit (e.g., 000000, 111111)
When You'll Need Your PIN
- Confirming sensitive account changes
- Authorizing high-value transactions
- Accessing protected areas
Changing Your PIN
- Navigate to Security
- Click Change PIN
- Enter your current PIN
- Enter your new PIN
- Confirm the new PIN
- Click Save
Disabling Your PIN
- Navigate to Security
- Click Disable PIN
- Enter your password
- Click Confirm
PIN Lockout
If you enter the wrong PIN too many times:
- Your PIN will be temporarily locked (15 minutes)
- You'll receive an email notification
- After lockout expires, you can try again
Device Management
Viewing Your Devices
- Navigate to Security or Profile
- Find the Active Devices section
- View all devices logged into your account
Each device shows:
- Device Name - e.g., "Chrome on Windows"
- Device Type - Desktop, Mobile, or Tablet
- Browser - Chrome, Firefox, Safari, etc.
- Operating System - Windows, macOS, iOS, Android
- IP Address - Network address (partially masked)
- Last Activity - When the device was last used
- Current badge - Indicates your current device
Revoking Device Access
If you see an unfamiliar device or want to log out from another device:
- Find the device in the list
- Click the Revoke button (or trash icon)
- Confirm the action
Revoking a device will immediately log out that session. The user will need to log in again.
Trusting a Device
When logging in from a new device, you may be asked to trust it:
- Trust this device - Skip 2FA verification for 30 days
- Don't trust - Always require 2FA on this device
Activity Log
Viewing Your Activity
- Navigate to Profile
- Click View Activity Log
- Browse your account activity history
Activity Types
| Activity | Description |
|---|---|
user.login | Successful login |
user.login_failed | Failed login attempt |
user.logout | Logout |
user.password_changed | Password was changed |
user.profile_updated | Profile information updated |
2fa.enabled | 2FA was enabled |
2fa.disabled | 2FA was disabled |
pin.set | PIN was set |
pin.changed | PIN was changed |
device.revoked | Device access was revoked |
Suspicious Activity
If you see unfamiliar activity:
- Immediately change your password
- Enable 2FA if not already enabled
- Revoke all devices you don't recognize
- Contact support if the issue persists
Logging Out
Standard Logout
- Click on your profile avatar in the header
- Select Logout from the dropdown
- You'll be redirected to the login page
Logout from All Devices
To log out from all devices at once:
- Navigate to Security
- Click Logout from All Devices
- Confirm the action
- All sessions will be terminated
Troubleshooting
I Can't Log In
Check the following:
- Verify your email address is correct
- Check Caps Lock is not enabled
- Ensure you're using the correct password
- If 2FA is enabled, make sure your authenticator time is synced
Still having issues?
- Use the "Forgot Password" feature
- Contact your administrator
My 2FA Code Isn't Working
- Check your phone's time - Your phone's clock must be accurate
- Wait for a new code - Codes refresh every 30 seconds
- Use a recovery code - If you have one saved
- Contact support - They can disable 2FA for you
I Lost My Phone (with 2FA)
- Use one of your Recovery Codes to log in
- Go to Security and disable 2FA
- Set up 2FA again on your new phone
My Account is Locked
Accounts can be locked after multiple failed login attempts:
- Wait 15-30 minutes and try again
- Contact your administrator to unlock immediately
I See Suspicious Activity
- Change your password immediately
- Enable 2FA if not enabled
- Revoke all unknown devices
- Contact support to report the incident
Getting Help
Contact Support
If you need assistance:
- Email: support@vecton.hu
- In-app: Click the Help icon in the header
Reporting Security Issues
For security concerns:
- Email: security@vecton.hu
- Do not share security issues publicly