Forum Discussion

Shane404's avatar
Shane404
Experienced User
2 months ago

2 step authorize and password enter

Hi,

 

I don't remember since when, I need to enter password everyday to login MYOB. And Two-Factor Verification code as well. This is so inconvenience. I am getting tired of entering a long account name, long password then a stupid email code again and again.

 

We have 10 company files, which means I need to repeat those steps 10 time everyday. And even some day I need to do it a few times per day for no reason. Morning login, then password and code needed again in the next few hours.

 

Please remove this stupid function.

 

  • This is the most frustrating thing, we have over 40 company files and having to sign in to each everytime you want to use it, and now the 2FA everytime too is just too much.  If you leave the file open it then times out in a short time so you have to close and login again.  

    What a waste of time, get with the play MYOB every update just causes more time wasting.

  • Shane404's avatar
    Shane404
    Experienced User

    It is not helping at all.  Two-factor authentication should be an option instead of compulsory.

    • Princess_R's avatar
      Princess_R
      MYOB Moderator

      Hi Shane404,

       

      The ATO has mandated a 24-hour two-factor authentication (2FA) to enhance security and comply with legal requirements. We've implemented these changes to follow best practices in a challenging security environment and to protect your sensitive business data from unauthorised access. For more details, check out this link.

       

      Cheers,

      Princess

      • JenineD's avatar
        JenineD
        Experienced Cover User

        But it isn't every 24 hours.  I singed into the same client data file 5 times yesterday and I had to do the whole verification over and over.  I signed out and forgot I had to do something else and then I had to sign in again to the same data file I had already worked in earlier that day.

        Yes, i have all the 2FA set up, I have 50 clients in my desktop screen.  However, if I open the web-browser, I can navigate from client file to client file without any 2FA but I hate using the browser.  I don't find it user friendly at all.

         

        This has to be rectified.  I, and every other accountant/bookkeeper, want to sign in once a day to their file profile and be able to open every client for at last a 12 hour period (bring back the "keep me logged in for 12 hours" box PLEASEEE!!!!

  • Ill second this, its stupid to have to do it every single day. Its a huge waste of time.

     

    At least bring back the old check box so we only have to do it once a month.

  • NikkiParsons's avatar
    NikkiParsons
    Valued Cover User

    Isaiah_C the overnight change in 2FA is mindbogglingly overkill. If files are on different versions (client hasn't upgraded and we don't want to upgrade as they manage their file) you have to do a full login in and 2FA, then if you swap files after doing a 2FA login in you have to fully sign in, and if you leave a file idle for a period of time to work around this, it kicks you out of the file and you have to fully login again with 2FA. Without a lie, I have logged in over 20 times since 10am this morning. It's ridiculous.

  • Shane404's avatar
    Shane404
    Experienced User

    Things is getting even worse.. Just read the MYOB notification. From 27/11, we need to sign in MYOB every 20-30 mins. Are you kidding? Seriously? I am now considering to be a Xero user now.

  • Isaiah_C's avatar
    Isaiah_C
    MYOB Moderator

    Hi Shane404,

     

     We have been actively sharing information about this update through emails and announcements on our Community Forum to keep users informed. Here's the post that provides further details on the implementation of the two-factor authentication and its benefits.

     

    Regards,

    Sai

  • Toban's avatar
    Toban
    Experienced Cover User

    this is a constant time waste throughout the day
    please enable this 2FA to be turned off or at least reduced to once a day.
    Is there any regard for whether your customers actually want this function or not?

  • NikkiParsons's avatar
    NikkiParsons
    Valued Cover User

    Princess_R  

    I have reviewed the information provided in your link and would like to share some ongoing issues with the implementation of the timeout functionality in MYOB AR desktop. Currently, the timeout causes the entire file to crash, requiring a forced "End Task" to restart the program.

    For the past two weeks, I have been calling most days to address these challenges, yet we still experience the inefficiency of logging into every file individually, even after completing 2FA to access our online profile. This is not only time-consuming but significantly reduces productivity. When working on multiple entity files, the time spent waiting for email codes, opening authenticator apps, or receiving SMS codes often exceeds the time it would have taken to complete the task.

    Additionally, the timeout functionality fails to consider workflows that involve using MYOB alongside other programs, such as working with reports in Excel. The requirement for continuous keystrokes or mouse movements to keep the session active makes it difficult to focus on external tasks for any length of time. For example, on Wednesday, the program was timing out with an "Are you still there?" message after just 15 minutes, though I noticed this behavior seemed to improve yesterday.

    While I understand MYOB’s legal obligation to implement 2FA as mandated for digital service providers under Australian legislation, it is not appropriate for MYOB to dictate how long a user can have a file open or determine whether they are actively working on it. System-level settings like screen savers and lock screens should remain the user's responsibility.

    The ATO mandates 2FA to ensure secure access to sensitive information, which is achieved when users log into their MYOB profile. Requiring 2FA for each individual file under the same profile is unnecessary and creates significant inefficiencies. A more reasonable approach would be to enforce 2FA for the initial login and allow access to all authorized files under the profile for a reasonable session duration, such as 8 hours.

    I urge MYOB to reconsider the current implementation to better balance security requirements with usability and productivity. Thank you for addressing these concerns.