GUIDELINE OF USAGE FOR SSO & 2FA

The single sign-on system will be managed by Keycloak, and the guidelines are as follows:

  • Users can view all systems that support Single Sign-On via UTHMID home page https://uthmid.uthm.edu.my
  • Systems with “SSO Ready” status can be accessed via the same link as before.
  • The user will be redirected to the same login page for each system at UTHM once they logout.
  • The “Skip OTP for 30 days” feature will be available for users to choose to stay logged in if the devices stays on or standby.
  • In the event of a lost or getting a new smartphone, kindly use https://reset.uthm.edu.my and choose “Forgot password” to reset your OTP via your personal email(@mail.com / @outlook.com / @yahoo.com).
  • The use of 2FA will only use the Google Authenticator app using OTP and a new code will be auto generate every 30 seconds
  • New password policy must be a minimum of 8 characters and a combination of one uppercase letter with a number/numeric and with a symbol except “@#&” or using a name / username / account. We will also detect if the password has been previously leak.