Horrible App authentication experience

cmr
Kind of a big deal
Kind of a big deal

Horrible App authentication experience

Since the app was updated to the new one (at least on Android) with the slanty M logo, the login experience is so painful that it stops you using the app.  Is it only me or does anyone else have to enter username, password and 2FA code EVERY time you go into the app, even if it is only a few seconds since you were last in it?

 

/rant

If my answer solves your problem please click Accept as Solution so others can benefit from it.
10 Replies 10
Inderdeep
Kind of a big deal

Oh no really ?

Cisco Awarded Blogs 2020/2021 https://www.thenetworkdna.com/
Prestont
Here to help

I know on the IOS app I do have to enter the username and password and mfa each time. but it does allow you back in if you leave the app then go back. 

cmr
Kind of a big deal
Kind of a big deal

Thanks @Prestont, I should be clear that I mean closing the app then relaunching.  If I leave the app open then it keeps you logged in for the default timeout (set to 15 mins to meet compliance standards).

 

My main gripe is that the browser can remember MFA for 30 days and the app nothing 🤬

If my answer solves your problem please click Accept as Solution so others can benefit from it.
michalc
Meraki Employee
Meraki Employee

Interesting.

 

I have closed and reopen my Meraki App on iOS and it keeps me logged in. I reboot my phone and I am still logged in. I have Organization Idle Timeout disabled. Does your organization have an idle timeout configured? This could be checked in SETTINGS -> ACCOUNT.

My Meraki App version on iOS is 4.142.0

If you found this post helpful, please give it kudos. If it solved your problem, click "accept as solution" so that others can benefit from it.
AidanKamp
Meraki Employee
Meraki Employee

Adding to the 'doesn't happen to me' train 😅
I'm not seeing this issue on Android 16/Baklava either - app version 4.141.0, build 195147. No beta or anything running. I can quit out of the app, wait a few mins and re-enter the app without having to log in. 

 

Were you perhaps added to a new organisation recently with a very low idle timeout or something similar?

Whilst I am a Meraki employee, some of what I post may be opinion (especially architecture!). Others may have better or more efficient ways of doing things, so please learn from everyone!
Prestont
Here to help

hello,

it sounds like some ae having no issues, but it sounds like they don't have a timeout setting. we have our time out setting set to 3 hours. i am going to remove our timeout and see if it works and keep me log in now.

rhbirkelund
Kind of a big deal
Kind of a big deal

I have the iPhone App, but I have also enabled FaceID, and even though I'm logged out, I can just use FaceID again, and it logs me in. Without Username/password and MFA.

 

Whether that is by design, or.....

LinkedIn ::: https://blog.rhbirkelund.dk/

Like what you see? - Give a Kudo ## Did it answer your question? - Mark it as a Solution 🙂

All code examples are provided as is. Responsibility for Code execution lies solely your own.
PhilipDAth
Kind of a big deal
Kind of a big deal

Have you got biometric authentication enabled in the app (assuming you are using SAML)?

https://documentation.meraki.com/General_Administration/Managing_Dashboard_Access/SP-Initiated_SAML_...

 

cmr
Kind of a big deal
Kind of a big deal

I'm not using SAML and though I have fingerprint authentication enabled, all it does is fill in the password and then ask for the MFA code...

If my answer solves your problem please click Accept as Solution so others can benefit from it.
PhilipDAth
Kind of a big deal
Kind of a big deal

You have me thinking.  What about if you configure SAML (you can use Entra ID)?  You would use your SAML credentials and SAML MFA, and then the SAML access token would be stored for as long as your SAML provider permits, and you can use biometric authentication on your phone.

 

A heavy solution for the problem, but it is an option for you.  And if you are heavily regulated, this is likely to tick additional boxes.

Get notified when there are additional replies to this discussion.