Activate the code grid

This configuration is to be performed only once, during activation. If the method is already activated, you can use it directly.

Prerequisite

Choose the safe that will keep your codes⚓

We recommend and document below the use of KeepassXC (desktop).

Advice

If you print your code grid on paper, keep it with as much care as your identity or bank card.

Warning

Below, click the icon (“Show steps in list”) to miss none.

Procedure
  1. (If necessary) Install KeepassXC⚓
    • If your workstation is managed by DNum : KeepassXC is pre-installed on Windows and Linux workstations. For macOS, contact us if needed.

    • If you manage your workstation yourself : from the vendor's website, you can download and install KeepassXC (Windows, MacOS, Linux), at https://keepassxc.org/download.

  2. (If necessary) Initial configuration of KeepassXC⚓

    Once KeepassXC is installed, if not already done, perform its initial configuration:

    1. Open KeepassXC then click on Create a database.

      This is the encrypted file that will store the various usernames and passwords you entrust to it.

    2. Enter a name for this database (optional).

    3. Set the encryption parameters. You can use the default settings (“KBDX”).

    4. Choose a strong password (ideally a good passphrase) to unlock your database, i.e., access all passwords stored in this database. Do not use your Unistra password!

      ⚠️ No one will be able to recover this password if you lose it. Don't worry, if you follow our creation recommendations (link above), it should be easy for you to remember ... while being difficult for others to find.

    5. Choose the storage location of your database on your workstation.

      ⚠️ Make sure to choose a location located in your AD (usually “Desktop” or “Documents”) or synchronized via Seafile, to ensure a regular backup of it.

  3. Activate the method⚓
    1. On CAS-MFA, click on the tile showing a grid/table and indicating “a code grid should be generated randomly”

    2. Click the slider to Activate the method, then on Generate codes.

      A 6-digit code grid is generated and displayed.

  4. Place the grid in KeepassXC⚓

    1. In KeepassXC, create an “entry” to hold the secret⚓

    • If you already have an entry for your Unistra password, go directly to step 2.

    • Otherwise, start by creating an entry:

      1. Go to the Entries tab then New entry...

      2. Enter the information you need: at minimum a Title (the name of your entry).

      3. Validate by clicking OK.

    2. Associate this entry with your code grid⚓

    1. Select the entry then click on the Entries tab, Edit entry....

    2. On CAS-MFA, select and copy the code grid. To do this, you can for example select only the table with the mouse then copy, or perform a Ctrl+A then Ctrl+C to copy the content of the whole page.

    3. Back in KeepassXC, in the entry modification window:

      1. On the left, click on Advanced.

      2. At the top, in the Additional Attributes section, click the Add button on the right.

      3. Give a name to the attribute, e.g., “Code Grid” and confirm with the Enter key.

      4. The attribute is selected. Click in the empty field of the second column and paste your grid or the previously copied page, e.g., by performing Ctrl+V. If needed, you can delete the lines preceding the code table.

      5. At the bottom of the page, click Apply then OK to save.