> For the complete documentation index, see [llms.txt](https://gsfcorp.gitbook.io/eca/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://gsfcorp.gitbook.io/eca/operation-guides-ecaos-6/enrol-virtual-security-key-for-eca-access-code.md).

# Enrol Virtual Security Key for ECA Access Code

## Applicability

* ecaOS 5
* ecaOS 6

## Description

* Before first use, requires enrolment into Authenticator mobile app.&#x20;
* The enrolment of **Virtual Security Key** allows to the user to obtain **ECA Access Code**, which is mandatory for accessing System Manager (in ecaOS 5) and DashBoard (in ecaOS 6).
* With the ECA Access Code, the physical USB Security Key is not required for accessing the System Manager (in ecaOS 5) and DashBoard (in ecaOS 6)

{% hint style="info" %}
Please make sure your device's time is always synchronized with ECA's time. Otherwise, the login may fail, because the ECA Access code is valid for 30 seconds only.&#x20;
{% endhint %}

## Procedure

1. Ensure you have the **Virtual Security Key** (card). Every ECA has its dedicated unique key, and cannot be shared with other ECA.

<figure><img src="/files/WndUftgOd9ckZBfRYAkZ" alt="" width="188"><figcaption></figcaption></figure>

2. Download and install Google Authenticator from [Google Playstore](https://play.google.com/store/apps/details?id=com.google.android.apps.authenticator2\&hl=en\&gl=US) (for Android) or [App Store](https://apps.apple.com/us/app/google-authenticator/id388497605) (for iOS)
3. Run '**Google Authenticator**' on your device. Click '**Begin**' button.&#x20;

<figure><img src="/files/rZoUfkIIQXZggAtDPO88" alt="" width="188"><figcaption></figcaption></figure>

4. Choose '**Scan a barcode**' to start scanning the QR code on the Virtual Security Key card.&#x20;

<figure><img src="/files/Rcl5Nl8ExHhGc7yOpHQo" alt="" width="188"><figcaption></figcaption></figure>

5. Ensure the QR code is positioned correctly within the scanner frame.&#x20;

<figure><img src="/files/O8pb8ddDNnOIQsMdWDV4" alt="" width="188"><figcaption></figcaption></figure>

6. Once scanning is successful, the **ECA Access Code** will be displayed in the app.&#x20;

<figure><img src="/files/iF5B85X7miq1zWs9NEgK" alt="" width="188"><figcaption></figcaption></figure>

7. The 6-digits code that that you see in the Authenticator is the **ECA Access Code**: <br>

<figure><img src="/files/8skUOEOUA1BCyDa9Pfxr" alt="" width="375"><figcaption></figcaption></figure>

{% hint style="info" %}
The above procedure is based on using Google Authenticator. Alternatively, you may use Microsoft Authenticator ([Android](https://play.google.com/store/apps/details?id=com.azure.authenticator\&hl=en\&gl=US) / [iOS](https://apps.apple.com/us/app/microsoft-authenticator/id983156458)), or other authenticator of your choice, that supports Time-Based One Time Password (RFC 6238)
{% endhint %}
