Skip to main content

About App-Specific Passwords (ASP)

Find out more about this feature, how to allow it on your server, and how users can use it.

What is it?

An app-specific password is a unique, randomly generated passcode that allows an app to access your account without using your main password. The main benefit is that it lets you manage and revoke access for individual apps, while allowing them to sign in without the usual two-factor authentication step.

These can be used with applications (e.g. Milestone VMS, VMS Gateway) that support EdgeVis accounts but do not support 2FA.

How do I enable this for my server?

The ability to use this functionality on your server can be enabled/disabled by visiting the Two-Factor Authentication settings for your server or domain. This can be accessed from the User Settings page.

Where can I find App-Specific Passwords for my account?

This can be found via the My Settings page, which can be found by using the user dropdown in the top right of the page.

Within the My Settings page, the setting can then be found under the ASP titled option.

Where can I find App-Specific Password settings for other users?

If you have the required permission levels to manage other users' accounts, you can manage ASP's by navigating to that user's management page.

How do I add and delete these passwords?

These passwords can be added and deleted from the locations shown above. This gives the user the ability to quickly revoke this access where necessary, for security reasons or to decommission an app's access.

How do I log in using generated credentials?

When you create an App-Specific Password, a guide is shown to you with instructions on how to use it to log in.

Once dismissed, the password provided will not be shown again and cannot be retrieved.

To use the screenshot shown above for testUser with an ID of 355395 and a code of "As5w5gczG,;,{ the user could provide the following credentials to an application when requested:
​
Username: testUser:355395
Password: "As5w5gczG,;,{

Did this answer your question?