Digital Identity Portal Password Management Guide

Introduction

This document provides instruction for the self-service password management functions in the NYP Digital Identity Management Portal. This guide will help users with the following (click an option below):

For additional assistance contact the NewYork-Presbyterian Help Desk: 212-746-HELP (4357) or email [email protected]

Scope

The self-service password management functions in the NYP Digital Identity Management Portal are available to everyone with an active NewYork-Presbyterian CWID enrolled in DUO.

​​

Duo Enrollment Prerequisite

Instructions for enrolling in DUO can be found on the NYP Infonet here. For additional assistance contact the NewYork-Presbyterian Help Desk: 212-746-HELP (4357) or email [email protected]

OneID Password Management

Login

Access to the NYP Digital Identity Management Portal is available via the URL below:

  1. Open a web browser and visit https://password.nyp.org.
Login

2. Enter the CWID and click the red “Next” button. A DUO four-digit challenge will appear prompting verification on the enrolled mobile device for that CWID.

Digital Identity Portal

3. DUO will send a prompt to the enrolled mobile device to verify the four-digit challenge on the browser. Enter the four digits seen in the browser from step 2 into the mobile device. For users without a registered mobile device, instructions to enroll in Duo can be found on the NYP Infonet here.

Digital Identity Portal

4. Once the four digits are correctly entered on the mobile device, the browser will refresh to display the welcome page.

Welcome

5. Click “Continue” to be taken to the account home page.

Account page

Change Password

NYP passwords are not required to be changed at any interval. However, any user looking to voluntarily change their NYP password will need to provide their CWID and confirm DUO enrollment:

1. Login to the Digital Identity Portal

2. On the account home screen, click on “Change Password”.

Change password

3. Enter the current account password on line one, as well as the new password to be used going forward on lines two and three.

Enter current account password

4. Issues with new password selection will be noted in red text. This indicates what requirement(s) is/are not met.

Issues with new password

Using a word such as “password” or a portion of the CWID in a new password is not allowed. An error message will appear if any banned words are chosen, try a new password if this error is displayed.

5. When all requirements are met, click “Change Password” and a notification will appear if the password was successfully updated.

Congratulations

6. Click “Logout” once the password change is complete.

Account page

7. A notification email will be sent to the account for which the password was changed.

Email notification

Forgot Password

NYP passwords are not required to be changed at any interval. However, any user who has forgotten their NYP password will need to verify account ownership via a recovery email activation link.

1. Login to the Digital Identity Portal

2. On the account home screen, click on “Select Password”.

Forgot password

3. For security purposes you will be presented with a page to confirm your recovery email address. The address we have on file will be displayed obfuscated and will need to be correctly entered.

Confirm recovery email

4. Once submitted, an email activation link notification screen will display, showing the email address the link was delivered to.

Email activation link

5. Check your recovery email from any device and look for an email from “OneIDAdmin” for the activation link.

Check your recovery email

6. Click “Confirm Request” and a separate browser window will open showing a successful authentication.

 Confirm request

7. On the original window/device a “Set New Password” page will appear. Enter your new password on Line 1 and Line 2 and click “Change Password”

Set New Password

8. Issues with new password selection will be noted in red text. This indicates what requirement(s) is/are not met.

8 - Set New Password Issues

Using a word such as “password” or a portion of the CWID in a new password is not allowed. An error message will appear if any banned words are chosen. Try a new password if this error is displayed.

9. After a successful password update notification page will appear. Click “Logout” to exit.

Success
Log out

10. An email will be sent to corporate email of the account, notifying that the account’s password was changed.

Email notification

Digital Identity Portal: Account Unlock

If a NewYork-Presbyterian account is locked due to excessive failed login attempts, a user with an active account that is enrolled in DUO can perform a self-unlock using the NYP Digital Identity Management Portal.

Note: There are several reasons for a disabled account that will require contacting the Service Desk. Two examples of an account that cannot be unlocked using the NYP Digital Identity Management Portal tool are 30 days of inactivity, or a locked account due to compliance issues (i.e., annual flu shot, AHT - Annual Hospital Training).

For additional assistance contact the NewYork-Presbyterian Help Desk: 212-746-HELP (4357) or email [email protected]

Unlock Account

If an account is locked due to excessive failed login attempts, perform the following steps:

1. Login to the Digital Identity Portal

2. If the account is locked, when landing on the home screen, the “Unlock Account” button will be the only action item displayed. Select this to unlock the account.

Account Unlock

3. A confirmation message that the account was unlocked successfully will display.

Confirm unlock email

4. Click “Return to Digital Identity Portal.”

5.Click the “Logout” button or proceed to set a new password by following one of the links here:

Change Password

Forgot Password

Digital Identity Portal: Manage Recovery Email

A recovery email is a non @nyp.org email address that is used to secure requests when a forgot password request is made. This is used to validate ownership of the cwid account in the event the password is forgotten. Self-Service enablement to change the recovery email is available through the Digital Identity Portal but requires the current account password to be known.

Update Recovery Email

1. Login to the Digital Identity Portal

2. Select “Manage Recovery Email”

Manage Recovery

3. Enter the current account password to proceed.

Select “Manage Recovery Email”

4. Enter the email address of the desired new recovery email address.

Enter the email address of the desired new recovery email address.

5. Once submitted, an email activation link notification screen will display, showing the email address the link was delivered to.

Once submitted, an email activation link notification screen will display, showing the email address the link was delivered to.

6. Check your recovery email from any device and look for an email from “OneIDAdmin” for the activation link.

Check your recovery email from any device and look for an email from “OneIDAdmin” for the activation link.

7. Click “Confirm Request” and a separate browser window will open showing a successful authentication.

Click “Confirm Request”

8. A successful notification will display on the original window. Select “Continue” to return to the home screen.

A successful notification will display on the original window. Select “Continue” to return to the home screen.