HYPR Device Manager 2.0

HYPR Device Manager

Device Manager has been redesigned for a cleaner user experience while maintaining the same core functionality enjoyed by HYPR users in previous versions of DM.

What You'll Need

Enable the Feature Flag

DM 2.0 can be enabled/disabled by toggling the DEVICE_MANAGER_UI_REMAKE_ENABLED feature flag. This can be done through the API if using an on-premises deployment of Control Center (CC). It must be toggled for both the Control Center Admin app and the RP Application connected to Keycloak.

👍

Flag Defaults

The DEVICE_MANAGER_UI_REMAKE_ENABLED feature flag will be On by default for new customers deploying 8.4; for customers upgrading to 8.4, it will be Off by default.
For Standard Mode customers on 8.5, the DEVICE_MANAGER_UI_REMAKE_ENABLED feature flag will be On by default for all customers; for Advanced Mode and on-premises customers on 8.5, it will Off by default, but can be manually enabled.

To access the API, you must Create an Access Token for the controlCenterAdmin app and any RP Applications you wish to see in the DM 2.0 UI.

Call the following endpoint for all applicable Applications:

/rp/api/versioned/features/toggle/DEVICE_MANAGER_UI_REMAKE_ENABLED

cURL Example

curl --location --request POST '\<TENANT_URL>/rp/api/versioned/features/toggle/DEVICE_MANAGER_UI_REMAKE_ENABLED'  
--header 'Authorization: Bearer \<CC_ADMIN_TOKEN>'

Sample Payload

{  
    "version": 4,  
    "features": [  
        {  
            "name": "DEVICE_MANAGER_UI_REMAKE_ENABLED",  
            "description": "Enables the Device Manager UI remake",  
            "enabled": true,  
            "releaseVersion": "8.3.0",  
            "deprecatedStatus": false,  
            "toggleableByAdmin": false  
        }  
    ]  
}

Accessing Device Manager 2.0

Once you have the feature flag enabled, you will be able to access Device Manager 2.0.

  1. Open your profile menu in the upper right of Control Center, and click Device Manager.
  1. Device Manager opens. If no devices are paired, it will show No Login Methods Found.

Adding a Device

This section will demonstrate the step-by-step flows for the different login methods you can enroll with Device Manager 2.0:

  • HYPR Mobile App
  • Passkey (this replaces Security Key and Device Biometrics)

HYPR Mobile App

  1. Click ADD NEW LOGIN METHOD at the top right of the page.
  2. The Add New Login Method dialog opens. Select HYPR Mobile App, then click Next.
  1. The QR scan dialog opens. Scan the QR code with your mobile device and finish pairing your device using the authentication methods presented by the HYPR Mobile App (these may vary between fingerprint, face, voice, PIN code, etc.).
  1. Your HYPR Mobile App pairing is now listed on the Device Manager main page. You are prompted to CONTINUE to the RP Application in question (Control Center in this case) or pair a second device (if this is your first one).

👍

Two Are Better Than One

HYPR strongly recommends creating a secondary authentication method in Device Manager, especially if there are no fallback authentication policies in your environment.

Passkey

Pairing a Security Key Passkey

If your system is configured to take advantage of Passkeys, you will no longer see Security Keys or Smartdevice or Device Biometric, but will now see a tile for Passkeys, which encompasses all options except the HYPR Mobile App.

  1. Click ADD NEW LOGIN METHOD at the top right of the page.
  2. The Add New Login Method dialog opens. Select Passkey, then click Next.
  1. The browser prompts you to register a native passkey for your device. Click Cancel to open the Security Key setup dialog.
  2. Follow the instructions to register the passkey. The grey dialogs shown here are from Google Chrome; other browsers' dialogs will be similar.
  1. When you are finished, a confirmation screen lets you know the device has been paired. Click CONTINUE to go back to the main screen.
  1. Your Security Key pairing is now listed on the Device Manager main page. You are prompted to CONTINUE to the RP Application in question (Control Center in this case) or pair a second device (if this is your first one).

👍

Two Are Better Than One

HYPR strongly recommends creating a secondary authentication method in Device Manager, especially if there are no fallback authentication policies in your environment.

Pairing a Device Biometric Passkey

  1. Click ADD NEW LOGIN METHOD at the top right of the page.
  2. The Add New Login Method dialog opens. Select Passkey, then click Next.
  1. The browser prompts you to register a native passkey for your device. Follow the instructions to register the passkey.
  1. When you are finished, a confirmation screen lets you know the device has been paired. Click CONTINUE to go back to the main screen.
  1. Your passkey pairing is now listed on the Device Manager main page. You are prompted to CONTINUE to the RP Application in question (Control Center in this case) or pair a second device (if this is your first one).

👍

Two Are Better Than One

HYPR strongly recommends creating a secondary authentication method in Device Manager, especially if there are no fallback authentication policies in your environment.

Removing a Device

The process of removing a device remains the same for any login method you have setup in Device Manager.

  1. Click Remove on the device you want to unpair.
  1. A dialog asks you to confirm removal of this device. Click Remove.
  1. Device Manager no longer lists the removed device on the main page.

Logging Out

To exit Device Manager (and Control Center):

  1. Click the person icon in the upper right. A drop-down opens with the username and an option to LOG OUT.
  2. Click LOG OUT.
  1. Click LOGOUT on the confirmation dialog.
  1. You are logged out, and CC's login prompt displays.