> For the complete documentation index, see [llms.txt](https://help.verkada.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://help.verkada.com/command/ja/sekyuriti/authentication-overview/two-factor-authentication.md).

# 2要素認証

2要素認証（2FA）を有効にすると、アカウントに追加のセキュリティ層が加わり、パスワードだけでなく二次的な確認方法を求めることで、不正アクセスのリスクを大幅に低減します。

{% hint style="danger" %}
Org Admins は、アカウント設定時に 2FA を有効にする必要があります。ただし、SSO でログインする場合、2FA は IDプロバイダによって処理されます。
{% endhint %}

***

## Command アカウントで 2FA を有効にする

{% hint style="info" %}
最も強力な保護のために、パスキーで 2FA を有効にすることをおすすめします。
{% endhint %}

{% stepper %}
{% step %}
**Verkada Command の左下で、オーガナイゼーション'アイコンをクリックします。**
{% endstep %}

{% step %}
**\[マイアカウント] をクリックします。**
{% endstep %}

{% step %}
**\[2要素認証] の横で、\[追加] をクリックします。**
{% endstep %}

{% step %}
**設定したい認証の種類を選択します：**

a. [パスキーまたは生体認証認証器](#passkey-or-biometric-authenticator)\
b. [認証アプリ](#authenticator-app)\
c. [SMS](#sms)
{% endstep %}

{% step %}
**パスワードを入力し、\[続行] をクリックします。**
{% endstep %}

{% step %}
**画面の指示に従って設定を完了します。**
{% endstep %}
{% endstepper %}

### パスキーまたは生体認証認証器

セキュリティキーまたは生体認証認証器による 2FA では、TouchID や FaceID などのデバイス固有の確認方法や、YubiKey などの外部セキュリティキー、あるいはスマートフォンをパスキーとして設定できます。

{% hint style="warning" %}

* 同じアカウントに対して、異なるデバイスを使用して複数のパスキー／生体認証認証器を設定できます。
* パスキーと生体認証認証器は、Verkada Command モバイルアプリではサポートされていません。
  {% endhint %}

### 認証アプリ

認証アプリによる 2FA では、6 桁のコードが自動生成されます。このコードは 30 秒ごとに期限切れになるため、ログインするたびにアプリで新しいコードを確認してください。

{% hint style="warning" %}
QR コードの追加でヘルプが必要な場合は、トラブルシューティング手順についてアプリの提供元にお問い合わせください。
{% endhint %}

### SMS

SMS による 2FA では、6 桁のコードがテキストメッセージで届きます。この電話番号は、プロフィールで確認済みの番号とは異なる場合があります。

***

## オーガナイゼーション全体で 2FA を強制する

{% hint style="danger" %}
Command では、すべての Org Admins に 2FA が必須です。Org Admins は、まだ設定していない場合、次回ログイン時に設定を求められます。この要件は回避できません。ただし、SSO でログインする場合、2FA は IDプロバイダによって処理されます。
{% endhint %}

Org Admins は、オーガナイゼーション内のすべてのユーザーに 2FA を強制できます。強制すると、ユーザーは少なくとも 1 つの認証方法を設定している必要があります。

{% stepper %}
{% step %}
**Verkada Command で、All Products > Admin に移動します。**
{% endstep %}

{% step %}
**左側のナビゲーションで、\[Login & Access]を選択します。**
{% endstep %}

{% step %}
**\[2要素認証] > \[2要素認証を強制] を選択します。**
{% endstep %}

{% step %}
**\[確認] をクリックして変更を保存します。**
{% endstep %}
{% endstepper %}

オーガナイゼーション レベルで 2FA が強制されると：

* **既存のユーザー** は、次回ログイン時に 2FA の設定が必要になります。
* **新規ユーザー** は、アカウント設定中に 2FA の設定が必要になります。

***

## ユーザーの 2FA をリセットする

認証デバイスを紛失または置き忘れてロックアウトされた場合は、Org Admin に連絡して 2FA をリセットしてもらってください。

{% stepper %}
{% step %}
**Verkada Command で、All Products > Admin に移動します。**
{% endstep %}

{% step %}
**\[管理者] > \[ユーザーと権限] で、\[ユーザー] をクリックします。**
{% endstep %}

{% step %}
**ロックアウトされたユーザーのメールアドレスを選択します。**
{% endstep %}

{% step %}
**左上の** <i class="fa-ellipsis">:ellipsis:</i>**> \[ログインを管理] をクリックします。**
{% endstep %}

{% step %}
**\[次の項目] の下で** **2要素認証の設定をリセット：**

1. クリック **2FA をリセットします。**
2. クリック **確認** して、すべての 2FA 方法を削除します。
   {% endstep %}

{% step %}
**\[完了] をクリックして確認します。**
{% endstep %}
{% endstepper %}

{% hint style="warning" %}
オーガナイゼーションで 2FA が強制されている場合、ユーザーは次回ログイン時に新しい 2FA 設定を行う必要があります。強制されていない場合は、ユーザーアカウントで 2FA が無効になります。
{% endhint %}

***

## 2FA を無効にする

{% hint style="warning" %}
オーガナイゼーションで 2FA が強制されている場合、Org Admins は自分自身または他の Org Admins の 2FA を無効にできません。
{% endhint %}

{% stepper %}
{% step %}
**Verkada Command の左下で、オーガナイゼーション'アイコンをクリックします。**
{% endstep %}

{% step %}
**\[マイアカウント] をクリックします。**
{% endstep %}

{% step %}
**無効にしたい認証方法の横にある**
{% endstep %}

{% step %}
**パスワードを入力し、\[続行] をクリックします。**
{% endstep %}
{% endstepper %}

2FA アプリにもうアクセスできず、サインインしていない場合は、Org Admin に連絡してアカウントの 2FA をリセットしてもらってください。

***

{% hint style="info" %}
**実際の動作をご覧になりますか？** こちらを [ビデオチュートリアル](https://www.youtube.com/watch?v=vme3YdOdhsE).
{% endhint %}


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://help.verkada.com/command/ja/sekyuriti/authentication-overview/two-factor-authentication.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
