Product Announcements

Product Announcements

News on the latest product releases from the hottest new features to highly anticipated Smartsheet integrations can be found here! "Follow" to get notified of updates.


Be aware of one-time Smartsheet login screen update

Employee
edited 07/09/24 in Product Announcements

Hello Community,

As part of our latest security enhancement related to the email TOTP login method launch, you may notice a one-time change in your login experience. Users accustomed to seeing their last login method (as shown in sample Image 1) will see a new login screen (as shown in sample Image 2) only once.

What you need to do:

  1. Enter your email address.
  2. Click "Continue."

This is a one-time step. After completing this, you will return to the familiar login experience you are used to for subsequent logins.

Sample image 1:

Sample image 2:

Thank you for your understanding and cooperation as we work to make Smartsheet even more secure.

Best regards,

Smartsheet Product Team

«13

Comments

  • ✭✭✭✭

    Hi @Lekshmi Unnithan at our company we see the opposite of these. #1 is what we started seeing last week and we should not as some of the auth options are not even enabled for our account.

  • @Ella Yes, you are right. The first image shows the new one-time setup, and the second image displays the familiar login options based on what you've enabled for your Smartsheet plan. The second image is just an example for illustration purposes. Post will be updated

  • Unfortunately - The company I work for is requiring us to discontinue use of Smartsheet due to the lack of MFA. Please focus your devs on implementing THIS kind of login as many companies need/require MFA to protect sensitive data.

    Not offering it is borderline archaic at this point.

  • Overachievers

    I don't understand why your company cannot use MFA. We are all on SSO with MFA. Our security did a deep dive with Smartsheet security and login process. There were no issues at all.

    Darla Brown

    What you meditate on, you empower!

    Overachiever - Core Product Certified - Mobilizer - EAP

  • ✭✭

    Hi @Lekshmi Unnithan - I'm able to get back to the "sign in with company account" using the directions provided above, but it doesn't appear to be "one-time". When I sign out, the sign in page continues to lack the "sign in with compant account" option. Is there anything we can do with our Enterprise account settings or some way to bring back the "sign in with company account" option? The way to get to this option isn't intuitive and doesn't appear to be one time based on my own and coworkers experience. Appreciate any help and guidance you can provide! Thanks!

  • Overachievers

    @Lekshmi Unnithan the second screen is coming up every single time now. Is this unexpected behavior? This is especially the case when clicking links to Smartsheet before you are logged in

  • Hi @Samuel Mueller ,

    Users will see all login options only in the following scenarios:

    1. First Time After "Send me a code" login Launch: Users will see all login options the first time they log in after the new "Send me a code" login method has been launched due to the upgrade of the login cookie version. Subsequent logins will display only the last successful login method.
    2. Changing Login Email Address: If a user changes their login email address, the browser cookie does not recognize the new email and will display all login options to identify the allowed login methods for the new address.
    3. Clearing Browser Cookies: If browser cookies have been cleared or if the browser is set to automatically clear cookies, users will see all login options each time they log in since the last login information stored in the browser cookie has been cleared.

    If you continue to see all login options and do not fall into any of the above scenarios, please raise a support ticket so we can investigate and resolve the issue.

  • @Lekshmi Unnithan we are not having the intended experience. We are not getting the login reflected in image too. If we bypass the password on the login screen with the password option the SSO option will present. But we have to do that every single time. I have several hundred shift nurses that need to use the dynamic view I created and not pleased, is the nicest way I can put it. We need a better solution.

  • Overachievers
    edited 08/06/24

    @Pawan Shukla This is not happening as intended. We also do not allow password login we are SSO only. I have tested this with myself and another colleague multiple ways, we continuously get the same generic login screen unless we are already logged in.

    I can add a support ticket, do you want me to tag you on it?

  • @Darla Brown @walcala

    We launched "Send me a code" login method which is an email based one time passcode based login which is more secure that email/password. you can read more about it here. This login method is available for all smartsheet user irrespective of plan type.

  • Please raise support ticket. Support team will loop in correct individuals for resolution.

  • Overachievers
    edited 08/06/24

    @Pawan Shukla I'll raise the support ticket but I'm assuming you guys are going to look into this as well in the meantime?

    case number is #07210942

  • ✭✭

    @Pawan Shukla from what I can tell, no one from our enterprise account is able to get the "sample image 1" login screen to appear. The only way to get the "sign in with company account option" is to enter our email without a pw, submit, then the option shows up, however we have to do this everytime. I also tried the "send me a code" login hoping that would result in giving us the sign in with company login option again. @Lekshmi Unnithan said this should be a one time thing and it is not. What do you recommend?

  • ✭✭✭✭

    We are having the same problem that the Company account button doesn't appear unless we do the work-around steps outline above. Enabling SSO is supposed to make things easier, not add extra login steps. It used to be that sometimes the company account button appeared and sometimes it didn't, and we were not able to figure out the when and why. However, recently it almost never shows when someone shares an item, or when they get an email notification via a sheet automation. In the latter cases, it is very confusing since the links in the messages used to take them right to the shared item for their action. Now, they have to do the work-around steps to login via SSO, then it takes them to their generic home page. Some of these executives are not in SS enough to know where to navigate from there, so they have to go back to their email message and try to figure it out.

  • @Lekshmi Unnithan

    Tested again today, the onetime fix is not working as expected. It's resetting and not retaining. Just want to report, this is affecting a lot more users than I think is expected. Please know, not everyone is tech savvy, a lot of Smartsheet users access content via shared links and are giving up as they're not able to login how they're used too.

Recent Announcements