> For the complete documentation index, see [llms.txt](https://docs.theseaai.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.theseaai.com/main/ch/accountsetup/an-quan-she-zhi.md).

# 安全设置

## 多因素认证

MFA 会在登录时增加一个额外的验证步骤。启用后，组织中的每位成员都必须使用验证器应用（TOTP）才能访问 Beachside。

### 为您的组织启用 MFA

当您启用 MFA 后，它将适用于组织中的所有成员。尚未注册的成员将在下次登录时被要求设置 MFA。

* 所有成员将在下次登录时收到注册提示。
* 在完成注册之前，成员无法访问 Beachside。
* 在注册过程中，成员还会收到恢复代码（一次性备用代码）。

{% hint style="info" %}
**只有组织管理员可以启用 MFA。**\
在开启之前，请确保您可以访问验证器应用，以便完成 MFA 登录并避免把自己锁在外面。
{% endhint %}

<figure><img src="https://2190407032-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FOUQ3EAPIPziQuBKQgmTy%2Fuploads%2FzXs7uSovAkH9ZA56oGyV%2Fimage.png?alt=media&amp;token=93d66d09-a584-4edf-ab3b-90ae9121ab74" alt=""><figcaption></figcaption></figure>

{% stepper %}
{% step %}

#### **前往&#x20;**<kbd><mark style="color:$primary;">**团队**<mark style="color:$primary;"></kbd>**&#x20;在顶部导航栏中**

{% endstep %}

{% step %}

#### **前往&#x20;**<kbd><mark style="color:$primary;">**组织设置**<mark style="color:$primary;"></kbd>

您可以在左侧边栏中、团队下方访问它。
{% endstep %}

{% step %}

#### **点击&#x20;**<kbd><mark style="color:$primary;">**启用 MFA**<mark style="color:$primary;"></kbd>

按钮在右侧。点击后会打开一个弹出框。
{% endstep %}

{% step %}

#### **点击&#x20;**<kbd><mark style="color:$primary;">**启用 MFA**<mark style="color:$primary;"></kbd>

确认您要为组织中的所有用户启用 MFA。
{% endstep %}
{% endstepper %}

***

### 为成员重置 MFA

当有人丢失手机、更换设备，或无法访问其验证器应用和恢复代码时使用此功能。

* 所有成员将在下次登录时收到注册提示。
* 在完成注册之前，成员无法访问 Beachside。
* 在注册过程中，成员还会收到恢复代码（一次性备用代码）。

<figure><img src="https://2190407032-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FOUQ3EAPIPziQuBKQgmTy%2Fuploads%2Fxyp01klIgkHWBm7mr3mc%2Fimage.png?alt=media&amp;token=eaf0d8c1-c39a-463b-9c4e-20b8798137dc" alt=""><figcaption></figcaption></figure>

{% stepper %}
{% step %}

#### **前往&#x20;**<kbd><mark style="color:$primary;">**团队**<mark style="color:$primary;"></kbd>**&#x20;在顶部导航栏中**

{% endstep %}

{% step %}

#### **前往&#x20;**<kbd><mark style="color:$primary;">**管理所有成员**<mark style="color:$primary;"></kbd>

您可以在左侧边栏中、团队下方访问它。
{% endstep %}

{% step %}

#### **在列表中找到该团队成员**

您也可以按姓名或电子邮件地址搜索。
{% endstep %}

{% step %}

#### **将鼠标悬停在该成员上并选择**  <i class="fa-ellipsis-vertical">:ellipsis-vertical:</i>

{% endstep %}

{% step %}

#### **点击&#x20;**<kbd><mark style="color:$primary;">**重置验证器**<mark style="color:$primary;"></kbd>

{% endstep %}
{% endstepper %}

***

## 解锁被锁定的成员

Beachside 会在以下情况后锁定账户 <mark style="color:$primary;">**`5 次登录失败尝试`**</mark> & <mark style="color:$primary;">**`3 次验证码验证失败尝试`**</mark> ，以防止密码或验证码被猜测。因登录失败而被锁定的成员需要管理员解锁；因 MFA 验证失败而被锁定的成员可以使用恢复代码恢复，或者由您为其重置。

### 在团队管理页面查找被锁定的成员

被锁定的成员会在成员列表中显示状态，说明原因以及需要采取的操作：

<table><thead><tr><th width="156.0390625">锁定原因 1</th><th width="296.234375">管理员操作</th><th>成员操作</th></tr></thead><tbody><tr><td>5 次登录失败尝试 </td><td><ol><li>确认该请求确实来自该成员本人</li><li>点击 <mark style="color:$primary;"><strong><code>解锁用户</code></strong></mark>  会自动向成员发送密码重置邮件</li></ol></td><td><ol><li>接收用于重置密码的电子邮件</li><li>点击邮件中的链接完成重置流程</li><li>重新登录 </li></ol></td></tr></tbody></table>

<figure><img src="https://2190407032-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FOUQ3EAPIPziQuBKQgmTy%2Fuploads%2FInKxPKeGFXmwipCiKyvU%2Fimage%2010.png?alt=media&amp;token=2f27cba4-ed46-45b5-a811-8d18b035cbad" alt=""><figcaption><p>已锁定 - 登录尝试次数过多</p></figcaption></figure>

<table><thead><tr><th width="153.8671875">锁定原因 2</th><th width="303.76171875">管理员操作</th><th>成员操作</th></tr></thead><tbody><tr><td>3 次验证码验证失败尝试</td><td><ol><li>确认该请求确实来自该成员本人</li><li>点击 <mark style="color:$primary;"><strong><code>重置验证器</code></strong></mark> 会自动向成员发送验证器重置邮件</li></ol></td><td><ol><li>接收用于重置验证器的电子邮件</li><li>点击邮件中的链接重新登录并重置验证码</li></ol></td></tr></tbody></table>

<figure><img src="https://2190407032-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FOUQ3EAPIPziQuBKQgmTy%2Fuploads%2F2s8PSZrRWMeqptKzgHZG%2Fimage%2011.png?alt=media&amp;token=62384470-f677-4b9b-afe5-a7d86ebc3116" alt=""><figcaption><p>已锁定 - 验证器代码尝试次数过多</p></figcaption></figure>

### 在您执行解锁操作后

该成员将收到一封电子邮件，用于重置密码或 MFA 代码。成功完成重置后，他们即可再次登录。

***

## 常见问题

<details>

<summary><strong>管理员被锁定时会发生什么？</strong></summary>

您可以联系团队中的其他管理员为您解锁。如果您是唯一管理员并且被锁定，请联系我们的支持团队以恢复访问权限。

</details>

<details>

<summary><strong>成员说他们被锁定了，但我看不到状态。</strong></summary>

刷新列表，或检查他们是否已经使用恢复代码自行恢复——一旦恢复，状态就会清除。

</details>

<details>

<summary><strong>我可以解锁一个未被锁定的账户吗？</strong></summary>

不可以——只有账户实际处于锁定状态时，解锁才适用。不过，MFA 认证可以随时重置。

</details>


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.theseaai.com/main/ch/accountsetup/an-quan-she-zhi.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
