Enrolling Fingerprints
  • 12 Dec 2024
  • 1 Minute to read
  • Contributors
  • Dark
    Light

Enrolling Fingerprints

  • Dark
    Light

Article summary

Fingerprints can be enrolled through the desktop or Enrollment Tile wizard.


  1. In the Enrollment Wizard, click the Fingerprint Biometrics option.
    fp enroll 1 - EW.png

    1a. If you are on the desktop application, it will ask you to re-authenticate.
    fp enroll 2 - re-auth.png


  1. The next screen will be your finger selection. Here you can pick any fingers to scan, for the number set by administration.
    fp enroll 3 - select finger.png

  1. Follow the on-screen prompts for each finger until you get a Success, and click "Next" to save the finger you just enrolled.
    fp enroll 5 - success.png

  1. Once all of your fingers are enrolled, hit "Next".
    fp enroll 6 - all done.png

    4a. If you are set up to use a numerical PIN, you'll be presented the following screen to create your PIN. This PIN will be used with any finger that you use to log into or unlock a workstation with.
    fp enroll 7 - enter pin.png


  1. When complete, you'll be brought back to the main page of the Enrollment Wizard where you'll see that the light next to the fingerprint option is now green, indicating that the method is enrolled.
    fp enroll 8 - green light.png

Additional Settings

In the Admin Portal > Policies Tab > Hardware tab > Allow Unauthenticated One to Many Biometric Match and setting to 'True' allows for users to walk up and swipe their finger without first entering a username.
fingerprint settings.png


In the Settings tab, check (✓) the option Allow Unauthenticated One-To-Many Biometric Match. When enabled, the server compares the presented fingerprint template against the whole database of fingerprint templates and successfully authenticates if it matches. Click "Save" at the bottom of the page to confirm the change.
fingerprint settings 2.png



Troubleshooting

The most frequent error that appears on the client during enrollment is "Reader is not connected":
fp enroll - not connected.png

Things to check or try:

  • Verify that the BioDevice setting/registry key has been set in the MFA Policy to match the device's make; see our registry settings article for all available biometric readers options
  • If you are using a Digital Persona device, you may need to install the driver onto the client computer; download the driver here

Embedded Readers

  • Make sure the BioDevice is set to "wbf"
    fp enroll - regedit.png

  • If you are on MFA Client v4981, try rolling the client version back to an older version (this will require uninstalling the current client software and installing an older one)


Was this article helpful?