Purpose: This article explains how to set up and use iPrescribe Authenticator as your two-factor authentication token to e-prescribe controlled substances (EPCS).
Audience: EPCS prescribers contracted directly with DrFirst, particularly those who did not independently register for iPrescribe.
This article is for prescribers contracted directly with DrFirst. If you're an EPCS affiliate (contracted through an EHR or other affiliated organization), go to Set up the iPrescribe Authenticator (EPCS affiliate) instead.
Important: If you see a payment screen while setting up the authenticator, stop and exit. This means you are self-registering to use the iPrescribe e-prescribing application. You never need to pay to use the iPrescribe Authenticator.
Set up iPrescribe Authenticator
Note: Depending on your integration with DrFirst, you may be unable to proceed after selecting the Push Notification (iPrescribe Authenticator) option and attempt to scan the QR code. If you cannot proceed, select the Code Generator option instead.
Steps to set up iPrescribe Authenticator
- Log in to the EPCS Gold Prescriber Dashboard with your NPI, passphrase, and current token.
-
Select the Tokens tab at the top or click the Manage Tokens button at the bottom right of the page. Both take you to the same screen.
EPCS Gold Prescriber Dashboard home page -
You are now on the Token Management screen. Select the Add New Token button.
EPCS Prescriber Dashboard, Add Token button
You will see options to add 2 types of authenticators to your account. Click Add to choose an option:
- Push Notification (iPrescribe Authenticator): App that generates a one-time PIN (OTP) (soft token)
- Code Generator: A physical key fob that you ordered from DrFirst or mobile application that generates a one-time PIN (hard token)
- If you log in to E-Prescribing Desktop (Rcopia), you may use your username and password to log in to iPrescribe.
- Depending on your configuration, you may see a limited, read-only version of iPrescribe when you scan the QR code. Contact your Customer Success Manager (CSM) if you want to upgrade your iPrescribe capabilities.
- If you use External Login (Single Sign-On/SSO) to access E-Prescribing Desktop, you may see a notification pop-up in E-Prescribing Desktop guiding you to set up iPrescribe Authenticator.
- Prescribers who sign controlled substance scripts in iPrescribe cannot use iPrescribe as an authenticator. The DEA requires that your authenticator and prescribing software be on different devices.
Push Notification (iPrescribe Authenticator) > Add
If you are adding the iPrescribe Authenticator during EPCS enrollment, from the Token Management screen:
-
Scan the QR code to install the iPrescribe Authenticator on your device. If you already have the app, it opens the Open Scanner screen.
Note: DEA requires you install your authenticator (token) on a separate device from the device you use to e-prescribe controlled substances.
Add iPrescribe Authenticator QR code -
After installing the iPrescribe Authenticator app and opening it, the app prompts you to accept push notifications.
Enable push notifications screen -
Click Open Scanner, then authorize the app to access your camera.
Open Scanner Open Scanner button Allow camera access
Note: You can also do this manually by going to your phone's settings and enabling push notifications for this application.
- Open the app and go to the main menu > Settings > iPrescribe Authenticator.
- Allow the app to access your camera and Open Scanner.
-
Return to the computer screen, enter a nickname for this authenticator (token), and click Bind Device.
Tip: Do not use an underscore ("_") in your token nickname to avoid error messages.
Using your iPrescribe Authenticator as a camera (the Open Scanner view you kept open from step 2), scan the Cronto code (colorful dot matrix code) that appears on the web page.
Scan code with iPrescribe Authenticator Verifying code -
Go back to your mobile device and click No, Continue Setup if you do not have an iPrescribe Authenticator username and password.
No, Continue Setup button -
New users see the Create a password screen. If you already have an account, you see the Account found screen and select your practice, then click Continue to get to the Create a password screen.
-
A confirmation screen asks you to check your email to retrieve your username. Log in to iPrescribe Authenticator anytime to finish setting up the app.
Check email notification -
Back on the web page, you see a screen listing your token's active status, and you are prompted to click Add Token to add a second token to your account (recommended). After adding a second token, click Continue.
Warning to add a second token
Use iPrescribe Authenticator
Use iPrescribe Authenticator
- Prepare to send an electronic controlled substance prescription, as you would normally.
-
When you are ready to sign and send the prescription, enter your signature password and select Send.
Sign a prescription with signature password -
On the next screen, review the prescription details. Then, at the bottom of the screen:
- Enter your signing passphrase (the password used to electronically prescribe controlled substances).
- Select the name of your iPrescribe Authenticator from the drop-down menu.
- Select Sign to send a push notification to iPrescribe.
Send a push notification to authorize a controlled prescription -
Open the push notification on your mobile device. Select Yes, continue to confirm you intend to electronically prescribe the controlled substance.
Home screen push notification EPCS Signing Request -
A confirmation message appears in iPrescribe and E-Prescribing Desktop.
Confirm you successfully sent the controlled substance to the pharmacy by going to the iPrescribe menu > History and selecting the prescription to review transmission details.
Two-factor authentication approved notice Review transmission details for a sent prescription
For the best experience, make sure you are using the most updated version of iPrescribe.
Open iPrescribe Authenticator manually
- Log in to iPrescribe.
- Go to the More tab.
- Select Settings.
- Select iPrescribe Authenticator.
iPrescribe Authenticator is only for use with E-Prescribing Desktop. If you prescribe controlled substances in iPrescribe, use a different authenticator. The DEA requires your authenticator and prescribing software to be on separate devices.
Comments
Article is closed for comments.