Two-Factor Authentication

This module allows users to set up two-factor authentication for their login.

Activate the Two-Factor Authentication Module

In the Admin Optimizer page, click to enable the Two-Factor Authentication module. Press Save Changes to save the changes.

Activate Two Factor Authentication

Configure the Two-Factor Authentication Module

  1. Navigate to Admin Menu → Admin Optimizer → Two-Factor Authentication.
  2. Select the option to enable backup recovery codes for failed two-factor authentication.
  3. Select the option to add a user column showing who has/has not set up 2FA.
Configure Two Factor Authentication
  1. For Admin Optimizer Pro, there are additional configuration options:
    • Make Two-factor Authentication compulsory for these roles: make 2FA compulsory for the selected user roles
    • Block them from logging in: for users who didn’t set up 2FA, block them from logging in a number of days after their next login.
    • Add a persistent notification: remind the user to set up 2FA.
  2. In addition, the Admin Optimizer Pro has a Trusted Device feature where the users can trust a device. 2FA prompt will not appear on trusted device for a set amount of time.
Configure Two Factor Authentication Pro

Manage Users 2FA

  1. Navigate to Admin Menu → Admin Optimizer → Two-Factor Authentication -> Manage Users 2FA.
  2. Find the username and click Deactivate 2FA to temporarily disable 2FA for their accounts.
Configure Manage Users 2fa
  1. For Admin Optimizer Pro, there is an additional option to Temporary Unblock Login for 3 days.
Configure Manage Users 2fa Pro

Set Up Two-Factor Authentication for Users

  1. Navigate to Admin Menu → Profile.
  2. Find the Two-Factor Authentication section. Scan the QR code with authenticator app.
  3. Enter the 6 digits code in the Authentication code field.
Setup Two Factor Authentication
  1. Click Validate. 2FA will be activated once the 6 digits code is validated.
Setup Two Factor Authentication Complete
  1. Click the Generate Recovery Codes button to generate the recovery codes.
  2. Click the Download Codes button to download the recovery codes.
S2fa Generate Recovery Codes

Disable Two-Factor Authentication

  1. Navigate to Admin Menu → Profile.
  2. Find the Two-Factor Authentication section.
  3. Click Reset and rescan QR code button. This will disable the 2FA setup for the user.

View 2FA Enabled User Column

  1. Make sure you are logged in as the Administrator.
  2. Navigate to Admin Menu → Users -> All Users.
  3. You should see a new 2FA Enabled column in the Users table.
S2fa User Column