Add new attachment

Only authorized users are allowed to upload new attachments.

List of attachments

Kind Attachment Name Size Version Date Modified Author Change note
jpg
Clipboard05.jpg 139.3 kB 1 05-Dec-2023 05:32 Ada Csaba
png
Clipboard05.png 116.6 kB 1 05-Dec-2023 05:32 Ada Csaba
jpg
IMG_2500.jpg 191.7 kB 1 05-Dec-2023 05:32 Sandor
jpg
IMG_2501.jpg 464.9 kB 1 05-Dec-2023 05:32 Sandor
jpg
IMG_2502.jpg 52.0 kB 1 05-Dec-2023 05:32 Sandor
png
enable_two_factor.png 42.5 kB 2 26-Feb-2024 03:15 Ben Spink
png
qr_otp.png 1,990.7 kB 1 26-Feb-2024 03:00 Ben Spink
png
servercfg001.png 23.0 kB 5 05-Dec-2023 05:32 Sandor
png
servercfg002.png 54.1 kB 4 05-Dec-2023 05:32 Sandor actualized v10
png
servercfg002.png.png 54.1 kB 1 05-Dec-2023 05:32 Sandor actualized v10
png
servercfg003.png 64.4 kB 4 05-Dec-2023 05:32 Sandor
png
servercfg004.png 43.2 kB 4 05-Dec-2023 05:32 Sandor
png
tokencfg001.png 101.9 kB 2 05-Dec-2023 05:32 Ada Csaba
png
tokencfg002.png 96.2 kB 2 05-Dec-2023 05:32 Ada Csaba
png
tokencfg003.png 37.4 kB 2 05-Dec-2023 05:32 Ada Csaba

This page (revision-59) was last changed on 14-May-2025 01:37 by krivacsz

This page was created on 05-Dec-2023 05:32 by Ada Csaba

Only authorized users are allowed to rename pages.

Only authorized users are allowed to delete pages.

Difference between version and

At line 1 changed one line
CrushFTP has One Time Password (__[OTP/MFA|OTP Settings]__) based authentication feature with Google's and Microsoft's software-based token device __Google Authenticator__ and __Microsoft Authenticator__, using Time based OTP (TOTP) / MFA. The user can register a QR code into their Authenticator app.\\
CrushFTP has One Time Password (__[OTP/MFA|OTP Settings]__) based authentication feature with Authenticator software-based token device (__Google Authenticator__ and __Microsoft Authenticator__), etc, using Time based OTP (TOTP) / MFA. The user can register a QR code into their Authenticator app.\\
At line 3 changed 2 lines
!!Server side configuration\\
The config needs the URL set to "SMTP" and the checkbox for "Validated Logins" enabled.\\
!!1. Server side configuration\\
The config needs the URL set to __SMTP__ and the checkbox for __Validated Logins__ enabled.\\
At line 11 changed one line
* You can also force two factor registration, then the user has no choice but to enroll in it at their next login. Set the customization flag "Two Factor: force Google Authenticator setup" to true. See the mini animated gif of the process below.\\
* You can also force two factor registration, then the user has no choice but to enroll in it at their next login. Set the customization flag __Two Factor: force Authenticator setup__ to true. See the mini animated gif of the process below.\\
At line 13 changed one line
!!Client / token device configuration\\
!!2. Client / token device configuration\\
At line 33 changed 2 lines
!!Possible scenarios regarding the cooperation of admin and the end-user:
!!3. Possible scenarios regarding the cooperation of admin and the end-user:\\
\\
At line 36 changed one line
\\
At line 38 changed 2 lines
-in the User Manager -> user -> Webinterface -> Available customizations section the "Enable two factor registration" is set to True. This can be enabled on the "default" template account or on the group template account so all other users will inherit the setting from the template user.\\
-on Preferences -> General Settings -> OTP section the "Validated Logins" option must be enabled (A on the first screenshot)\\
-in the User Manager -> user -> Webinterface -> Available customizations section the __Enable two factor registration__ is set to True. This can be enabled on the __default__ template account or on the group template account so all other users will inherit the setting from the template user.\\
-on Preferences -> General Settings -> OTP section the __Validated Logins__ option must be enabled (A on the first screenshot)\\
At line 44 changed 2 lines
The option of "Google Authenticator Auto Enable" on Preferences -> General Settings -> OTP section is enabled (B on the first screenshot).
In User Manager the "Two factor OTP/SMS authentication" option is disabled.
The option of __Google Authenticator Auto Enable__ on Preferences -> General Settings -> OTP section is enabled (B on the first screenshot).
In User Manager the __Two factor OTP/SMS authentication__ option is disabled.
At line 47 changed 2 lines
The end-user logs in with username and password, and initializes the "Setup of 2 factor auth" via the User Options button, scans the QR code, and hits the Confirm button.
In the background, CrushFTP writes the Two factor authentication Secret to the user account and takes care of enabling the "Two factor OTP/SMS authentication" option for the user.
The end-user logs in with username and password, and initializes the __Setup of 2 factor auth__ via the User Options button, scans the QR code, and hits the Confirm button.
In the background, CrushFTP writes the Two factor authentication Secret to the user account and takes care of enabling the __Two factor OTP/SMS authentication__ option for the user.
At line 51 changed 2 lines
The option of "Google Authenticator Auto Enable" on Preferences -> General Settings -> OTP section is left in disabled state.
In User Manager the "Two factor OTP/SMS authentication" option is enabled by the admin.
The option of __Google Authenticator Auto Enable__ on Preferences -> General Settings -> OTP section is left in disabled state.
In User Manager the __Two factor OTP/SMS authentication__ option is enabled by the admin.
At line 57 changed 2 lines
The option of "Google Authenticator Auto Enable" on Preferences -> General Settings -> OTP section is left in disabled state.
In User Manager the user doesn't have the "Two factor OTP/SMS authentication" option enabled
The option of __Google Authenticator Auto Enable__ on Preferences -> General Settings -> OTP section is left in disabled state.
In User Manager the user doesn't have the __Two factor OTP/SMS authentication__ option enabled
At line 61 changed one line
In the background, CrushFTP writes the Two-factor authentication Secret to the user account, but the Admin needs to activate the "Two factor OTP/SMS authentication" option for the user.
In the background, CrushFTP writes the Two-factor authentication Secret to the user account, but the Admin needs to activate the __Two factor OTP/SMS authentication__ option for the user.
At line 64 changed one line
__[DMZ|DMZ]__ - Main node scenario: on Preferences -> General Settings -> OTP section the "Validated Logins" option must be enabled on the DMZ node, so the DMZ gives the two-factor authentication to the Main node.
__[DMZ|DMZ]__ - Main node scenario: on Preferences -> General Settings -> OTP section the __Validated Logins__ option must be enabled on the DMZ node, so the DMZ gives the two-factor authentication to the Main node.
Version Date Modified Size Author Changes ... Change note
59 14-May-2025 01:37 5.315 kB krivacsz to previous
58 14-May-2025 01:33 5.289 kB krivacsz to previous | to last
57 14-May-2025 01:33 5.287 kB krivacsz to previous | to last
56 13-May-2025 07:42 5.283 kB krivacsz to previous | to last
55 20-Jan-2025 11:02 5.268 kB Ben Spink to previous | to last
54 20-Jan-2025 10:57 5.279 kB Ben Spink to previous | to last Google Authenticator ==> Authenticator
53 10-Oct-2024 10:57 5.279 kB Ben Spink to previous | to last
52 10-Oct-2024 10:54 5.581 kB Ben Spink to previous | to last
51 05-Aug-2024 02:40 5.647 kB Ben Spink to previous | to last
50 05-Apr-2024 10:11 5.625 kB Ada Csaba to previous | to last
49 26-Feb-2024 03:14 5.287 kB Ben Spink to previous | to last
48 26-Feb-2024 03:13 5.282 kB Ben Spink to previous | to last
47 26-Feb-2024 03:11 5.277 kB Ben Spink to previous | to last
46 26-Feb-2024 03:04 5.196 kB Ben Spink to previous | to last
45 26-Feb-2024 03:00 4.949 kB Ben Spink to previous | to last
44 05-Dec-2023 05:32 4.955 kB Sandor to previous | to last
43 05-Dec-2023 05:32 4.951 kB Sandor to previous | to last
42 05-Dec-2023 05:32 4.943 kB Sandor to previous | to last
41 05-Dec-2023 05:32 4.947 kB Sandor to previous | to last
« This page (revision-59) was last changed on 14-May-2025 01:37 by krivacsz
G’day (anonymous guest)
CrushFTP11 | What's New
JSPWiki