In CrushFTP version 9 we can integrate our One Time Password (OTP) based authentication feature with Google's software based token device Google Authenticator , using Time based OTP (TOTP). The user can register a QR code into Google Authenticator.

Server side configuration
#

You will need to enable one of our OTP methods, using SMS or Mail based OTP, and enable the Validated logins checkbox. The user needs to be able to log in at least once, without OTP, or with the other OTP settings.

attachments

The second step is to configure the user account with Two Factor Authentication

attachments

and enable the two factor QR code generator which will appear in the user's User Options menu when they are logged in.

attachments

Client / token device configuration
#

The user will need to log normally, generate the QR code from the client UI User Options menu.

attachments

Then open Authenticator on the mobile device, set up new account, choose barcode, point the device towards the screen, read in the QR code. Then save the user settings by clicking the Confirm button in the UI.



WARNING: the QR code is valid for one minute, if the time window is missed you will need to generate new, or it will not save. Once a secret key has been saved from the QR code, and confirmed, it can only be reset by a server administrator. Its a one time process.

Add new attachment

Only authorized users are allowed to upload new attachments.

List of attachments

Kind Attachment Name Size Version Date Modified Author Change note
jpg
Clipboard05.jpg 139.3 kB 1 27-Nov-2018 19:29 Ada Csaba
png
Clipboard05.png 116.6 kB 1 27-Nov-2018 19:32 Ada Csaba
png
servercfg001.png 58.0 kB 3 27-Nov-2018 19:37 Ada Csaba
png
servercfg002.png 229.3 kB 3 27-Nov-2018 19:38 Ada Csaba
png
servercfg003.png 148.7 kB 3 27-Nov-2018 19:39 Ada Csaba
png
servercfg004.png 116.6 kB 3 27-Nov-2018 19:33 Ada Csaba
png
tokencfg001.png 101.9 kB 2 27-Nov-2018 19:15 Ada Csaba
png
tokencfg002.png 96.2 kB 2 27-Nov-2018 19:15 Ada Csaba
png
tokencfg003.png 37.4 kB 2 27-Nov-2018 19:15 Ada Csaba
« This page (revision-32) was last changed on 28-Nov-2018 16:04 by Ben Spink
G’day (anonymous guest)
CrushFTP9 | What's New
JSPWiki