logologo
Get Started
Guide
Development
Plugins
API
English
简体中文
Get Started
Guide
Development
Plugins
API
English
简体中文
logologo

Authentication

Overview
Authenticators

Authentication type

Password
SMS

OIDC

Configuration

Examples

Google
Microsoft Entra ID

SAML

Configuration

Examples

Google Workspace
LDAP
CAS
API keys

Development

Extentd authentication type
API

Verification

Overview

Verification type

SMS
TOTP authenticator

Development

Extend verification type
Extend verification scene
Extend SMS provider
API
Two factor authentication (2FA)
Previous PageSMS
Next PageExtend verification type

#Verification: TOTP Authenticator

#Introduction

The TOTP Authenticator allows users to bind any authenticator that complies with the TOTP (Time-based One-Time Password) specification (RFC-6238), and perform identity verification using a time-based one-time password (TOTP).

#Administrator Configuration

Navigate to the Verification Management page.

Add - TOTP Authenticator

Apart from a unique identifier and title, no additional configuration is required for the TOTP authenticator.

#User Binding

After adding the authenticator, users can bind the TOTP authenticator in their personal verification management area.

WARNING

The plugin does not currently provide a recovery code mechanism. Once the TOTP authenticator is bound, users are advised to keep it secure. If the authenticator is accidentally lost, they can use an alternative verification method to verify their identity, unbind the authenticator, and then rebind it.

#User Unbinding

Unbinding the authenticator requires verification using the already bound verification method.