Two-Factor Authentication (2FA) adds an extra layer of security to user accounts by requiring an additional verification step during login.
When 2FA is enabled, users must configure an authenticator application (such as Google Authenticator or Authy) by scanning a QR code or entering a setup key. The authenticator app then generates a time-based 6-digit authentication code.
During login:
- After successful credential validation, users are prompted to enter the 6-digit authentication code generated by their authenticator app.
- Access to the account is granted only after the code is successfully verified.
2FA significantly enhances account security by ensuring that access is allowed only to users who possess both their login credentials and the registered authentication device.
During the 2FA setup process, users can:
Activate: Complete the setup by scanning the QR code or entering the setup key in an authenticator app and verifying the 6-digit code. Once activated, 2FA will be required for all future logins.
Skip: Skip the 2FA setup and continue accessing the platform without enabling 2FA. Users can enable 2FA later from their account security settings.
When 2FA is enabled, users must enter the authentication code generated by their authenticator app after successful login credentials validation. Access is granted only upon successful verification.
