• Hello,

    I enabled this plugin and have added a new user to WordPress. They receive the Google Authenticator challenge upon their first login.

    How do they setup Authenticator if they can’t login the first time?

    Thank you.

Viewing 2 replies - 1 through 2 (of 2 total)
  • Thread Starter a305587

    (@a305587)

    Update: Odd. The user was able to click through the login bypassing the 2FA field and get in without the code. It took them directly to the QR code scan page where they were able to set up 2FA.

    I guess disregard? Although I’m wondering how one could bypass the 2FA…

    First login is always without the F2A, because it has to be configured.
    when you haven’t a F2a active you will not get an F2A check.
    Because you are unable to answer that, you don’t have any F2A set up,yet ??

    Then you have to scan it’s QR-code and answer the question,
    is’s setup to check to be 100% sure it is correctly configured.
    Only then F2A is active for all the next logins of that user.
    Only then you are allowed to enter the website.

    There is no way to bypass F2A without the app, unless you have rescue codes.
    If you even get shut out of your website because of an F2A malfunction
    or loss of phone and no rescue codes.
    the only way to get access if to manually remove or rename it’s plugin folder in the wordpress plugins folder..
    Only after logging in, and restoring this, making it active again
    you can scan a new QR to get control back.

    That is the only way, to my knowledge, to get your login to work again after it fails
    or you lost the device and don’t have rescue codes.
    It’s pretty secure ????

    Love ??,
    Amy

Viewing 2 replies - 1 through 2 (of 2 total)
  • The topic ‘How to add new users once Google Authenticator is installed?’ is closed to new replies.