OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • Web Proxy Filtering and Caching (Moderator: fabian) »
  • in Tester, OK with Local server but error with TOTP Server
« previous next »
  • Print
Pages: [1]

Author Topic: in Tester, OK with Local server but error with TOTP Server  (Read 2352 times)

WhiteTiger

  • Jr. Member
  • **
  • Posts: 73
  • Karma: 1
    • View Profile
in Tester, OK with Local server but error with TOTP Server
« on: June 22, 2020, 10:28:17 am »
I am new to OPNSense and I am following the guide to enable 2FA with Google Authenticator.
I create the TOTP server and a second user I go to the Tester.
If I choose Local server, the test works.
If I choose TOTP Server I have an authentication error.
In this case, however, I expected a field to appear on the screen where you can enter the Google Authenticator code but only the one for the username and password always appears.

I didn't understand if, also to do the test, I have to enable the TOTP server in System / Settings / Administration / Authentication.
I wish I could be sure that I can always authenticate as root without 2FA until everything works properly
Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 17751
  • Karma: 1620
    • View Profile
Re: in Tester, OK with Local server but error with TOTP Server
« Reply #1 on: June 22, 2020, 12:20:35 pm »
The connector is most likely Local+TOTP so you input both the local password and the token in the order that you set in the authentication server settings.


Cheers,
Franco
Logged

WhiteTiger

  • Jr. Member
  • **
  • Posts: 73
  • Karma: 1
    • View Profile
Re: in Tester, OK with Local server but error with TOTP Server
« Reply #2 on: June 22, 2020, 04:12:25 pm »
Quote from: franco on June 22, 2020, 12:20:35 pm
The connector is most likely Local+TOTP so you input both the local password and the token in the order that you set in the authentication server settings.
I understand, I have to type "TokenPassword" in the same field.
Many thanks.

What I didn't understand is where I can set the "PasswordToken" request.

I did not understand why there are no two separate fields as is usually done.
In this way you cannot use services like LastPass to store very long and randomly generated passwords because it would always be known as a different password.
Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 17751
  • Karma: 1620
    • View Profile
Re: in Tester, OK with Local server but error with TOTP Server
« Reply #3 on: June 25, 2020, 02:28:05 pm »
> I did not understand why there are no two separate fields as is usually done.

That's not an objective statement. You're using confirmation bias here and you will most likely work with GUI more than terminals where a second input box is far more problematic when you think of e.g. standardised PAM authentication exchange and the like.  :)

> What I didn't understand is where I can set the "PasswordToken" request.

I'm unable to process this. Can you rephrase?


Cheers,
Franco
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • Web Proxy Filtering and Caching (Moderator: fabian) »
  • in Tester, OK with Local server but error with TOTP Server
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2