For Administrator platform users
We implemented 2FA authentication to ensure the security by making it more difficult for intruders to gain unauthorized access. 2FA is essential to web security because it immediately neutralizes the risks associated with compromised passwords.
To use this feature you need to open your profile on Frontu. Mark the checkbox below the user's data.
Now when the checkbox is marked, next time when you will try to login, after entering your credentials, you will be redirected to next page with verification code field.
Verification code is sent to the email you are using for login. It looks like this and provides you the verification code that must be added into the field. Click "Login" and you will successfully login to your account.
What is more, you can see who is using 2FA authentication in your company in users list. We show the information where usage is marked "yes" or "no".
For Application users
Application users can use the 2FA method too. The first step is to enable it by clicking edit action on the application user. The checkbox "2-Factor Authentication" have to be marked if you want application user to use this feature.
When the checkbox is marked, app user will not be able to log in without entering the verification code. The code will be sent to the email so it must be valid that user would be able to check it and get the code.
After entering verification code, click "Sign in". Log in will be successful and only then the user will be able to use the application.
About the verification code
The code has 4 digits and is sent to the user's login email.
The code is valid for 10 minutes and works only once.
Up to 5 codes per hour can be sent to one account. After that, use the last code you received.
The login is completed only after the correct code is entered. The "New login" email is also sent only after that.
If the code has expired, log in again to get a new one.
Require two-factor authentication for all users
Instead of enabling 2FA one user at a time, Administrators can require it for all users at once. The web and the mobile app now have separate settings.
Go to Settings → Additional info → Security. [CHECK: confirm menu path]
Choose the options you need:
Require two-factor authentication on the web – office users must enter a code when they log in with a password.
Require two-factor authentication in the app – application users must enter a code when they log in to the mobile app.
Click Save.
The two options work independently. Turning on one does not turn on the other.
Have in mind that if you used the previous "Enforce two-factor authentication" setting, its value was kept for both new options. Nothing changes until you edit them.
These settings do not apply to:
customer portal users;
logins with Google or Microsoft single sign-on (SSO);
logins with Remember me.
The required setting does not change each user's own 2FA checkbox. If you turn the setting off, each user goes back to their own choice: users with the checkbox marked keep 2FA, and users without it log in with a password only.
Single sign-on (SSO) and 2FA
When a user logs in with Sign in with Google or Sign in with Microsoft, Frontu does not ask for an email code or passkey, even if 2FA is on for the user or required for everyone. The Google or Microsoft login already provides the extra security.
If the same user logs in with email and password, Frontu 2FA still applies.
Turning 2FA off
If you logged in more than 10 minutes ago, Frontu asks for your password before you turn off 2FA on your profile. Enter it in the Current password field and click Save.
After 2FA is turned off, Frontu sends an email to the account owner. If you did not make this change, change your password and contact your Administrator.
Use enforced 2FA to guarantee company-wide security instead of relying on each user to enable it themselves.




