Pax8 Partner Guides

Two-Factor Authentication

Two-factor authentication (2FA) is an additional layer of security used to protect your TitanHQ Portal account from unauthorized access. If 2FA is enabled, a user provides their username and password on login and then must also provide an additional piece of information known only to them. This additional piece of information is a one-time password, regenerated every thirty seconds.

Follow the steps below to enable 2FA.

Important

You must download and install an authenticator phone app, e.g. Google Authenticator or FreeOTP to complete the steps below.

  1. Go to Settings > Two-Factor Auth and the Two-Factor Authentication (2FA) Settings panel displays.

  2. Click the OFF PP-WTC-off-button.jpg button and the panel expands:

    PP-two-factor-auth-settings.jpg
  3. Scan the QR code using an authenticator phone app. If you are unable to scan the QR code, manually enter the secret provided.

  4. In the Code: field, enter the code generated from the authenticator phone app.

  5. Click Save.

  6. Two-factor authentication is now enabled for your account. To force 2FA for all your customer accounts, slide the button PP-WTC-on-button.jpg in the Two-Factor Authentication (2FA) Enforcement panel.

    PP-two-factor-auth-enforcement.jpg

    In the Two-Factor grace period: field, you can specify a grace period in days that customer users will be allowed to skip the forced configuration of two-factor authentication.

  7. Click Save.

Recovery Codes

A set of recovery codes are generated when 2FA is enabled. Store these codes carefully as they are the only way to access your TitanHQ Portal if the device you registered 2FA on is lost.

The recovery codes are one-time use and they must be used in sequential order.

PP-two-factor-auth-codes_blurred.jpg