How to enable two-factor authentication feature (User Web Client)

Once the Admin has been enabled and configured the 2FA, users will see a new option under Preferences > Accounts > Account Security, called Setup two-step authentication

If the user clicks on the Setup two-step authentication link, the configuration process will begin.

The first step shows a brief description about two-step authentication. The user must click on Begin Setup.

Zcs87-2fa-003.png

Next step will be introduce the user current password, if you remember the theory of 2FA, this will be “the component the user knows”. Once the user wrote the password, click on Next.

Zcs87-2fa-004.png

The next step retrieves the other component the user must have, in this case an app in the smartphone. The Two Factor authentication wizard will show a Wiki link with the OTP Apps Vmail recommends to use.

Zcs87-2fa-005.png

Once the user has installed the App, the 2FA wizard will show a unique key that the user must enter in the Smartphone OTP App.

Zcs87-2fa-006.png

How to Install and Configure an OTP smartphone app

In this example, I will use Google authenticator, but please visit our Wiki where you can find other options. In the App Store or Play Store, search by Google authenticator, then click Install.

Zcs87-2fa-010.png

Once the app is installed, open it, and click Begin Setup.

Zcs87-2fa-011.png

The app will ask if you want to configure a Manual entry or Scan a barcode. Vmail only manual entry for now. However, keep in mind the next Bug where it is being discussed to add the option to support barcodes.

Zcs87-2fa-012.png

To configure the App, the users must add an email address and the unique Key from the Vmail Web Client.

Zcs87-2fa-013.png

All done! Now the app is configured and will show a 6-digit code that changes after 15 seconds.

Finishing the configuration in the Web Client

Once the user has the App configured and showing the 6 digit code, the user can enter the Code in the wizard window and click Next.

Zcs87-2fa-007.png

The two-step authentication feature is now enabled, and the user will be prompted for a code in each new Browser, smartphone, computer, or app where he or she tries to access the account.

Zcs87-2fa-008.png

In the users’ Preferences > Accounts > Account Security the user will see more options like the one-time codes, Trusted devices, and Applications. as

Zcs87-2fa-009.png

Did you find this article useful?