Two-factor authentication (2FA) is a security method that requires users to provide two authentication factors to verify their identity, typically a password combined with another factor. This approach enhances security when accessing websites, applications, or networks by adding an additional layer of protection. Therefore, 2FA can improve account security and better protect organizations and their users from unauthorized access.
AOC supports the email-based two-factor authentication. Once enabled, when a user logs in to AOC, in addition to providing the username and password, the user also needs to provide the verification code in the verification email. The login will be successful only when both the authentication checks are passed.
Prerequisites
Precaution
After configuring two-factor authentication, users need to provide their email address to receive a verification email when logging in. Users who have not provided their email addresses can contact the administrator to add their email addresses, and then log in again for verification.
Procedure
In the left sidebar of the AOC System configuration page, click Two-factor authentication.
Enable Two-factor authentication, and fill in the following configuration information:
| Parameter | Description |
|---|---|
| SMTP server | Select the SMTP server for sending two-factor authentication emails. |
| Sender address | Enter the email address for sending two-factor authentication emails. |
| Test email address | Enter the email address for receiving test emails. You can enter one or more emails. |
You can modify the above information after saving it.
Click Save, and the system will send the test email. If the page prompts Test email sent, then the two-factor authentication configuration has taken effect.
You can check the test email in the test mailbox to ensure that the configuration is correct.
Configuration result
After the configuration takes effect, when a user logs in to AOC, in addition to providing the username and password, the user will also need to provide the verification code in the verification email for identity authentication.