[Koha-bugs] [Bug 28786] Two-factor authentication for staff client - TOTP

bugzilla-daemon at bugs.koha-community.org bugzilla-daemon at bugs.koha-community.org
Mon Aug 2 22:15:26 CEST 2021


https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=28786

David Nind <david at davidnind.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
  Text to go in the|                            |This enhancement adds an
      release notes|                            |initial optional
                   |                            |implementation of
                   |                            |two-factor authentication
                   |                            |(2FA) to improve security
                   |                            |when logging into the staff
                   |                            |interface.
                   |                            |
                   |                            |This
                   |                            |implementation uses
                   |                            |time-based, one-time
                   |                            |passwords (TOTP) as the
                   |                            |second factor, letting
                   |                            |librarians use an
                   |                            |application to handle it
                   |                            |and provide them the code
                   |                            |they need when logging in.
                   |                            |
                   |                            |It is enabled using the new
                   |                            |system preference
                   |                            |"TwoFactorAuthentication".
                   |                            |
                   |                            |Librarians can then enable
                   |                            |2FA for their account from
                   |                            |More > Manage Two-Factor
                   |                            |authentication. To setup:
                   |                            |1) Scan the QR code with an
                   |                            |authenticator app. 2) Enter
                   |                            |the one time code
                   |                            |generated. For future
                   |                            |logins, librarians are
                   |                            |prompted to enter the
                   |                            |authenticator code after
                   |                            |entering their normal login
                   |                            |credentials.
                   |                            |
                   |                            |Any
                   |                            |authenticator app, such as
                   |                            |Google Authenticator,
                   |                            |andOTP, and many others can
                   |                            |be used. Applications that
                   |                            |enable backup of their 2FA
                   |                            |accounts (either
                   |                            |cloud-based or automatic)
                   |                            |are recommended.

-- 
You are receiving this mail because:
You are watching all bug changes.


More information about the Koha-bugs mailing list