Using Two-Factor Authentication
These instructions show how to set up two-factor authentication during your initial sign in to Adobe Commerce or Magento Open Source and how to authenticate your identity using the following apps and devices:
- Google Authenticator
- Duo Security
- Authy
- U2F (Yubikey and other devices)
For complete instructions, see Admin Sign In.
Google Authenticator
Step 1: Set up Google Authenticator
-
Enter your account credentials and sign in to the Admin.
A new authenticator screen appears with a QR code.
-
Open the Google Authenticator app on your mobile device.
-
Click the plus sign ( + ) to add a new entry. Then, do the following:
-
Line up the red box with the QR code to scan with the camera on your smart phone.
-
When it recognizes the QR code and adds an entry, enter that 6-digit code in the Admin Authenticator code field.
-
-
When complete, click Confirm.
Google Authenticator QR code
Step 2: Sign in with Google Authenticator
-
Enter your account credentials and sign in to the Commerce Admin.
Google Authenticator
-
Open Google Authenticator on your mobile device.
-
When prompted, enter the six-digit Authentication code.
-
To save the authentication for future logins, select the Trust this device, do not ask again checkbox.
-
When complete, click Confirm.
Duo Security
Duo offers a free trial, and charges according to the number of users that are associated with the account. Follow their instructions to set up your account and download the app. Duo Mobile is available through Google Play or iOS App Store.
Step 1: Set up Duo Security
-
Enter your account credentials and sign in to the Admin.
-
When the Duo Setup page appears. Click Start setup and do the following:
Duo Setup
-
Select your device.
Device Type
-
When prompted, enter your phone number, and click Continue.
This example requests your phone number, because we are using a mobile device.
Enter Your Phone Number
-
When prompted to install Duo Mobile for your phone type, click I have Duo Mobile.
Verify App Installation
-
-
Open Duo Mobile and scan the QR code to sync the authenticator with Adobe Commerce. A checkmark appears when the activation is complete.
Duo Verification Code
-
To configure your settings for the device, choose the action that you want to take place when you sign in.
Ask me to choose an authenticator method
— Allows the user to select when logging in and authenticating in the Admin.Automatically send this device a Duo Push
— Sends a message to your device to accept or deny for access.Automatically call this device
— Calls and provides a passcode to enter for access.
Duo verification code
Step 2: Sign in with Duo Security
The following example shows the options for Ask me to choose an authenticator method
:
-
When prompted, enter your Admin credentials to sign in.
Duo access
-
Choose the method that you want to use to authenticate:
Send Me a Push
— Click to receive a push notice to Duo Mobile. Accept to authenticate.Call Me
— Click this option, receive a call with a code, and enter the passcode.Enter a Passcode
— Click this option to receive and enter a passcode.
-
Complete the push or code to fully sign in to the Admin.
Authy
Authy offers their app and service at no charge to users. Follow their instructions to download and set up the app for your device or browser. To learn more, see the Authy documentation.
Step 1: Set up Authy
-
Enter your account credentials and sign in to the Admin.
Authy registration
-
When prompted to register yourself with Authy, do the following:
-
Select your Country.
-
Enter your Phone number.
-
Select one of the following Verification methods:
SMS
Call Me
-
Click Continue.
A message is sent to your phone through SMS text or a call.
-
-
Enter the Verification code that you receive and click Verify.
-
When complete, click Confirm.
Authy verification code
Step 2: Sign in with Authy
-
Enter your account credentials and sign in to the Admin.
Authy access
-
Choose one of the following methods to authenticate:
Use one touch
— Sends an alert to your Authy app. In the app, accept the access.Use authy token
— Prompts to enter a code from your Authy app.
-
If you have trouble signing in, choose the method you want to use to receive the code. Then, enter the code that you receive to access the Admin.
The app includes these additional emergency methods.
Send me a code via SMS
— A text SMS message is sent to the configured mobile device.Send me a code via phone call
— The user receives a phone call with a code.
Your account is verified and opens.
U2F (Yubikey and other devices)
Follow the instructions from the solution provider to configure your U2F device. For more information, see the vendor documentation, such as YubiKey by Yubico.
-
Enter your account credentials and sign in to the Admin.
U2F Key Access
-
Press the button on the key.
Authentication immediately triggers and opens the Admin.
-
Insert the U2F key into a USB port on your computer.