Two Factor
Please read the install guide!
A Flarum extension that increases security by adding TOTP (Google Authenticator) two factor authentication.
Goals
- To increase forum security
Usage
- As a user, go to your account settings page and follow the prompts to setup twofactor
- No admin options to configure
Installation
This extension requires a bit more setup. These steps are optional but will greatly increase the security of this plugin.
First install it with composer:
composer require issyrocks12/flarum-ext-twofactor
Then login and enable the extension.
!!Make sure to undo this if you ever uninstall this extension!!
If you have Apache, add these lines right after the "RewriteEngine on"
RewriteCond %{REQUEST_URI} ^/login
RewriteRule ^(.*)$ - [F,L]
If you have Nginx add these lines to your server block:
location ~ ^/login {
deny all;
}
Q: What does this do?
A: This extension uses a custom login handler and therefore a different url to send the login request to. If someone changes the url back to the default they could bypass the two factor auth.
To Do
- SMS 2 Factor (In Progress)
- Requests?
Issues
Links