[WordPress] 外掛分享: Two Factor Authentication (2FA , MFA, OTP SMS and Email)

WordPress 外掛 Two Factor Authentication (2FA , MFA, OTP SMS and Email) 的封面圖片。

前言介紹

  • 這款 WordPress 外掛「Two Factor Authentication (2FA , MFA, OTP SMS and Email)」是 2016-06-29 上架。
  • 目前有 500 個安裝啟用數。
  • 上一次更新是 2023-04-18,距離現在已有 745 天。超過一年沒更新,安裝要確認版本是否可用。以及後續維護問題!
  • 外掛最低要求 WordPress 3.0.1 以上版本才可以安裝。
  • 外掛要求網站主機運作至少需要 PHP 版本 5.3.0 以上。
  • 有 6 人給過評分。
  • 論壇上目前有 1 個提問,問題解答率 0%

外掛協作開發者

miniorange | twofactorauthentication |

外掛標籤

2FA | MFA | otp | two factor authentication | multi factor authentication |

內容簡介

多因素驗證-雙重因素(2FA/OTP)-可以為任何基於 TOTP 的驗證方法(例如谷歌驗證器、Microsoft驗證器等)配置多因素驗證來保護您的WordPress網站。它還支持OTP通過短信、OTP通過電子郵件、Duo驗證器、Microsoft驗證器、OTP通過WhatsApp、OTP通過Telegram等許多驗證方法。

注意:這個雙重因素外掛符合GDPR規範,並支持多種語言翻譯

谷歌驗證器 (2FA,雙重因素驗證)在多個網站中使用相同的OTP進行同步

您只需要對谷歌驗證器和其他雙重因素驗證方法進行一次配置,即使在多站點環境中,也可以自動反映在整個網絡上。這可用於谷歌驗證器、Duo驗證器、Microsoft驗證器、安全提問、LastPass、Authy、miniOrange方法、通過短信的OTP和通過電子郵件的OTP等。這僅在使用我們的 MFA 雲服務時支援。

支援多種WordPress表單

Ultimate Member – 使用者個人檔案和會員表單
限制內容表單
My theme 登入表單
使用者註冊自訂註冊表單
自定義登錄頁自定義表單
管理員自定義登錄表單
RegistrationMagic – 自訂註冊表單和更多。

特點

我們支援各種設備的多重身份驗證。
簡化和用戶友好的UI來設置谷歌驗證器和其他雙重因素驗證(2FA/TFA/MFA)方法。
多種身份驗證方法:支援任何支援OTP方法的應用程式(如谷歌驗證器、通過短信的OTP、Duo驗證器、通過電子郵件的OTP、Authy驗證器、LastPass驗證器、QR碼、推送通知、軟件令牌和安全問題(KBA))
谷歌驗證器的雙重因素驗證(2FA/TFA)允許在登錄頁面上進行身份驗證

miniOrange雙重因素驗證的不同之處?

我們支援多種身份驗證方法,並提供備份方法選項。
我們支援設備識別或記住設備功能。
我們支援MFA方法,如通過短信的OTP、通過電子郵件的OTP等,用於Woocommerce前端登錄主題。
現在在不同的前端自定義登錄頁面和高級主題中提供了shortcode。

多重身份驗證器 (2FA/OTP)

高級外掛特點

用戶按升級(基於網站的定價)進行雙重身份驗證(2FA)
雙重身份驗證方法:谷歌驗證器、Authy驗證器、

原文外掛簡介

Multi-Factor Authentication – Two Factor (2FA/OTP) – Multi-factor authentication can be configured for any TOTP-based authentication method like Google Authenticator, Microsoft Authenticator, etc to secure your WordPress website. It also supports OTP Over SMS, OTP Over Email, Duo Authenticator, Microsoft Authenticator, OTP Over WhatsApp, OTP Over Telegram, and many more authentication methods.

Note: The two-factor plugin is GDPR Compliant and supports a wide variety of Language Translations
Google Authenticator ( 2FA, Two Factor Authentication ) sync on multiple websites with the same OTP
You only need to configure Google Authenticator and other Two Factor Authentication ( 2FA ) methods once even on a multisite environment. This configuration will then be automatically reflected on the entire network. This is available for Google Authenticator, Duo Authenticator, Microsoft Authenticator, Security Questions, LastPass, Authy, miniOrange methods, OTP over SMS, and OTP over Email. It is supported only if you are using our MFA cloud services.
supports variety of WordPress forms

Ultimate Member – User Profile & Membership Form
Restrict Content Form
My theme Login Form
User Registration – Custom Registration Form
Custom Login Page Customizer Form
Admin Custom Login Form
RegistrationMagic – Custom Registration Forms
and more.

Features

We support multi-factor authentication for all types of devices.
Simplified & user friendly UI to set up Google Authenticator and other Two Factor Authentication ( 2FA/TFA/MFA ) methods.
Variety of Authentication Methods: Any application supporting OTP methods like Google Authenticator, OTP over SMS, Duo Authenticator, OTP over EMAIL, Authy Authenticator, LastPass Authenticator, QR Code, Push Notification, Soft Token, and Security Questions(KBA)
Two Factor Authentication (2FA/TFA) allows authentication on the login page itself for Google Authenticator

How is miniOrange Two Factor Authentication different?

We support multiple authentication methods and also provide the option of a backup method.
We support Device Identification or remember device features.
We support MFA methods like OTP over SMS, OTP over Email, etc for the Woocommerce frontend login theme.
ShortCode is now available for different frontend custom login pages and Premium themes as well.

Multi-Factor Authenticator ( 2FA/OTP )
Premium Plugin Features

Two Factor Authentication (2FA) for Users as per the upgrade ( Site-based pricing )
Two-Factor Authentication Methods: Google Authenticator, Authy Authenticator, Microsoft Authenticator, LastPass Authenticator, Security Questions, OTP Authentication( OTP Over Email & OTP Over SMS), Email Verification, Mobile Verification ( SMS credits need to be purchased as per the need)
Multiple Login Options: Username + password + two-factor (or) Username + two-factor i.e. Passwordless login /Login without password /Password free authentication. You can opt between a password and 2FA or only a second factor
Role based MFA
Backup Method: KBA(Security Questions), OTP over Email
Multisite compatible
User role based redirection after Login
Customize account name in Google Authenticator app
Custom Security Questions (KBA)

Multi Factor Authenticator ( 2FA/OTP )
Premium Plugin(All Inclusive) Features

Two Factor Authentication (2FA) for Users as per the upgrade ( Site-based pricing )
Two-Factor Authentication Methods: Google Authenticator, Authy Authenticator, Microsoft Authenticator, LastPass Authenticator, Security Questions, OTP Authentication( OTP Over Email & OTP Over SMS), Email Verification, Mobile Verification ( SMS credits need to be purchased as per the need)
Multiple Login Options: Username + password + two-factor (or) Username + two-factor i.e. Passwordless login /Login without password /Password free authentication. You can opt between a password and 2FA or only a second factor.
Unlimited Email transactions
Backup Method: KBA (Security Questions), OTP Over Email, Backup codes
User role based redirection after Login
Customize account name in Google Authenticator app
Custom Security Questions (KBA)
Role based 2 Factor
Force Two-factor for users
Email notification to users asking them to set up Two-Factor Authentication (WP 2FA/TFA)
Set Privacy Policy for users
Remember Device to skip 2fa
Customizable Login UI Popup: Using google authenticator plugin you can customize the user interface of the login popup as per your preference
Multisite compatible (only 3 subsites)

Multi-Factor Authenticator ( 2FA/OTP )
Enterprise Plugin Features

Two Factor Authentication (2FA) for Users as per the upgrade ( User-based pricing )
Available Authentication Methods: Google Authenticator, Authy Authenticator, Microsoft Authenticator, LastPass Authenticator, QR Code, Push Notification, Soft Token, Security Questions(KBA), OTP Authentication(OTP Over Email, OTP Over SMS or OTP Over SMS and Email), Email Verification, Hardware Token ( SMS and Email credits need to be purchased for successful OTP authentication as per the need)
Multiple Login Options: Username + password + two-factor Authentication (or) Username + two-factor authentication(2FA) i.e. Passwordless login /Login without password.
Backup Methods: KBA(Security Questions), OTP Over Email, Backup Codes
Sync 2fa for multiple websites
Multisite compatible for all WordPress 2FA methods
Email notification to users asking them to set up Google Authenticator – Two-Factor Authentication (WP 2FA/TFA)
User role based redirection after Login, Custom Security Questions (KBA), Customizable account name in Google Authenticator app
Enable Two-Factor Authentication (WP 2FA/OTP) for specific Users/User Roles
Choose specific two-factor authentication methods for Users
Add-Ons Included: RBA & Trusted Devices Management Add-on, Personalization Add-on and Short Codes Add-on
Brute force attack prevention, IP Blocking & User login Monitoring
File protection & strong password
Monitoring current Google Authenticator and other two-factor authentication (2 Factor) method of all the users in the plugin
Session restriction

Multi factor authentication ( 2FA / MFA )
You can configure multiple WordPress 2FA methods like google authenticator, OTP over Email, OTP over SMS, etc, and choose any one method from a list of configured methods to use as 2FA for your WordPress website. Multi-factor authentication is helpful for cases such as when you do not have your phone and cannot access your TOTP app for login. You can then use other MFA methods like OTP over Email to login.
Check all the features other than MFA ( 2FA ) here: miniOrange Website.
Why do you need to register for Multi-Factor authentication?
Multi-Factor authentication uses miniOrange APIs to communicate between your WP website and miniOrange. To keep this communication secure, we ask you to register and assign API keys specific to your account. This way your account and users’ calls can only be accessed by API keys assigned to you.
Adding to this, you can also use the same account on multiple applications and your users do not have to maintain multiple accounts on WordPress 2FA like Google Authenticator. Single code generated in Google Authenticator will be enough to login to all sites. With this, you can also achieve sync of two factor authentication across multiple sites. This helps to provide a secure WP 2FA cloud solution.
Useful blog posts about two factor authentication ( 2FA/MFA ) plugin

Beginner’s Guide: How to Add Two Factor Authentication to WordPress
How to Add WordPress Two Factor Authentication (2FA/TFA)

OTP OVER WHATSAPP
With OTP over WhatsApp, users can receive OTP via the world’s most popular messaging app, WhatsApp as 2FA. Click here to download the Login with WhatsApp plugin.
OTP USING FIREBASE
This add-on allows you to use Firebase SMS transactions to send OTP via SMS as 2FA. Using this add-on, you can get upto 10,000 SMS transactions a month to send OTPs. For further information, please contact us at [email protected].
OTP FOR SELECTED COUNTRIES
This is an add-on which allows OTP Verification to be enabled for selected list of countries only. OTP Verification for any other country not in the list will be blocked.
BULK SMS AND OTP
This is an add-on which allows Admin to send Custom SMS and OTP Verification codes in bulk. Upload the CSV file or enter the numbers manually along with the SMS template that needs to be sent in bulk.
LIMIT OTP REQUEST
This is an add-on which allows Blocking of OTP codes from being sent out before the set timer is up. This Addon helps in limiting malicious users or unwanted OTP requests to be made by blocking the user for the time limit set.
OTP OVER PHONE CALL
This is an add-on which allows OTP Verification over Phone Call instead of SMS. The code will be received via a phone call to the customer.
VERIFICATION VIA EMAIL LINK
This is an add-on which allows User Verification via accept/reject links received on the email instead of OTP codes.

各版本下載點

  • 方法一:點下方版本號的連結下載 ZIP 檔案後,登入網站後台左側選單「外掛」的「安裝外掛」,然後選擇上方的「上傳外掛」,把下載回去的 ZIP 外掛打包檔案上傳上去安裝與啟用。
  • 方法二:透過「安裝外掛」的畫面右方搜尋功能,搜尋外掛名稱「Two Factor Authentication (2FA , MFA, OTP SMS and Email)」來進行安裝。

(建議使用方法二,確保安裝的版本符合當前運作的 WordPress 環境。


1.0.2 | 1.0.3 | 1.0.4 | 1.0.5 | 1.0.6 | 1.0.7 | 1.0.8 | 1.2.0 | 1.2.1 | 1.2.2 | 1.2.3 | 1.2.4 | 1.3.0 | 1.3.1 | 1.3.2 | 1.4.0 | 1.4.1 | trunk |

延伸相關外掛(你可能也想知道)

  • Rublon Multi-Factor Authentication (MFA) 》重新掌控您的公司!, , 所有員工的帳戶安全, 無需配置或培訓, , , 安全專家和行業專業人員推薦, “我印象深刻!” — Tony Perez,Sucuri , ...。
  • SnapID Two-Factor Authentication 》感謝您選擇SnapID™作為雙重身分驗證服務。很不幸地,我們將於2020年5月1日停止提供此免費服務。請在此日期之前停用此外掛以避免問題。我們為此造成的不...。
  • Acceptto Multi Factor Authentication 》Acceptto 提供多因素身份驗證服務,以保護免受帳戶入侵和資料盜竊。透過 Acceptto 外掛,您可以在短短幾分鐘內為您的 WordPress 網站添加多因素身份驗證!, ...。

文章
Filter
Apply Filters
Mastodon