Search Results :

×

How to use MFA with Single Sign-On (SSO) in WordPress?

Two-Factor Authentication (2FA/MFA) on Single Sign-On (SSO) provides an additional layer of security to authenticate users to access the Service Provider. The miniOrange 2-Factor Authentication plugin provides TOTP/OTP based verification, Email or Phone verification methods after SSO. By adding 2FA, even if an attacker manages to steal or guess a user's password, they will not be able to access your website without also possessing the second factor.
Furthermore, 2FA can help to protect against various types of attacks, such as phishing, social engineering, and password spraying. These types of attacks can be particularly effective against SSO, as once an attacker has obtained a user's credentials, they can access multiple applications.

Let’s see how to use MFA with Single Sign-On (SSO) in WordPress.

SSO 2FA - Click login with WordPress

  • You will be directed to the WordPress IDP login page.
  • Enter your login credentials and click on the Login button.
SSO 2FA - Click login button

  • Choose the Google/Authy/Microsoft Authenticator radio button. You are prompted to configure a two-factor method while logging in for the very first time.
SSO 2FA - Select Two Factor method

  • Choose Google Authenticator from the dropdown (in this case you will already find it selected.)
  • Open the Google Authenticator app on your phone. Click on the Plus button and scan the QR code.
  • Copy the 2FA Code generated in the Google Authenticator app in your mobile phone and enter the 2FA code in the text box provided and click on the Verify button.
SSO 2FA - Scan QR code

  • You will be logged in successfully.

  • Again, go to your Moodle login page and click on the Login with WordPress button to test the authentication with Google Authenticator app.
SSO 2FA - Open Moodle login page

  • Enter your login credentials and click on the Login button.
SSO 2FA - enter Username and Password

  • You will be prompted to validate OTP(security code) from the Authenticator app.
  • Enter the security code shown in the authenticator app and click on the Validate button to login to the site.
SSO 2FA - Enter One TIme Passcode

SSO 2FA - Open Dashboard page

  • Your account is secured now and only after verification will you be able to log in.

  • SSO 2FA GIF



     Thank you for your response. We will get back to you soon.

    Something went wrong. Please submit your query again

    We'll Reach Out to You at the Earliest!


    ADFS_sso ×
    Hello there!

    Need Help? We are right here!

    support