Search Results :

×

Configure Kentico 2FA using Google Authenticator

Kentico Two-Factor Authentication (2FA) adds an extra layer of security to your Kentico application login by enabling Google Authenticator. After users enter the correct username and password, they are required to enter a time-sensitive passcode generated by the Google Authenticator app. Google Authenticator is a reliable second-factor method that helps protect user accounts against phishing, brute-force attacks, and unauthorized access. The plugin also supports methods such as Microsoft Authenticator, OTP over SMS, and OTP over Email.

  • Download the Kentico Two-Factor Authentication (2FA) plugin.
  • Add the following module in your web.config file under the <modules> section.
 <add name="miniOrangeKenticoMFAModule"
    type="miniOrange.Kentico.MFA.HttpModules.miniOrangeKenticoMFAModule, miniOrange.Kentico.MFA"
    preCondition="managedHandler" />
  • After adding the module, open your browser and browse the plugin dashboard with the URL below:
 https://<kentico-base-url>/CMSPages/logon.aspx?mfaaction=config
  • Select the required connection string from the dropdown and click on the Save and Test Connection buttons to configure the database connection for the miniOrange Kentico MFA plugin.
  • After saving and testing the connection, click the Continue button to proceed.
Kentico MFA - Save and test connection, then Continue

Step-by-step guide for implementing Two-Factor Authentication (2FA) in Kentico using Google Authenticator.

  • After successful database configuration, the registration page or login page will appear as shown below.
Kentico MFA - Register with miniOrange

  • Register with your account by clicking the Register button to configure the Kentico MFA plugin.
  • After successful registration, you will receive a trial license key on your registered email address.
  • To activate the plugin, you can either:

    • Enter the license key received via email in the provided input field.

    OR

    • Go to the Upload License File tab and upload the license file that you downloaded using the Download License Key button by using the Choose File option.
Kentico MFA - Activate License

Kentico MFA - Upload License File

  • Then, click the Activate License button.
Kentico MFA - Enter and Activate License

  • After successful license activation, the plugin dashboard will open as shown below.
Kentico MFA - Plugin Dashboard
  • On the plugin dashboard, navigate to the Authenticator apps tab and click the Configure button below the Google Authenticator method.
Kentico MFA - Configure Google Authenticator

  • To register your device, scan the QR code using the Google Authenticator app or use the secret code.
Kentico MFA - Scan QR code or use secret code

  • After scanning the QR code, a six-digit token will be generated in the Google Authenticator app. Enter the passcode and click the Verify button to complete the setup.
Kentico MFA - Verify Google Authenticator passcode

  • Once the Google Authenticator method is configured, enable it for the end user by clicking the toggle button.
Kentico MFA - Google Authenticator configured and active

  • Enable the Enable 2FA for End-Users toggle button.
Kentico MFA - Enable 2FA for End-Users

  • To enable 2FA for administrators, turn on the Enable 2FA for Administrators toggle.
Kentico MFA - Enable 2FA for Administrators
  • Log in to your Kentico application.
Kentico MFA - Kentico login page

  • After login, end users see the Setup 2FA methods list.
  • Click Setup beside Google Authenticator.
Kentico MFA - End user setup Google Authenticator

  • Scan the QR code using the Google Authenticator app or enter the secret key manually. Then, enter the generated passcode.
  • After entering the passcode, click the Verify button to complete Google Authenticator registration.
Kentico MFA - End user verify Google Authenticator passcode

Note: These configuration steps are a one-time setup for configuring the TFA method for the user. The next time the user logs in, they will only see the Verify screen (the last step below) to complete authentication.


  • On subsequent logins, enter the passcode generated by the Google Authenticator app and click the Verify button.
Kentico MFA - Verify Google Authenticator code on login

  • The user will be logged in to their Kentico application.

 Thank you for your response. We will get back to you soon.

Something went wrong. Please submit your query again

We'll Reach Out to You at the Earliest!


ADFS_sso ×
Hello there!

Need Help? We are right here!

support