Search Results :

×

How to setup WordPress Duo Authenticator for 2-Factor Authentication?


Duo Authenticator is a secure authenticator app for two-factor authentication(2FA) that generated 2FA passcodes offline after setup which ensure security of login process.

Why should you choose the Duo Authenticator method for your WordPress site?

  • Generates passcodes to make login more secure.
  • Clean and simple UI, with a focus on ease of use.
  • Available on Android and iOS.
  • Free, but advanced features are tied to Duo’s paid enterprise plans.

You can download miniOrange 2-Factor Authentication(2FA) plugin using the following link:

This plugin can be configured for any TOTP-based/OTP Login 2fa methods like Duo/Microsoft/Google Authenticator. It supports OTP login based 2fa methods [24/7 SUPPORT]

  Tested with 6.0.1

miniOrange Two-Factor Authentication Plugin has Universal support for all the authenticator apps along with Google authenticator in the free version of the plugin itself. Following are a few examples:-

Let's start the Duo Authenticator setup with the miniOrange Two-Factor Authentication plugin to make the user's account secure.

Pre-requisites For Setting Up Duo Authenticator as 2FA method.

Before setting up 2FA, ensure you have:-

  • An active WordPress site.
  • Administrative access to the site.
  • A smartphone (Android or iOS) with the Duo Authenticator app installed.(You can install Duo Authenticator App from the Google Play Store for android and the Apple App Store for iOS respectively.)
  • miniOrange two-factor authentication plugin installed on your WordPress website.(You can free version from the WordPress plugin directory.)

Getting started with the Duo Authenticator setup

Let’s see how an administrator can set up Duo Authenticator for users. This can be done in two very simple ways:-

  1. Setup Wizard
  2. Dashboard of the plugin

1. Duo Authenticator Setup through Setup Wizard

The setup wizard appears right after the successful installation and activation of the WordPress 2FA plugin. The Wizard guides you throughout the process of setting up 2FA(in this case Duo Authenticator.)

Let’s follow the steps below to set up the Duo Authenticator method as 2FA for your users.

    Step 1: After activating the plugin, the following setup wizard screen appears

  • Click on the Let’s get started! button.
  • setup Duo Authenticator - let's get started button

    Step 2: The wizard guides you to choose any one options for inline registration.
    There are two option under inline registration:-

  • Choose the first option “User should setup 2FA during first login.”
    Choosing this option as name suggests will make user’s compulsorily configure 2FA methods (in this case Duo Authenticator).
  • Click on the Continue Setup button.
  • Duo Authentication - user should setup 2FA during first login

    Step 3: Next you are guided to choose the user’s role for which you want to set Duo Authenticator as 2FA method.

  • Choose the ”All users” option to set 2FA for all and click on the Continue Setup button.
  • Duo Authentication - choose all users
    OR
  • Choose only for a specific roles option.
  • Select the particular role for which you want to set 2FA. (As administrator has been chosen here. This will set the Duo Authenticator method as 2FA only for the administrator's role.)
  • Then, click on the Continue Setup button.
  • Duo Authentication - choose particular role like admin

    Step 4: There are again two options:-

    1. Users should be directly enforced for 2FA Setup:- If you don’t want to give your users any period to set 2FA you can go with the first option.
    Users will have to set 2FA during their first login to gain access to the account.

    2. Give users a grace period to configure 2FA:- choosing this option will allow you to give your users a certain grace period within which users will be required to set their 2FA. Users will have to set 2FA after expiration of the grace period.

  • Choose the “Users should be directly enforced for 2FA Setup” option and click on the All Done button.
  • Duo Authentication - enfore 2fa for users
  • You have successfully configured the two-factor authentication.
  • Duo Authentication - compelted

Steps for users to configure Duo Authenticator

After the above setting of 2FA with few easy steps, users are prompted to configure list of two factor authentication method including Duo Authenticator.

  • Navigate to the WordPress Login page and enter the user’s login credentials.
  • Duo Authentication - enter admin's username and password and login
  • Choose the “Google/Authy/Duo Authenticator” button. You are prompted to configure a two-factor method during first login.
  • choose google Authenticator option - Duo Authentication
  • The configuration process of Duo Authenticator setup is divided into three steps:-

    1. Choose Duo Authenticator from the dropdown.

    Duo Authenticator - select Duo Authenticator

    2. Open the Duo Authenticator app on your phone. Click on the Plus button and scan a QR code.

    3. Copy the 2FA Code generated in the Duo Authenticator app in your mobile phone and enter the 2FA code in the text box provided and click on the Verify button.

  • Duo Authenticator - scan the qr code

    Now you must carefully store the backup codes provided to you. These codes will help you login when you become locked out of your account for any reason.

  • Click on the Finish button to finish it.
  • Duo Authenticator setup - store the backup code
  • The user has successfully logged into the account.
  • Duo 2 Factor Authntication app- login to the admin account

    Subsequent Login for user’s account through Duo Authenticator

    Let’s see how user's subsequently login to their account after configuration of Duo Authenticator during first login.

  • Go to the WordPress Login page and enter the user’s(in this case admin) credentials to login.
  • Duo 2 Factor Authntication app - enter admin's username and password and login
  • Enter the 2FA code generated in the Duo Authenticator App.
  • Click on the Validate button.
  • Duo 2 Factor Authntication app - enter 2fa code to verify
  • The user has successfully logged into the account.
  • Duo 2 Factor Authntication app - login to the admin account

2. Duo Authenticator Setup from plugin dashboard

    If you choose to Skip Setup Wizard, here's an alternate way to setup Duo Authenticator through the plugin dashboard.

    Duo Authenticator setup from plugin dashboard - skipping setup wizard

    After clicking on the Skip Setup Wizard option, you will be redirected to the plugin dashbord i.e, Login Settings tab of two-factor authentication menu where you can enable 2FA for all the desired roles.

  • Enable 2FA for the all the roles for which you need to set 2FA.
  • Then, click on the Save Settings button.
  • Duo Authentication - for other roles

Steps for users to configure Duo Authenticator

  • Go to the WordPress login page and enter the user’s login credentials.
  • Duo Authentication - enter user’s and password and login
  • Choose the “Google/Authy/Duo Authenticator” button. You are prompted to configure a two-factor method during the first login.
  • Duo 2 Factor Authentication App - google authenticator setup
  • The configuration process of Duo Authenticator setup is divided into three steps:-

    1. Choose Duo Authenticator from the dropdown.

    Duo 2 Factor Authentication App - Select Duo Authenticator

    2. Open the Duo Authenticator app on your phone. Click on the Plus button and scan a QR code.

    3. Copy the 2FA Code generated in the Duo Authenticator app in your mobile phone and enter the 2FA code in the text box provided and click on the Verify button.

  • Duo 2 Factor Authentication App - scan the qr code

    Now, you must carefully store the backup codes provided to you. These codes will help you login when you become locked out of your account for any reason.

  • Click on the Finish button to finish it.
  • Duo 2 Factor Authentication App - store the backup code
  • The user has successfully logged into the account.
  •  Duo Authenticator - login to the admin account

    Subsequent Login for user’s account through Duo Authenticator

    Let’s see how user's subsequently login to their account after configuration of Duo Authenticator during first login.

  • Go to the WordPress Login page and enter the user’s credentials to login.
  • Duo Authenticator setup - enter users username and password and login
  • Enter the 2FA code generated in the Duo Authenticator App.
  • Click on the Validate button.
  • Duo 2 Factor Authentication App - enter 2fa code to verify
  • The user has successfully logged into the account.
  • Duo Authenticator - login to the user account
Hello there!

Need Help? We are right here!

support
Contact miniOrange Support
success

Thanks for your inquiry.

If you dont hear from us within 24 hours, please feel free to send a follow up email to info@xecurify.com