Skip to content

PGP 2FA Login

Daniel Neto edited this page Mar 31, 2021 · 2 revisions

PGP (Pretty Good Privacy) is a public-key encryption program that has become the most popular standard for message encryption.

In addition to encrypting and decrypting messages, PGP is used to sign messages so that the receiver can verify both the identity of the sender and the integrity of the content.

PGP uses a private key that must be kept secret and a public key that the sender and receiver must share.

Setting up PGP/2FA will allow you to secure your user account, so if the system finds a valid public key saved in your profile it will challenge you to decrypt a message, that will contain an OTP (One Time Password), only after that you can log into the system. so make sure you have the private key equivalent to the public key in a secure place.

This feature is part of the LoginControl plugin V3.0+ and you must enable it on the plugin properties

image

Once it is enabled your users will see on their profiles a PGP 2FA tab where your users can save their public keys

image

We also offer some tools that will help you to decrypt challenges and create your keys

chrome-capture (1)

Clone this wiki locally