Sophos one time password

Aus xinux.net
Zur Navigation springen Zur Suche springen

Enable OTP

  • Go to Sophos WebAdmin

Navigate:

  • Definitions & Users -> Authentication Services -> One-time Password
  • enable it

Software Token

Settings

Sophos-otp-settings.png

  • customize as required

Auto-Generate-Token

Activate

  • Go to User Portal
  • Login
  • Scan QR Code with Authenticator App (e.g. Sophos-/Google Authenticator)

Sophos-otp-qr.png

  • "Mit Anmeldung fortfahren"

Manually adding Tokens

  • Go on a Linux System
    • Open terminal
      • Type "openssl rand -hex 64"
        • Copy Secret
  • Enter secret here:
    • Click on the green "+"
    • Enter generated HEX in the "Secret" field
    • Change settings as required

Sophos-otp-software-man.png

  • Add to App
    • Click on the grey "i" icon afterwards to get the QR-Code
    • Scan QR-Code with desired Authenticator APP
  • Source:

https://community.sophos.com/kb/en-us/120324

Login

login schema

Username: username
Password: passwordTOKEN

Sophos-otp-token.jpg Sophos-otp-userlogin.png

Hardware Token

Assign token to user

  • press the green "+"

Sophos-otp-hardware-add.png

  • change settings as desired

Sophos-otp-hardware-settings.png

Login

It's similar to how you login with a software token exept you get the token from the Hardware Token instead of the Authenticator App.