TOTP Authentication Support
XFA now supports TOTP authentication for enhanced security.
Add an extra layer of protection to your organization with Time-based One-Time Password (TOTP) authentication, a new MFA method alongside Silent MFA.
What's New
- TOTP as MFA Method: Enable TOTP authentication on any integration, allowing users to authenticate using authenticator apps like Google Authenticator, Microsoft Authenticator, or Authy
- Recovery Options: Built-in support for recovery codes and admin reset capabilities
- Industry Standard: Compatible with any RFC 6238 compliant authenticator app
Benefits
- Enhanced security with two-factor authentication
- Works offline - codes are generated locally on user devices
- Compatible with popular authenticator apps users may already have
- Seamless integration alongside existing Silent MFA
Getting Started
Administrators can enable TOTP from the Enforcement page in the XFA dashboard. Navigate to Enforcement → Manage on your integration, then enable TOTP under Multi-Factor Authentication.
Documentation
We've added comprehensive documentation to help you get started:
- Admin Guide - How to enable and configure TOTP for your organization
- User Guide - Step-by-step instructions with screenshots for setting up and using TOTP