This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Two-factor Authentication Not Working For XG Firewall Users

To Whom It May Concern

I'm trying to implement two-factor authentication for my XG Firewall accounts. I followed the following links:

https://docs.sophos.com/nsg/sophos-firewall/17.5/Help/en-us/webhelp/onlinehelp/nsg/sfos/learningContents/ConfiguringTwoFactorAuthentication.html

https://community.sophos.com/xg-firewall/f/discussions/122148/i-cannot-find-the-qr-code-for-otp-in-the-user-portal

https://docs.sophos.com/nsg/sophos-firewall/18.0/Help/en-us/webhelp/onlinehelp/nsg/concepts/OTPTokenManage.html

I turned on one-time passwords and enforce two-factor authentication as per the instructions. I also installed the Sophos Authenticator app as per the instructions. What happened was that instead of rendering QR Codes the normal login prompt appeared and my accounts became locked.

After Googling I noticed that some users are using Radius instead of the out-of-the-box solution but my management would prefer the out-of-the-box solution.

What am I doing wrong?

Yours sincerely

Craig Hoy



This thread was automatically locked due to age.
  • Hello Craig,

    Thank you for contacting the Sophos Community!

    Make sure the following settings are set under OTP.

    Then under One-time password, nothing should be there. 

    Then ask the user to long to the User Portal.

    Once the user logins he should get this:

    He would need to scan that with the APP. to get the code to access the User Portal.

    There is a Proceed to Login, in the User Portal where the code is present, so user has to click this after he gets the code. 

    Regards,