Guest User!
You are not Sophos Staff.
I am thinking the answer is no, but want to confirm. Is there a way to use reverse authentication on a web server without OTP if OTP is enabled for WAF? I do not see it in the list of exceptions.
Yes, you can definitely do reverse auth without OTP, Tim.
Cheers - Bob
EDIT 2017-02-01: I misread his question and Tim gives the right answer below - thanks, Tim!
So if how do I turn OTP off on one site with reverse authentication, if I have OTP enabled for WAF and must use OTP on a different site?
That's not possible, sorry. You might consider voting for the existing feature request.