Two-Factor Authentication (2FA)

A second code after your password

A second code after your password

Two-factor authentication asks for a code from your phone after your password. A stolen password alone then no longer opens your Opensolr account.

Open Account › TFA. The page has three parts: Authenticator app, SMS codes and Recovery codes.

Authenticator app

  1. Click Set up authenticator app.
  2. Scan the QR code with your app. If you cannot scan it, type the key shown under it (Copy key helps).
  3. Enter the code the app shows and click Turn on.

The app shows a new 6-digit code every 30 seconds and works without signal. Any app with time-based codes (TOTP) works, such as Proton Authenticator or Google Authenticator. The page lists a few under Which app should I use?

SMS codes

  1. Under SMS codes, pick your country and type your phone number.
  2. Click Turn on SMS codes.

Codes from the Authy app on that number are accepted too. Use a number you always have with you: a wrong number can lock you out. A phone number can be linked to one Opensolr account only.

Recovery codes

When you turn on the authenticator app or SMS codes, Opensolr creates 10 recovery codes. Each one works once, instead of a code from your phone.

  • Save them right away with Copy or Download .txt, then click I saved them. You will not see them again.
  • Create new recovery codes any time. The old ones stop working.

Signing in

  1. Sign in with your email and password, as always.
  2. Enter the code from your app, or the SMS code, and click Verify. With SMS codes on, Send SMS code sends you one.

Lost your phone? Click Use a recovery code. No recovery codes left? Write to support@opensolr.com from the email address of your account.

Turn it off

Click Remove authenticator app or Remove SMS codes, then confirm with a current code or a recovery code.

Security pages