• Resolved ianwild

    (@ianwild)


    Hello there,

    We have staging and production sites with WP2FA enabled for site administrators only. Some of us are using a 2FA app and others are configured to receive a one-time code via email. On production, if a user chooses email they are never asked for a code when they log in. Note that the set up works fine (emails are sent, codes are entered, etc.) Also, oddly, things work as expected on staging. The configuration of both platforms is exactly the same. I was wondering if this was an issue anyone else had encountered and, hopefully, what I might be able to do to find the root cause? As I say, it’s odd that it works on one platform but not on the other when both platforms are exactly the same.

    Many thanks in advance,

    Ian.

Viewing 5 replies - 1 through 5 (of 5 total)
  • Plugin Contributor robertabela

    (@robert681)

    Thank you for your message and for using our plugin @ianwild

    I am not sure I am understanding the issue. Just to confirm; if a user configures 2FA over email, when they try to log in, they receive an email but they do not have to enter the code, since after submitting the credentials they are logged in?

    If it is not so, can you please elaborate? Would you also be able to share more details about your setup? What version of WordPress, PHP and the plugin are you using?

    Also, does this happen to a few selected users or to all the users using such method on the live server?

    The more information you can share with us to better understand the issue the better.

    Looking forward to hearing from you.

    Thread Starter ianwild

    (@ianwild)

    Hi @robert681 and thanks for your response. Apologies if my original message didn’t make sense. Here is an outline of our issue:

    1. The user chooses to configure 2FA using email
    2. They receive an email with the confirmation code
    3. They enter the code and are shown a message to confirm that 2FA is now configured.

    However, even though 2FA using email is now configured, they are never prompted for an email code (nor are they sent one).

    I was wondering if this is something you’d experienced before? As I say, oddly it works on our staging site, which is a clone of production!

    Hope this makes more sense and many thanks in advance.

    Plugin Contributor robertabela

    (@robert681)

    Thank you for the explanation @ianwild

    So it seems that our plugin is not “hooking in” right after the login. Are you using the default WordPress login page or a custom one? If you are using a custom one, what plugin did you use to build the login page please?

    We need to configure a website setup similar to yours to be able to reproduce and understand this issue.

    Looking forward to hearing from you.

    Thread Starter ianwild

    (@ianwild)

    Hi @robert681,

    Yes, we do have a custom login page using the Theme My Login plugin. This is a paid for plugin so I’ve just sent you a DM on Slack so we can discuss getting a copy of this plugin over to you, if that works?

    Many thanks again!

    Plugin Contributor robertabela

    (@robert681)

    Thank you for your message @ianwild

    I have replied to you. Thank you for your cooperation. Looking forward to solving this issue as well.

Viewing 5 replies - 1 through 5 (of 5 total)
  • The topic ‘Site admins not prompted for email code’ is closed to new replies.