How do I edit the configuration file to disable two-factor authentication for admin access?






Question :
How do I edit the configuration file to disable two-factor authentication for admin access on USG Flex/ATP firewalls?
Answer :
If you have already enabled 2FA authentication for the admin account and would like to bypass it during the recovery procedure, please disable 2FA authentication by removing "two-factor-auth admin-access activate"(as shown below) from the backup configuration file before applying it. This ensures that you can log in to the firewall normally and bypass the 2FA authentication process.
Once you have successfully removed "two-factor-auth admin-access activate", the configuration will appear as follows:
This action is the same as navigating to Object > Auth. Method > Two-factor Authentication > Admin Access > General Settings and disabling the Enable option from the Web-GUI.
Categories
- All Categories
- 435 Beta Program
- 2.7K Nebula
- 183 Nebula Ideas
- 120 Nebula Status and Incidents
- 6.2K Security
- 440 USG FLEX H Series
- 299 Security Ideas
- 1.6K Switch
- 80 Switch Ideas
- 1.2K Wireless
- 44 Wireless Ideas
- 6.7K Consumer Product
- 276 Service & License
- 433 News and Release
- 88 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 4.2K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 84 About Community
- 91 Security Highlight