TOTP and MFA Login Using Authenticator App
Robility Manager supports Time-Based One-Time Password (TOTP)–based Multi-Factor Authentication (MFA) to enhance account security. This implementation follows industry-standard security practices and includes QR code–based setup with expiry, CAPTCHA validation, retry limits, and recovery mechanisms. MFA requires a one-time code from an authenticator app in addition to your password, providing an extra layer of protection for your account.
To make MFA easy and secure, Robility Manager uses:
1. QR codes for quick setup
2. CAPTCHA to block automated login attempts
3. Limited retry attempts for incorrect codes
4. Recovery options if a device is lost
How Your Account Is Kept Secure
1. MFA adds an extra layer of protection to your account.
2. QR codes are time-limited for safety.
3. CAPTCHA helps prevent automated attacks.
4. Login attempts are monitored and limited.
Login with MFA
When you sign in to Robility Manager:
1. Enter your registered email address.
2. Complete the CAPTCHA check.
3. Click Next.
4. If MFA is enabled, you’ll be asked to enter a code.
5. Open the Microsoft Authenticator app and enter the 6-digit code shown.
6. Once the code is verified, enter your password to log in.
7. If the code or password is incorrect, an error message will appear, and the number of retries is limited
Setting Up MFA for the First Time
If this is your first login or MFA is not yet enabled:
1. Enter your email address and complete the CAPTCHA.
2. Click Next.
3. A QR code appears on the screen.
4. Scan the QR code using the Microsoft Authenticator app.
5. If scanning doesn’t work, use the manual key displayed on the screen.
6. Enter the 6-digit code generated by the app.
7. After verification, MFA is enabled, and you can continue logging in with your password.
Access Recovery for Lost or Changed Devices
If you no longer have access to your authenticator app:
1. Enter your email address and complete the CAPTCHA.
2. Select the Lost Device option.
3. You’ll receive a confirmation email.
4. Click Confirm in the email.
5. A new QR code will be displayed.
6. Scan the QR code using the authenticator app on your new device.
7. Enter the code to regain access.
8. Then, enter your password to log in