Use TOTP as Two Factor Authentication (2FA) for Remote Access

In addition to providing advanced security modes of mOTP and 2-Step Authentication for remote administrators to log in to the Vigor router, the Vigor router now has another option, namely TOTP, to meet customer needs. A time-based one-time password (TOTP) is a password that is valid for only one login session, it can protect the password-based authentication from replay attacks. For the router's remote access (login from the WAN interface), you may use TOTP and add a layer of security to your router. This requires a device, usually a mobile phone with a TOTP Authenticator app installed, to generate the time-based one-time password.

Support Model/ Firmware:

  • Vigor2765/2865/2927 firmware version 4.3.1
  • Vigor3910/2962 firmware version 4.4.3* (* means firmware is not yet available)

This article demonstrates how to login to Vigor Router’s Web UI by 2FA(TOTP). Follow the steps below:

1. Go to System Maintenance >> Administrator Password Setup.

  • Change the password.(Optional but recommended)
  • Check Enable Advanced Authentication method when login from "WAN".
  • Choose Time-based One-time Password (TOTP).
  • Save the Secret or QR-Code.
  • Use your phone to open a authenticator application(ex: TOTP Authenticator) to add an account by scanning the QR-Code.

After scanning the QR-Code, you can see the code on your phone.

  • Enter the Validation Code which shows on your phone and then click Verify.
  • Click OK to save.

2. Now if the network administrator wants to login router’s Web UI from WAN IP/ the Internet, network administrator has to enter Username and Password, then input the 2FA Code.

  1. Go to System Maintenance / Account & Permission / Local Admin Account page, click Edit and setup TOTP as follows:
    1. Enable MFA and select TOTP.
    2. Click Apply to save the profile.

  2. Once you clicked Apply, TOTP settings window will pop-up.

  3. Save the secret or QR-Code. You can use the authenticator application (e.g, TOTP Authenticator) on your smart phone to scan the QR-Code.
  4. After scanning, you can see the code on your phone. Use the same code to verify.

  5. After entering username and password, choose TOTP and log in to the router with the one time password.


Published On: 2021-05-20 

Was this helpful?   

book icon

Related Articles