FIDO2 WebAuthn always asks for TOTP afterwards?

Hi,
just to confirm if I understand this correctly: when I enable FIDO2/WebAuthn in Nextcloud AIO it works, but after using my YubiKey I still get prompted for TOTP.

So there is no way to configure it like other services (use either YubiKey/FIDO2 or TOTP), but instead Nextcloud always requires both if both are enabled?

Thanks!

Nextcloud Hub 10 (31.0.9)

I believe you can achieve that by using a twofactor exclusion group.

There is some activity related to integrating it in as toggle.

It may make sense as part of the integrated 2FA settings or the password_policy app.

Some thought needs to go into it because people want different things and there is also a twofactor_webauthn app for that matter…

I haven’t really kept up on the state at the moment so just going mostly from memory.

This topic was automatically closed 90 days after the last reply. New replies are no longer allowed.