Setting up Multi-Factor Authentication (MFA) as a User

This topic explains how to set up Multi-Factor Authentication (MFA) using a One-Time Password (OTP) application after your administrator has enabled OTP for your account.

The administrator must enable the Configure OTP action for your account. For details about this process, see how administrators enable OTP for users or refer to the Keycloak Required Actions documentation.

  1. Log in to the application with your username and password.
  2. If you do not already have an authenticator app, install an OTP provider app (such as FreeOTP, Google Authenticator, or Microsoft Authenticator) on your mobile device. Other compatible OTP apps may also work.
    For supported OTP apps and policy options, see the Keycloak OTP Policy documentation.
  3. When prompted, scan the QR code displayed on the screen using your authenticator app.
  4. Complete the setup in your authenticator app.
  5. Enter the generated one-time password (OTP) from your app to finish logging in.
    To learn more about authentication flows, see the Keycloak Authentication Flows documentation.

After successful setup, you will be required to enter an OTP each time you log in. If you have trouble scanning the QR code or logging in, contact your administrator for assistance.