This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos SG UTM: OTP QR Code doesn't work

Hello everyone,

I’m having problems with OTP in Sophos UTM. I enabled OTP passwords to improve security on SSL VPN and User Portal with 2F authentication:

When I access the User Portal with the user that the OTP is enabled, the screen with the QR code to add in the Authentication application is shown:

After readed the QR Code and added the account on authentication app, I clicked Proceed with login to download e install SSL VPN. However, the same screen is displayed asking to read the QR Code.

The user appears on OTP Tokens but doesn’t work:

I tried using diferent authentication apps like Sophos Authenticator, Google Authenticator and Microsoft Authenticator. I also tried a clean instalation of Sophos SG UTM in another appliance, tried an older firmware version, nothing worked.

I’m currently using the 9.709-3 firmware version.

Has anyone had this problem or have any idea it could be wrong?

Thanks

Fabio



This thread was automatically locked due to age.
Parents Reply Children
  • Hi Janbo,

    I checked the post you suggested and that was it. I had not tested SHA1 before, but I simulated the three apps with SHA1 and worked in all. Below is a summary of the tests:

    Google Authenticator
    - Using SHA1 > Worked
    - Using SHA256 > Failed
    - Using SHA512 > Failed

    Microsoft Authenticator
    - Using SHA1 > Worked
    - Using SHA256 > Failed
    - Using SHA512 > Failed

    Sophos Authenticator*
    - Using SHA1 > Worked
    - Using SHA256 > Worked
    - Using SHA512 > Worked

    *I believe I got something wrong when I tested Sophos Authenticator with SHA256 at the first time, it didn't work, but now is OK.

    Thanks a lot for the help!