# Pritunl Zero TOTP 2FA (Google Authenticator, etc)

**URL:** https://forum.pritunl.com/t/pritunl-zero-totp-2fa-google-authenticator-etc/2043
**Category:** Pritunl Zero
**Tags:** pritunl-zero
**Created:** [May 8, 2024, 10:14pm UTC](https://forum.pritunl.com/t/pritunl-zero-totp-2fa-google-authenticator-etc/2043 "2024-05-08T22:14:05Z")
**Posts on this page:** 2
**Page:** 1

<div class="post-metadata">

### Author: ![gt60](https://forum.pritunl.com/letter_avatar_proxy/v4/letter/g/94ad74/32.png) [@gt60](https://forum.pritunl.com/u/gt60)
#### Post date: [May 8, 2024, 10:14pm UTC](https://forum.pritunl.com/t/pritunl-zero-totp-2fa-google-authenticator-etc/2043/1 "2024-05-08T22:14:05Z")

</div>

Hi, is there a plan to implement time-based 2FA (TOTP) so that we can use regular authenticators like Google Authenticator or others?

---

<div class="post-metadata">

### Author: ![zach](https://forum.pritunl.com/user_avatar/forum.pritunl.com/zach/32/1105_2.png) [@zach](https://forum.pritunl.com/u/zach)
#### Post date: [May 8, 2024, 11:19pm UTC](https://forum.pritunl.com/t/pritunl-zero-totp-2fa-google-authenticator-etc/2043/2 "2024-05-08T23:19:51Z")

</div>

It’s unlikely it will be added, it isn’t very secure and most devices now have built in WebAuthn. WebAuthn is a very secure standard and well supported in Pritunl Zero. Authentication will stop working if the SSL certificate expires when this occurs the command `sudo pritunl-zero disable-policies` can be used to disabled all the security policies to allow logging in without the WebAuthn authentication. This command can also be used if the WebAuthn device is lost.
