This page explains what TOTP is, how the 2FA flow works in Dotkernel Admin via dot-totp, and where to go next to install it.
A Time-based One-Time Password (TOTP) is a security algorithm used as part of two-factor authentication (2FA) to protect against account attacks.
The mechanism is integrated into dot-totp to enhance security by requiring both a password and an additional one-time code. Our implementation follows the industry standard of using an Authenticator app to generate temporary, unique 6-digit codes that change every 30 seconds.
Below is a simplified flow for the 2FA with a TOTP mechanism.

Q: What is a Time-based One-Time Password (TOTP)?
A: It's a security algorithm used as part of two-factor authentication (2FA) that generates temporary, unique 6-digit codes changing every 30 seconds, to protect against account attacks.
Q: What does TOTP add on top of a password?
A: It requires an additional one-time code generated by an Authenticator app, in addition to the regular password.
Q: Where do I go to install TOTP in Dotkernel Admin?
A: See Install 2FA with dot-totp.