Enabling TOTP (2FA/MFA)

In our PVE, we currently support TOTP (Time-based One-time Password) and we highly recommend everyone using the system implement it to better secure their account. There are several options available for TOTP. Here, we show phone instructions but TOTP is available as a browser extension as well for Firefox and Chromium-based browsers such as Brave and Vivaldi.

How to set up TOTP for your ULID in PVE:

  1. Download and install the TOTP app from the appropriate app store
  2. Log in to PVE as you normally would
  3. In the left menu, select Datacenter at the top and go to Users
  4. Select your ULID and click on the TFA option at the top
  5. On your phone, open the TOTP app and add a new key by pressing the QR Scan button
  6. Scan the QR code generated by PVE on the computer screen with your phone, then enter the authentication PIN that is generated on your phone in the PVE TOTP configuration window
  7. Finally, enter your password to complete the TOTP setup

Next time you log in to PVE, after authenticating with your password, you will be asked for enter your TOTP PIN. To retrieve the PIN, open the TOTP app on your phone, and find the entry called Proxmox Web UI. The sequence of number being displayed for the entry is your PIN. Enter it into the PVE TOTP authenticator to complete your login.