跳至内容
WordPress.org

China 简体中文

  • 主题
  • 插件
  • 新闻
    • 文档
    • 论坛
  • 关于
  • 获取 WordPress
获取 WordPress
WordPress.org

Plugin Directory

Usama Simple 2FA Authenticator

  • 提交插件
  • 我的收藏
  • 登录
  • 提交插件
  • 我的收藏
  • 登录

Usama Simple 2FA Authenticator

作者:usamashahadat
下载
  • 详情
  • 评价
  • 安装
  • 开发进展
支持

描述

This plugin enhances the security of your WordPress website by adding a simple but effective two-factor authentication (2FA) screen after a successful password login.

Instead of adding fields to the main login page (which can cause conflicts), this plugin waits until a user has correctly entered their username and password. Then, it intercepts the login and presents them with a clean, separate screen to enter their 6-digit code from an authenticator app (like Google Authenticator, Authy, etc.).

This method is more secure, more compatible, and provides a smoother user experience.

Features:

Secure Post-Login Verification: 2FA check happens on a separate screen, after the password is correct.

Easy Setup: A simple “Usama 2FA” menu page for each user to scan a QR code and activate 2FA.

Backup Codes: On activation, 10 one-time-use backup codes are generated in case you lose your phone.

Regenerate Codes: You can generate new backup codes at any time from the settings page.

Lightweight & Simple: No bloat. Just the essential 2FA features.

Per-User: 2FA is enabled on a per-user basis. Administrators cannot control 2FA for other users.

External services

This plugin connects to a third-party API to generate the QR codes used during setup.

Service: goqr.me API (https://www.google.com/search?q=api.qrserver.com)

Usage: Used only once during setup to generate a QR code image that users scan with their authenticator app.

Data Sent: The API receives the user’s email address and the generated secret key (inside the OTPAuth URL) to create the image. This data is not stored by the service.

Provider: Foundata GmbH

Terms of Use: Terms of Use

Privacy Policy: Privacy Policy

屏幕截图

  • The simple “2FA Security” settings page in the admin dashboard.

  • The QR code and activation step.

  • The post-activation screen, showing the one-time backup codes.

  • The separate 2FA verification screen that appears after a successful password login.

安装

From your WordPress Dashboard (Recommended):

Navigate to Plugins > Add New.

In the search bar, type “Usama Simple 2FA Authenticator”.

Click “Install Now” on the plugin.

Click “Activate”.

Once activated, a new “2FA Security” menu will appear in your admin sidebar. Click on it to set up your 2FA.

Manual Installation (from .zip):

Download the plugin .zip file.

Navigate to Plugins > Add New in your WordPress dashboard.

Click the “Upload Plugin” button at the top of the page.

Select the .zip file you downloaded and click “Install Now”.

Click “Activate”.

Go to the “2FA Security” menu in your sidebar to set up.

常见问题

What authenticator apps does this work with?

This plugin uses the standard TOTP (Time-based One-Time Password) algorithm. It works perfectly with:

Google Authenticator

Authy

Microsoft Authenticator

1Password

LastPass Authenticator

…and any other standard TOTP app.

What happens if I lose my phone?

When you first activate 2FA, the plugin provides you with 10 one-time-use backup codes. You must save these in a secure place (like a password manager or a printed document). If you lose your phone, you can use one of these backup codes in place of the 6-digit authenticator code to log in.

How do I get new backup codes?

Go to the “2FA Security” page in your admin dashboard. You will see an option to “Generate New Backup Codes”. This will invalidate all of your old codes and create a new set for you.

Is this plugin secure?

Yes. Your secret key is stored securely in your user’s metadata, and the login check uses a separate, temporary key (a “transient”) to manage the post-login verification step. All codes are checked using standard, secure cryptographic methods.

评价

此插件暂无评价。

贡献者及开发者

「Usama Simple 2FA Authenticator」是开源软件。 以下人员对此插件做出了贡献。

贡献者
  • usamashahadat

帮助将「Usama Simple 2FA Authenticator」翻译成简体中文。

对开发感兴趣吗?

您可以浏览代码,查看SVN仓库,或通过RSS订阅开发日志。

更新日志

1.0.0

Initial public release.

Added post-login 2FA verification screen.

Added user-specific admin menu for 2FA setup.

Implemented QR code and manual key setup.

Implemented backup code generation and verification.

额外信息

  • 版本 1.0.0
  • 最后更新:6 月前
  • 活跃安装数量 不到10
  • WordPress 版本 5.0 或更高版本
  • 已测试的最高版本为 6.9.4
  • PHP 版本 7.0 或更高版本
  • 语言
    English (US)
  • 标签
    2FAauthenticationloginsecuritytwo factor
  • 高级视图

评级

尚未提交反馈。

Your review

查看全部评论

贡献者

  • usamashahadat

支持

有话要说吗?是否需要帮助?

查看支持论坛

  • 关于
  • 新闻
  • 主机
  • 隐私
  • 陈列窗
  • 主题
  • 插件
  • 区块样板
  • 学习
  • 支持
  • 开发者
  • WordPress.tv ↗︎
  • 参与
  • 活动
  • 捐赠 ↗
  • 未来五分计划
  • WordPress.com ↗
  • Matt ↗
  • bbPress ↗
  • BuddyPress ↗
WordPress.org
WordPress.org

China 简体中文

  • 关注我们的 X(原 Twitter)账号
  • 访问我们的 Bluesky 账号
  • 关注我们的 Mastodon 账号
  • 访问我们的 Threads 账号
  • 访问我们的 Facebook 公共主页
  • 关注我们的 Instagram 账号
  • 关注我们的 LinkedIn 主页
  • 访问我们的 TikTok 账号
  • 访问我们的 YouTube 频道
  • 访问我们的 Tumblr 账号
代码如诗
The WordPress® trademark is the intellectual property of the WordPress Foundation.