Problems with your authenticator logic

Sorry, this is a bit of a saga, but it’s all about the “user experience” of trying to interact with the new UI.

In summary: I cannot sign into Duplicati using your authenticator logic.

Firstly, it tells me that it wants me to use the Microsoft authenticator, despite the fact that I am wanting to login using a Gmail account. I don’t want to use the Microsoft authenticator, because my email accounts that I use for Microsoft are the work ones, and I dont want to put my personal ones into the Microsoft authenticator.

If I go ahead and click on the “do it anyway” button, Duplicati then asks me for a six-digit code. That’s surprising, because I don’t think I’ve given Duplicati my phone number. So where is the verification number that I should enter? I’ve checked the junk inbox etc. I’ve also checked the Google authenticator (just on the off-chance that Duplicati does, in fact, know who I am and because Google uses six digits, whereas Microsoft uses eight).

So, I think the new login needs tidying up. But, more importantly, please fix the problem with me being unable to disable the new UI (ref: this ticket).

In summary:

  1. Please give me the option to use Google’s authenticator, and not Microsoft’s.
  2. When you tell me to enter a six digit number, please tell me where to find it (it’s not in any of my inboxes or junk folders).
  3. Please fix the “use legacy UI” button, so I can let you improve the new UI, while I continue to use Duplicati (which is a brilliant bit of software!)

Many thanks,

Dan

I am missing a bit of context, but the only place I have seen something like this is the email authentication flow for the Duplicati Console.

All our sign-in options require MFA of some kind, and the email signup does that as well.

We use a product from Microsoft for the email authentication so that suggests using the Microsoft Authenticator app, but this is not required. You can use any TOTP app that you like.

You should see a QR code that you can scan with your favorite TOTP app (Google Authenticator, 1Password, BitWarden, etc). Once you have scanned the QR code, your TOTP application will show the 6 digit code that is required.

Hi. Thanks for your reply. I’m not sure where I was in the process. It seems to have resolved itself, now.

The thing that I remember that really confused me was that it seemed to ask me to sign in with the Microsoft authenticator and then insisted I enter a 6 digit code. Microsoft uses 8 digit codes.

But, it seems to be happy now.