Multi-Factor Authentication for Users
This page describes how to configure and use multi-factor authentication (MFA) in Barracuda Cloud Control (BCC), whether your account administrator requires it or you choose to enable it yourself.
For security purposes, Barracuda Networks recommends that you lock your MFA-enabled devices with a personal identification number (PIN).
Configure MFA When Required by Your Administrator
When your account administrator sets MFA to Required, you will receive an email notification. On your next sign-in, you will be prompted to configure an MFA device.
Log in to login.barracudanetworks.com with your email address and password, and click Sign In.
The Multi-Factor Authentication setup page displays.
Download and install an MFA authentication app on your mobile device if you have not already. Barracuda Networks recommends Google Authenticator or Microsoft Authenticator.
In the authentication app, create a new account (or tap the + icon in Google Authenticator).
Either scan the QR code displayed on screen, or manually enter the secret code into your authentication app.
Enter a Device Name and the MFA Code shown in your authentication app, then click Save.
Your device is now configured. You can view your trusted devices in the Multi-Factor Authentication section of your Settings > My Profile page in BCC.
Enable MFA Voluntarily (When MFA is Optional)
If MFA is set to Optional on your account, you can choose to enable it for added security.
In BCC, click your username in the top right corner, then select My Profile.
In the Multi-Factor Authentication section, click Add New Device.
Either scan the QR code, or enter the secret code into the authentication app on your mobile device, then click Save.
The device is added to the Multi-Factor Authentication section.
To disable MFA when it is optional, delete all of your MFA devices from the Multi-Factor Authentication section on your My Profile page.
Add a Backup MFA Device
Barracuda Networks strongly recommends configuring a second device as a backup in case your primary device is lost, stolen, or replaced.
In BCC, click your username in the top right corner, then select My Profile.
In the Multi-Factor Authentication section, click Add New Device.
Scan the QR code or enter the secret code into the authentication app on your backup device, then click Save.
When multiple devices are configured, you only need to enter a verification code from one of them to sign in.
Generate One-Time Use Passwords
As an alternative to a backup device, you can generate five one-time use passwords when configuring your primary MFA device. Store these passwords in a safe location; each code can be used only once, and they must be used in the order they were generated.
Log In with MFA
After MFA is configured, you must enter a verification code from your authentication app every time you sign in.
Go to login.barracudanetworks.com and enter your email address and password. Click Sign In.
Open your authentication app on your trusted device and note the current verification code.
Enter the code in the Authentication Code field and click Verify.
After successful verification, you will be logged in.