Quay lại bảng điều khiển

Tài liệu

Tìm hiểu cách sử dụng Asyntai

Xác thực hai yếu tố (2FA)

Thêm lớp bảo mật bổ sung cho tài khoản với mã 6 chữ số từ điện thoại

Thiết lập 2FA

Tổng quan

Xác thực hai yếu tố (2FA) thêm bước thứ hai vào quá trình đăng nhập của bạn. Ngay cả khi ai đó biết mật khẩu của bạn, họ không thể vào tài khoản của bạn nếu không có mã 6 chữ số do ứng dụng xác thực tạo ra.

Asyntai uses TOTP (time-based one-time passwords) — the same standard used by Google, AWS, GitHub, and most major services. Codes refresh every 30 seconds and are generated entirely on your phone, with nothing sent over the internet.

Cách hoạt động

  1. You enable 2FA — Scan a QR code with your authenticator app to enroll
  2. Save backup codes — One-time codes for recovery if you lose your phone
  3. Sign in as usual — Enter your email and password
  4. Enter the 6-digit code — From your authenticator app, on every new sign-in
Luồng đăng nhập
Email + mật khẩu
Mã 6 chữ số từ ứng dụng
Đã đăng nhập vào Asyntai

Ứng dụng xác thực được hỗ trợ

Bất kỳ ứng dụng nào hỗ trợ TOTP (chuẩn mở) đều hoạt động. Các tùy chọn phổ biến:

Google Authenticator
Authy
1Password
Bitwarden
Microsoft Authenticator
Bất kỳ ứng dụng TOTP nào

Thiết lập 2FA

Enrolling takes about a minute. You'll need an authenticator app installed on your phone.

1
Open the 2FA setup page In your account settings, click More and select Two-Factor Authentication.
2
Click Enable 2FA A QR code and a backup secret will appear.
3
Scan with your authenticator app Open your authenticator app, tap the + button, and scan the QR code. The app will start generating 6-digit codes that change every 30 seconds.
4
Enter the 6-digit code Type the current code from your app into the input field and click Confirm and enable 2FA.
5
Save your backup codes 10 single-use backup codes will be shown once. Store them in a password manager or print and keep them somewhere safe.

Mẹo: If your QR code won't scan, you can copy the secret displayed below it and paste it manually into your authenticator app.

Mã dự phòng

Backup codes are your safety net. Each code can be used once in place of the 6-digit authenticator code — useful if you're without your phone, lost it, or got a new one.

  • 10 codes are generated when you first enable 2FA
  • Each code works once and is consumed when used
  • Store them securely — treat them like passwords. A password manager is ideal.
  • Regenerate any time — Visit the 2FA setup page and click Regenerate backup codes. Old codes are invalidated.

Quan trọng: Backup codes are shown only once. If you lose them and your phone, you'll need to contact support to regain access.

Đăng nhập với 2FA

Once 2FA is enabled, every sign-in works the same way:

1
Enter email and password Standard sign-in at asyntai.com.
2
Enter the 6-digit code Open your authenticator app and type the current code (or paste a backup code if needed).
3
You're in Verified for the entire session. You won't be re-prompted until you sign out or the session expires.

Note about Google sign-in: If you sign in with Google, 2FA is still enforced — Asyntai will show the code-entry page after Google authentication completes.

Mất Điện Thoại?

Recovery options, in order of ease:

Tình huống Làm gì
Got a new phone If your authenticator app supports cloud backup (Authy, 1Password, Microsoft Authenticator), restore from backup. Codes will start working again.
No app, but have backup codes Sign in with a backup code instead of the 6-digit code. Then go to the 2FA setup page, disable 2FA, and re-enroll on your new phone.
Lost everything Contact support — we can disable 2FA on your account after verifying your identity, then you can re-enroll.

Tắt 2FA

You can turn 2FA off any time. For security, you'll need to be 2FA-verified in the current session before the disable button works:

  1. Go to /2fa-setup/
  2. Click Disable 2FA
  3. Confirm — your TOTP device and backup codes are deleted, and login goes back to password-only

Why a stolen password can't disable 2FA: The disable button is gated by 2FA verification. Even if someone has your password, they can't reach the disable button without your authenticator code or a backup code.

2FA Bảo Vệ Bạn Khỏi Điều Gì

Mối đe dọa Bảo vệ
Password leaks Even if your password ends up in a data breach, attackers can't sign in without your phone.
Phishing A phishing site that captures your password still doesn't have your 6-digit code. Codes expire in 30 seconds.
Brute force TOTP codes are time-limited and rate-limited at the device level — guessing is mathematically impractical.
Reused passwords If you used your Asyntai password elsewhere and that other site got hacked, 2FA still keeps your Asyntai account safe.

Hạn chế

  • WordPress, Shopify, and Moodle plugin popups can't show the 2FA challenge inside their small popup window. If you enable 2FA, you'll need to sign in to asyntai.com first to complete 2FA, then connect your site from the plugin.
  • 2FA is per-account — each user enables it independently. Team members can each enroll their own 2FA.
  • SMS / phone-call codes are not supported. Authenticator-app TOTP only — it's stronger and not vulnerable to SIM swapping.

Khả dụng trên mọi gói. Xác thực hai yếu tố được bao gồm miễn phí trong tất cả tài khoản Asyntai.