TOTP Authenticator-App
TOTP (Time-based One-Time Password) is an open authentication protocol that generates time-based one-time passwords and is supported by all major authentication apps.
Using the TOTP protocol, authentication apps generate a six-digit one-time code every 30 seconds, even without an internet connection. This code can then be used as login confirmation for multi-factor authentication.
Supported applications:
- Common authentication apps for smartphones (e.g., Google Authenticator, FreeOTP, Aegis)
- Authentication applications as desktop installations (e.g., Proton) or password managers with TOTP integration (e.g., KeePassXC)
We recommend: In addition to the authenticator app on your smartphone, set up a second authenticator application on another device (e.g., a PC) as a backup and link both to your university account. This way, you retain access to university services even if you lose one device.
If this is your first MFA method, the Windows Hello for Business setup wizard will appear the next business day when you log in for the first time. Please follow the instructions and configure your preferred method (fingerprint, facial recognition).
A PIN must always be set up. If you want to set it up later, skip the setup wizard. To set up Windows Hello for Business yourself at any time, follow the Windows Hello for Business instructions.
If you do not yet have a TOTP-enabled authentication app or application installed on your device, please do so before proceeding with setting up this MFA method for your university account. You can use any TOTP-enabled authentication application as a smartphone app or desktop installation:
Authenticator Apps for Smartphones (Recommended):
- Google Authenticator (Android, IOS)
- If you are already using the app for Citrix, you do not need to reinstall it; you can simply add a new entry in the same app – follow the instructions below.
- Free OTP (Android, IOS)
- 2FAS (Android, IOS)
- Aegis (Android)
Authenticator applications as desktop installations:
Desktop password manager with integrated authenticator:
- KeePassXC (Windows, macOS, Linux)
The installation, setup, and use of each authentication application can vary. The following instructions assume you have already installed and configured an app.
Setting up the TOTP app on your smartphone
This guide describes how to link a TOTP-enabled authentication app for your smartphone (recommended) to your Microsoft account. The specific setup of the authentication app or application itself depends on the provider and is not explained in detail here.
- Open https://aka.ms/mysecurityinfo.
- Click "+ Add sign-in method".
- Select "Authenticator app" → "Other authenticator app".
- Scan the displayed QR code with your installed authenticator app.
- Enter the security code generated by the app for verification.
Afterward, you can use the one-time codes generated by the authenticator app as a second factor for logins.
- Sign in at https://aka.ms/mysecurityinfo. You should be located under "Security Info" in the left-hand navigation.
- Click "Add Sign-In Method".
6.A QR code will now be displayed on your PC.
7.Scan the displayed QR code* with the TOTP app.
8. If the QR code has been successfully imported into your app, please click "Next" on your PC.
*Note: When setting up a TOTP app for the first time, you may receive a prompt asking if the app should access your camera. You must select "Allow".
Log in using the TOTP app on your smartphone
When logging into IT services, you will be asked for your username (format: ZIM-ID@ads.uni-passau.de) and password, as before.
You will then be prompted to enter a 6-digit code for verification. Enter the code from the linked app and the associated account. The process for displaying the code may vary depending on the authenticator app used.
If the code matches, you will be logged in.
1. When logging into IT services, you will be asked for your username and password. In the first window, enter your username (format: ZIM-Kennung@ads.uni-passau.de) and in the following window, enter your password.
Setting up the TOTP desktop application
This guide describes how to set up a desktop authenticator app with your Microsoft account. The recommended Proton Authenticator application is used in this guide.
Step 1: Open security information
Open Security Info https://aka.ms/mysecurityinfo in your Microsoft account and click "Add a sign-in method".
Step 2: Select your sign-in method
Select "Microsoft Authenticator" as the new method.
Step 3: Choose a different app
Click on "Set up a different app for authentication".
Step 4: Click Next
Click "Next" to continue.
Step 5: QR code appears
Instead of scanning the QR code, select below: “Can’t scan the QR code?”.
Step 6: Copy Secret Key and Account Name
Copy:
- Account Name
- Secret Key
Then click "Next".
Step 7: Open Proton Authenticator
In Proton Authenticator, click "Add".
Step 8: Paste the copied information
Please fill in:
- Title: Account name
- Secret: Secret key
- Issuer: Uni Passau
Then select "Save code".
Step 9: Copy the code
Click on the large code displayed.
It will be automatically copied to the clipboard (the text "One-time code copied" will appear).
Step 10: Enter the code
Paste the code into the Microsoft field and click "Next".
Step 11: Setup Complete
The authenticator app has been successfully added.
Click "Done" to complete the process.
Step 1:
Open your security information page at https://aka.ms/mysecurityinfo and click "Add login method" to set up a new method.
Log in with the TOTP desktop application
Step 1: Enter your email address
When logging into IT services, you will still be asked for your username (format: ZIM-Kennung@ads.uni-passau.de) and password.
Next, you'll be prompted to enter a 6-digit code for verification. Enter the code from your linked app and associated account. The process for displaying the code may vary depending on the authenticator app you're using.
If the code matches, you'll be logged in.
Enter your University of Passau email address and click "Next".
Step 2: Enter password
Enter your password and click "Log in".
Step 3: Select alternative MFA
Click on “I can’t use my Microsoft Authenticator app right now”.
Step 4: Select verification method
Select "Use a verification code".
Step 5: Retrieve code in Proton Authenticator
Open the "Proton Authenticator", select your university account and copy the displayed code.
Step 6: Enter code and confirm
Paste the code into the input field and click "Verify" to complete the registration.
![[Translate to Englisch:] TOTP](/fileadmin/_processed_/b/6/csm_csm_MFA_Bild_TOTP_6439469c31.png)
![[Translate to Englisch:] Anmeldemethode hinzufügen](/fileadmin/_processed_/b/e/csm_Microsoft_Authenticator_0_1cb3eb1d39.png)
![[Translate to Englisch:] Authenticator App auswählen](/fileadmin/_processed_/f/5/csm_Microsoft_Authenticator_1_8b3d4d6322.png)
![[Translate to Englisch:] Andere Authenticator App hinzufügen](/fileadmin/_processed_/8/2/csm_Andere_Authentictaor-App_hinzuf%C3%BCgen_TOTP_ec5af2b797.png)
![[Translate to Englisch:] Konto hinzufügen](/fileadmin/_processed_/5/e/csm_Microsoft_Authenticator_3_c60420c6c3.png)
![[Translate to Englisch:] Microsoft Portal Übersicht Anmeldemethoden TOTP (blurred)](/fileadmin/hilfe-portal/digital_workspace/Screenshots_2FA/Microsoft_Portal_QR_Code_anzeigen_f%C3%BCr_TOTP__blurred_.png)
![[Translate to Englisch:] TOTP Bestätigen](/fileadmin/_processed_/f/e/csm_Microsoft_Portal_TOTP-Code_eingeben_zur_Best%C3%A4tigung_bei_Einrichtung_cdd2e40c85.png)
![[Translate to Englisch:] Anmeldemethoden Übersicht TOTP](/fileadmin/_processed_/b/d/csm_Microsoft_Portal_%C3%9Cbersicht_Anmeldemethoden_TOTP__blurred__986c66bf49.png)
![[Translate to Englisch:] TOTP Code abrufen und eingeben](/fileadmin/_processed_/f/3/csm_Free_OTP_TOTP_Code_abrufen_merge__blurred__5ab89c9ca6.png)
![[Translate to Englisch:] Benutzernamen eingeben](/fileadmin/_processed_/9/8/csm_Microsoft_Anmeldemaske_Benutzernamen__blurrred__eingeben_2_5d6b19e2ef.png)
![[Translate to Englisch:] Passwort eingeben](/fileadmin/_processed_/e/5/csm_Microsoft_Portal_Anmeldemaske_Passwort_eingeben__blurred__2_61dd61de51.png)
![[Translate to Englisch:] Sicherheitscode als Anmeldemethode auswählen](/fileadmin/_processed_/f/4/csm_Microsoft_Anmeldung_TOTP_ausw%C3%A4hlen_Anmeldemethode__blurred__560e1ce122.png)
![[Translate to Englisch:] Sicherheitsinformationen Öffnen](/fileadmin/_processed_/9/6/csm_1_Desktop_App_Einrichten-Anleitung-Proton_ae3467bb56.png)
![[Translate to Englisch:] Anmeldemethode auswählen](/fileadmin/hilfe-portal/MFA/2_Desktop_App_Einrichten-Anleitung-Proton.png)
![[Translate to Englisch:] Andere App für Authentifizierung einrichten](/fileadmin/hilfe-portal/MFA/3_Desktop_App_Einrichten-Anleitung-Proton.png)
![[Translate to Englisch:] Fortfahren mit Weiter](/fileadmin/_processed_/8/7/csm_4_Desktop_App_Einrichten-Anleitung-Proton_8f8344faed.png)
![[Translate to Englisch:] Auswählren Can't scan the QR Code](/fileadmin/_processed_/e/0/csm_5_Desktop_App_Einrichten-Anleitung-Proton_91b9543a97.png)
![[Translate to Englisch:] Schlüssel und Kontoname kopieren](/fileadmin/hilfe-portal/MFA/6_Desktop_App_Einrichten-Anleitung-Proton.png)
![[Translate to Englisch:] Add wählen](/fileadmin/_processed_/8/a/csm_7_Desktop_App_Einrichten-Anleitung-Proton_80e603e30e.png)
![[Translate to Englisch:] Einfügen der kopierten Informationen](/fileadmin/_processed_/e/3/csm_8_Desktop_App_Einrichten-Anleitung-Proton_806474e9ff.png)
![[Translate to Englisch:] Auf den großen angezeigten Code klicken](/fileadmin/_processed_/d/a/csm_9_Desktop_App_Einrichten-Anleitung-Proton_85e7694073.png)
![[Translate to Englisch:] Code in das Micorsoft Feld eingeben dann auf Weiter](/fileadmin/_processed_/b/6/csm_10_Desktop_App_Einrichten-Anleitung-Proton_51a10fa5ff.png)
![[Translate to Englisch:] Einrichtung abgeschlossen](/fileadmin/_processed_/d/1/csm_11_Desktop_App_Einrichten-Anleitung-Proton_12114d2a6c.png)
![[Translate to Englisch:] Anmeldefenster Desktop App](/fileadmin/_processed_/0/9/csm_1_Desktop_App_Anmelden_Anleitung_f9c5464416.png)
![[Translate to Englisch:] Fenster Passwort Eingabe](/fileadmin/_processed_/d/9/csm_2_Desktop_App_Anmelden_Anleitung_4a7809051c.png)
![[Translate to Englisch:] Alternative Anmeldung wählen](/fileadmin/_processed_/9/b/csm_3_Desktop_App_Anmelden_Anleitung_29e38fa658.png)
![[Translate to Englisch:] Verwenden eines Prüfcode](/fileadmin/_processed_/4/1/csm_4_Desktop_App_Anmelden_Anleitung_4e59e9694e.png)
![[Translate to Englisch:] Kopieren des Codes](/fileadmin/hilfe-portal/MFA/5_Desktop_App_Anmelden_Anleitung.png)
![[Translate to Englisch:] Code eingeben und Überprüfen wählen](/fileadmin/_processed_/c/b/csm_6_Desktop_App_Anmelden_Anleitung_0967c4b6f3.png)