I'm configuring TOTP multifactor authentication for our Linux servers, including Proxmox nodes, and have a question about whether the codes Proxmox uses in the Web GUI could be configured for use for SSH connections as well. Ideally, I'd like to have one method of generating TOTP codes work for both management interfaces, to avoid the confusion of having multiple entries for a single machine in our authenticator app.
The nearest I've seen to an explanation was the forum post, "How to enable TFA for SSH?" from a few years back, but it seemed to suggest just installing
Does Proxmox allow TOTP codes configured from the Web GUI to be used for SSH connections? If so, what steps would be needed to use them for SSH, as well?
My test node has TOTP configured in the Web GUI at present, and is running PVE 7.2-11
Thanks!
The nearest I've seen to an explanation was the forum post, "How to enable TFA for SSH?" from a few years back, but it seemed to suggest just installing
libpam-google-authenticator
, which is what I'm doing on our other servers that are only managed over SSH. However, this wouldn't seem to generate TOTP codes that could also be used in the WebGUI. I've looked through the PVE documentation, 14.6. Two-Factor Authentication, but don't see any mention of SSH.Does Proxmox allow TOTP codes configured from the Web GUI to be used for SSH connections? If so, what steps would be needed to use them for SSH, as well?
My test node has TOTP configured in the Web GUI at present, and is running PVE 7.2-11
Thanks!