wsa Posted January 23, 2020 Share Posted January 23, 2020 What is Email Two-Factor Authentication? WS Email Two-Factor Authentication adds an additional layer of security by adding a second step to the login process. It takes something you know (ie. your password) and adds a second factor, typically something you have (such as your email). Since both are required to log in, the threat of a leaked password is lessened. One of the most common and simplest forms of Two-Factor Authentication is Email Address. With Email 2FA, in addition to your regular username & password, you also have to enter a x digit code that re-generates every 30 seconds. Only your token device (typically a email address) will know your secret key and be able to generate valid one time passwords for your account. We recommend enabling Email 2FA. This system also gives you the ability to provide your customers and admins with Email Two-Factor Authentication, which will send a code to your clients/admins email upon login, and before proceeding to the client area/admin area, you would need to enter the provided code. Screenshot: Click Here Sale Price: Owned License: $26.99 USD Click Here Click Here To View All WHMCS Addons By WHMCSServices Do You Need Custom Development? Click Here Remember to check out also the list of our other module updates that we released since:SMS Manager 7.0.1Phone Verification 2.3.0Refer A Friend 1.0.0Server Monitoring 6.0.0 Coming Soon: WS OnePage Checkout 1.0.0 WS Products/Addons Images 1.0.0 WS Support Pin 4.5.0 WS Agree Terms 5.4.0 Our Social Media: Twitter Here Facebooks Here Instagram Here 0 Quote Link to comment Share on other sites More sharing options...
wsa Posted June 8, 2022 Author Share Posted June 8, 2022 Version 1.0.2 Added Sub users Admin linkUpdated admin area about pageUpdated Remove v4 Admin theme from distributionUpdated Remove Support for PHP 5.6 to 7.0Updated Remove Support for WHMCS V7.10 and previousFixed issue with email template words 0 Quote Link to comment Share on other sites More sharing options...
wsa Posted February 18, 2023 Author Share Posted February 18, 2023 Version 1.1.0 Added Resend OTP ButtonFixed support for ionCube Loader v12 and PHP 8.1Fixed work with WS Client Username moduleUpdated Remove Support for PHP 7.1 to 7.3Updated Remove Support for WHMCS V8.1.x to 8.3.x 0 Quote Link to comment Share on other sites More sharing options...
wsa Posted June 18, 2025 Author Share Posted June 18, 2025 Version 1.1.5 Added implemented functionality to fetch and display the 2FA method on the admin side under the client's user tab Updated Support WHMCS 8.12.x & 8.13.x Fixed on the Lagom 2 Theme, showing two Login buttons Updated Remove Support for PHP 7.4 Fixed Lang File 0 Quote Link to comment Share on other sites More sharing options...
wsa Posted June 1 Author Share Posted June 1 Version 1.17 Added: Allowing the admin to bypass Email Two-Factor Authentication (2FA). The admin can specify the number of days for the bypass. Added: When a user login with a username and password, they will complete Email 2FA once. After that, if they login again from the same IP, the 2FA step will be bypassed for the specified number of days. Added: Support for the WHMCS "Nexus" theme Improved: The License System Improved: Help Page Updated: Support WHMCS 8.13.x & 9.0.x Updated: Requires ionCube Loader v14 Fixed: Undisclosed Security Fix Removed: Support for WHMCS V8.11.x to 8.12.x Removed: Support for PHP 8.1 0 Quote Link to comment Share on other sites More sharing options...
wsa Posted 5 hours ago Author Share Posted 5 hours ago Version: 2.0.1 Released (10/09/2026) Added: separate PIN and Email subtabs and tables to User Logs and Admin Logs. Added: optional legacy migration, table preservation, and a separate migration verification page. Updated: Removed the User column and added Main Account/Sub Account labels. Updated: Widget totals to include main users and subusers, removed the cache delay, and corrected PIN/Email links. Updated: Retained the original pin and email provider names. Updated: Corrected admin provider checks to use authmodule. Updated: Support WHMCS 8.13.x, 9.0.9 & 9.1 Updated: Support ionCube Loader v15 Improved: Subuser logging and prevented duplicate active entries. Version: 2.0.0 Released (10/05/2026) Added: WHMCS dashboard widget showing clients with 2FA, clients without 2FA, clients using Email 2FA, and clients using Pin 2FA. Added: User Logs and Admin Logs for 2FA security: Email 2FA and PIN 2FA records. Added: Delete Logs action for removing old log records before a selected date. Added: Bypass Clients management. Added: User Logs now show the actual client user as well as the linked client account, including Pin records stored with either user or client type. Added: Change logging when users disable or re-enable Email 2FA or Pin 2FA. Added: WHMCS CSRF tokens to Email 2FA and Pin 2FA login challenge forms. Updated: addon and security module versions to 2.0.0. Updated: Prevents login errors if the IP-trust table was removed by recreating ws_iptrust2fa_ip before updating or reading last-login data. Updated: Email 2FA now recreates the required WHMCS two-factor email templates before sending a code if they are missing. Updated: The About page styling to match the Brevo Integration layout. Fixed: User/Admin Logs now only show the currently active 2FA method and clear the other method when switching between Email 2FA and Pin 2FA. Fixed: Provides fresh Email 2FA and Pin 2FA security providers under security/email2fa and security/pin2fa. Fixed: The About page module version card now shows the local 2.0.0 version and aligns its button with the other cards. 0 Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.