Logging in to Authelia
Following the previous Authelia blog listed below, we are at part 5, actually logging in to Authelia and setting up tokens for MFA etc.
- Authelia for MFA on docker
- Deploying test hosts for Authelia MFA authentication
- Configuring Nginx reverse proxy in front of Authelia
- Configuring Caddy reverse proxy in front of Authelia
- This page: Logging in to Authelia
Authelia
We are now at the stage go logging in at the dialogue box on https://auth.milpixel.com, this is the same regardless of which solution I used for the reverse proxy. When we point our browser to the site we are greeted with the sign in page presented below:
data:image/s3,"s3://crabby-images/51bcc/51bcc534df8d09f4d621f2bc8df88b81e2159817" alt=""
Following on from previous blog posts, we can log in here with our super secure userid and password we stored in the user_database.yml file earlier. These were the user id of "myuser" and the password "mystrongpassword".
When logged in for the first time you are presented with the option to register a device:
data:image/s3,"s3://crabby-images/9892d/9892d3c915e61708119c2a96e8fbe0e01773d719" alt=""
Clicking Register device brings you to the following options:
data:image/s3,"s3://crabby-images/f9d74/f9d74ba25b2ddc4563fc53394af53ff430b0c8ad" alt=""
For the time being, I wish to add a One-Time Password so selected that option, following which this verification box appeared.
data:image/s3,"s3://crabby-images/007d2/007d24b970b3091dfa6fc1a26767ba9d23cf1cf1" alt=""
Just seconds after this, I received an email shown below Authelia using the mail credentials we configured previously.
data:image/s3,"s3://crabby-images/ea64a/ea64a8b3abb0ded1d92cfe43e8962e27f6de740e" alt=""
I entered this pseudo random code into the web dialogue box to proceed. Following which I received the following box:
data:image/s3,"s3://crabby-images/03148/031487f847994d2922bb24078ed920fe664d9f11" alt=""
Clicking on Next presents the QR code to begin the process of adding this authelia deployment to your chosen mobile authentication app. Obviously the big red blob isn't there really. 😄
data:image/s3,"s3://crabby-images/77bdf/77bdf16b24df544aa36652dd2bd0950c9d314ab7" alt=""
After scanning the QR code with my mobile authentication app, it was registered, I had to enter the 6 digits presented to me on the mobile app.
Then finally, it was recorded as being registered:
data:image/s3,"s3://crabby-images/258ce/258cee9c195227ffc2df258d0e6fe9b1c305b8d2" alt=""
This page has been a simple walk through of setting up our authenticator app for use with an Authelia deployment. I am not prompted for a username and password for the 1-factor-website, and for the 6 digit authentication code for the 2-factor-website.
Finally Delete Everything
Now this blog series is complete it is time to tidy up and remove everything:
- Delete DNS Configurations ✅
- Delete all docker containers ✅
- Delete all data directories ✅
- Delete site from Authenticator App ✅
- Delete sites from Nginx Proxy Manager ✅
- Delete 1-factor and 2-factor sites ✅
- Delete any FW rules, or NAT port forwarding entries ✅
That's All Folks. Should you wish to visit any of the earlier posts in this series they are linked below: