Setting up 2FA with GuardBlock
What is 2 Factor Authentication (2FA)?
Two-factor authentication, or 2FA, adds an extra layer of security to your account by requiring two forms of verification when you make certain actions.
Instead of relying only on your password, 2FA asks for a second step, such as a one-time code from an authentication app, a text message, email, or a security key. This helps protect your account even if someone else discovers your password, because they would still need access to your second verification method to log in.
GuardBlock uses 2FA in the form of an TOTP (Time-Based One-Time Password) app, also known as an authenticator app or 2FA app. GuardBlock also provides you with a series of single use recovery codes that you can use if you ever lost access to your authenticator app.
What Authenticator Apps do you recommend?
There are a many options for different apps or extensions which can be used to generate 2FA codes.
Disclaimer: GuardBlock is not affiliated with or makes any guarantees for these services. Please do your own research before choosing one.
If you're happy with Big Techâ„¢, then Google Authenticator or Microsoft Authenticator is available on both the Apple App Store and Google Play Store. Google Authenticator is handy in the way it allows you to back up your 2FA to your Google Account.
For a non-Google or Microsoft option which has more privacy guarantees, check out Proton Authenticator which can be used on any device - both phones and computers.
Finally, password managers such as Bitwarden can be used as an authenticator, which is convenient, however keep in mind part of the point of 2FA is that an attacker would need access to your phone as well as your account details, and they may have access to both if they get into your Bitwarden instance if you use it for your 2FA.
Setting up 2FA
To set up 2FA for your GuardBlock account, you need to navigate to Recover and submit your required recovery information before enabling 2FA.
Then, decide which Authenticator App you are going to use and get it installed and ready on your device, which may be your phone or your computer depending on what you choose.
- When ready, login to your GuardBlock account and then head over to https://guardblock.com/settings/security.

- Hit the 'Set Up Authenticator' Button.

- Inside your Authenticator App, look for an 'setup new 2FA' option or similar, and choose the option to scan a QR code, then scan the code. Alternatively, if you are unable to scan, you can click the 'Show Manual Setup Key' and enter it manually into your authenticator app. Do not use your normal phone camera to scan the QR code.
- Your Authenticator App should then register the entry and start generating 2FA codes for you, also known as TOTPs. Copy the code across or enter it into the 'Verification code' box on GuardBlock and click 'Confirm and Show Recovery Codes'

- If successful, you will then be presented with your unique recovery codes. Before you can proceed, you need to copy or download a backup of your recovery codes. These are important as they can be used if you ever lost your Authenticator App. You could save them in a password manager, as a file on your computer, or put them on a backup USB stick, or even write them down.

- You're done! Your authenticator is now setup as confirmed by seeing 'Enabled' under Status. Additional options now available to you are:
- Replace Authenticator - useful if you get a new phone and want to move your GuardBlock 2FA to a new Authenticator App
- Toggle on requiring a 2FA code at login (2FA at login is off by default and only mandatory for sensitive account actions)
- Regenerating your recovery codes (in case you run out of codes or lose access to your recovery code backup)
- Disable 2FA - but keep in mind this may disable your access to sensitive account features.