It would be a good feature if there is an option to disable the QR-Code or hide the QR Code, if TOTP method is enrolled.

If a user re-open an enrolled T-OTP over the self-enrollment because if the user click on “Save” a new configuration will be deposited in the DB and this leads that the T-OTP on the smartphone or hardware token will not work. This is very annoying.

BR

Kevin

Comments

  • We have new enrollment pages being developed. Please ask Daniel (in your office) to view these and let me know if the same issue exists.

    Troy

  • It could also help to restrict TOTP rollout to hardware based token.

  • I think this is would be a great improvement. I have now made some bruteforce javascript which hides big parts of this page. Our support department is very happy because they get almost no support calls anymore from users anymore who didn't understand the standard enrollment page or even crippled their enrollment (happened also to myself in the beginning).