Cloudron makes it easy to run web apps like WordPress, Nextcloud, GitLab on your server. Find out more or install now.


Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • Bookmarks
  • Search
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

Cloudron Forum

Apps | Demo | Docs | Install
  1. Cloudron Forum
  2. Support
  3. Significant issue with 2fa

Significant issue with 2fa

Scheduled Pinned Locked Moved Solved Support
2fa
20 Posts 5 Posters 3.2k Views 5 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • P privsec

    @fbartels Well, nuts.

    It looks like it is the server thats out of date.

    Untitled.png
    Server is in Germany.

    Its 20 UTC according to that CLI, but according to

    https://time.is/Germany at 4:16 ET it is 10:16 PM Germany time

    fbartelsF Offline
    fbartelsF Offline
    fbartels
    App Dev
    wrote on last edited by
    #7

    https://en.wikipedia.org/wiki/Time-based_One-Time_Password

    Its in the name 😄

    But to be honest more services should fail because of time drifts between client and servers. That they dont fail just means that the applications are creating sessions with too long lifetimes.

    P 1 Reply Last reply
    0
    • P privsec

      @privsec So I disabled system Ctl and installed ntp, but it still showing wrong, any pointers?

      fbartelsF Offline
      fbartelsF Offline
      fbartels
      App Dev
      wrote on last edited by
      #8

      @privsec does https://linuxconfig.org/how-to-sync-time-on-ubuntu-20-04-focal-fossa-linux help?

      1 Reply Last reply
      0
      • fbartelsF fbartels

        https://en.wikipedia.org/wiki/Time-based_One-Time_Password

        Its in the name 😄

        But to be honest more services should fail because of time drifts between client and servers. That they dont fail just means that the applications are creating sessions with too long lifetimes.

        P Offline
        P Offline
        privsec
        wrote on last edited by
        #9

        @fbartels So I may be lied to about the whereabouts of my server hosting, and ill have to discuss that, as I just ran through this https://www.edmundofuentes.com/blog/2018/11/19/enable-ntp-ubuntu-18-04/

         ntpd: time slew +0.010236 s
        
        

        So my server does not actually seem to be the cause of the problem here

        P 1 Reply Last reply
        0
        • P privsec

          @fbartels So I may be lied to about the whereabouts of my server hosting, and ill have to discuss that, as I just ran through this https://www.edmundofuentes.com/blog/2018/11/19/enable-ntp-ubuntu-18-04/

           ntpd: time slew +0.010236 s
          
          

          So my server does not actually seem to be the cause of the problem here

          P Offline
          P Offline
          privsec
          wrote on last edited by
          #10

          @privsec This would mean that the UTC time is correct on the server.

          P 1 Reply Last reply
          0
          • P privsec

            @privsec This would mean that the UTC time is correct on the server.

            P Offline
            P Offline
            privsec
            wrote on last edited by
            #11

            I guess, what do I do now?

            P 1 Reply Last reply
            0
            • P privsec

              I guess, what do I do now?

              P Offline
              P Offline
              privsec
              wrote on last edited by
              #12

              I have submitted a help desk ticket, I am at a loss here. I dont know whats wrong with this.

              fbartelsF 1 Reply Last reply
              0
              • P privsec

                I have submitted a help desk ticket, I am at a loss here. I dont know whats wrong with this.

                fbartelsF Offline
                fbartelsF Offline
                fbartels
                App Dev
                wrote on last edited by fbartels
                #13

                @privsec could it be that systemd nowadays slowly adjusts the leak to prevent time jumps?

                So is the drive time drift reducing?

                P 1 Reply Last reply
                0
                • fbartelsF fbartels

                  @privsec could it be that systemd nowadays slowly adjusts the leak to prevent time jumps?

                  So is the drive time drift reducing?

                  P Offline
                  P Offline
                  privsec
                  wrote on last edited by
                  #14

                  @fbartels Is the drive reducing?

                  P 1 Reply Last reply
                  0
                  • P privsec

                    @fbartels Is the drive reducing?

                    P Offline
                    P Offline
                    privsec
                    wrote on last edited by
                    #15

                    @privsec It is currently at

                    Sat Apr  3 21:01:32 UTC 2021
                    nebulonN 1 Reply Last reply
                    0
                    • P privsec

                      @privsec It is currently at

                      Sat Apr  3 21:01:32 UTC 2021
                      nebulonN Offline
                      nebulonN Offline
                      nebulon
                      Staff
                      wrote on last edited by
                      #16

                      @privsec having the server in UTC is correct. For things like backups and update schedules, you can set the timezone via the dashboard, but this would not affect the server's time setting as reported by timedatectl From you thread so far, I lost track if you have an issue with the time being off by that much or not? TOTP mostly has some 1minute timeframe, so the time drift would be quite big.

                      Besides that, the root cause could also be that the bitwarden app as such is running on the wrong timezone? You could try to get the time the app sees when using the webterminal into the app from the Cloudron dashboard.

                      P 1 Reply Last reply
                      0
                      • girishG Offline
                        girishG Offline
                        girish
                        Staff
                        wrote on last edited by
                        #17

                        You can disable 2FA for a user using the instructions here - https://docs.cloudron.io/user-management/#disable-2fa .

                        P 1 Reply Last reply
                        0
                        • nebulonN nebulon

                          @privsec having the server in UTC is correct. For things like backups and update schedules, you can set the timezone via the dashboard, but this would not affect the server's time setting as reported by timedatectl From you thread so far, I lost track if you have an issue with the time being off by that much or not? TOTP mostly has some 1minute timeframe, so the time drift would be quite big.

                          Besides that, the root cause could also be that the bitwarden app as such is running on the wrong timezone? You could try to get the time the app sees when using the webterminal into the app from the Cloudron dashboard.

                          P Offline
                          P Offline
                          privsec
                          wrote on last edited by
                          #18

                          @nebulon
                          At 1:58pm EST, the Bitwarden app sees the date as 003f980e-a62f-483d-87b1-398c4d2dc599-image.png
                          Which according to http://www.timebie.com/timezone/universalgermany.php
                          Is almost 8pm In Germany, and according to
                          https://time.is/Germany
                          This is accurate
                          73cb3ffd-6fac-4fa5-9dda-70b4b5bb8543-image.png

                          I use 2fa within bitwarden for apps and services such as github and social media and streaming services.

                          I need the 2fa functionality to work.

                          1 Reply Last reply
                          0
                          • girishG girish

                            You can disable 2FA for a user using the instructions here - https://docs.cloudron.io/user-management/#disable-2fa .

                            P Offline
                            P Offline
                            privsec
                            wrote on last edited by
                            #19

                            @girish and @nebulon

                            Well..I don't know what occurred...

                            Now its working. I just tried removing and re adding a 2fa code again and now it is working. I really am speechless about this.

                            luckowL 1 Reply Last reply
                            1
                            • P privsec

                              @girish and @nebulon

                              Well..I don't know what occurred...

                              Now its working. I just tried removing and re adding a 2fa code again and now it is working. I really am speechless about this.

                              luckowL Offline
                              luckowL Offline
                              luckow
                              translator
                              wrote on last edited by
                              #20

                              @privsec That is what I personally call computer vodoo 🙂

                              Pronouns: he/him | Primary language: German

                              1 Reply Last reply
                              0
                              Reply
                              • Reply as topic
                              Log in to reply
                              • Oldest to Newest
                              • Newest to Oldest
                              • Most Votes


                              • Login

                              • Don't have an account? Register

                              • Login or register to search.
                              • First post
                                Last post
                              0
                              • Categories
                              • Recent
                              • Tags
                              • Popular
                              • Bookmarks
                              • Search