[SOLVED] Disable TOTP - 2FA

Questions about WAPT Server / Requests and help related to the WAPT server
Forum Rules
Community Forum Rules
* English support on www.reddit.com/r/wapt
* French community support is available on this forum
* Please prefix the topic title with [RESOLVED] if it is resolved.
* Please do not edit a topic that is tagged [RESOLVED]. Open a new topic referencing the old one.
* Specify the installed WAPT version, full version, and build number (2.2.1.11957 / 2.2.2.12337 / etc.) as well as the Enterprise/Discovery edition.
* Versions 1.8.2 and earlier are no longer supported. The only questions accepted regarding version 1.8.2 are related to upgrading to a supported version (2.1, 2.2, etc.).
* Specify the server OS (Linux/Windows) and version (Debian Buster/Bullseye - CentOS 7 - Windows Server 2012/2016/2019).
* Specify the OS of the administration/package creation machine and the machine with the problematic agent, if applicable (Windows 7/10/11/Debian 11/etc.).
* Avoid asking multiple questions when opening a topic, otherwise it may be ignored. If there are multiple topics, open separate topics, preferably one after the other and not all at the same time (i.e., do not spam the forum).
* Include code snippets, screenshots, and other images directly in the post. Links to Pastebin, Bitly, and other third-party sites will be systematically removed.
* As with any community forum, support is provided voluntarily by members. If you require commercial support, you can contact Tranquil IT's sales department at 02.40.97.57.55
Locked
dsi_oll
Messages: 14
Registration: May 14, 2025 - 09:11

May 21, 2025 - 4:05 PM

Hello,
I would like to disable 2FA but I can't find the option.
I'm using Discovery version 2.6.0.17226.
The documentation says I need to go to user management to remove it, but I don't have that menu in my version.
Sincerely,
Fabien
Last edited by dsi_oll on May 26, 2025 - 10:38, edited 1 time.
User avatar
dcardon
WAPT Expert
Messages: 1929
Registration: June 18, 2014 - 09:58
Location: Saint Sébastien sur Loire
Contact :

May 21, 2025 - 5:50 PM

Hello Fabien,

On the server, you can run the following command.

Code: Select all

sqlite3 /opt/wapt/conf/security.sqlite "update waptusers set  otp_key=NULL where otp_key is not null;"
In fact the menu should have been greyed out, the OTP function is not available in Discovery.

Sincerely,

Denis
Denis Cardon - Tranquil IT
Share your experiences on WAPT! Send us your blog and article URLs in the "Your Opinion of the forum, and we'll feature them on the WAPT
dsi_oll
Messages: 14
Registration: May 14, 2025 - 09:11

May 23, 2025 - 08:37

Hello,
thank you for your reply.
WAPT is hosted on Windows with a PostgreSQL server, I believe.
Can you tell me if it's the same command?
Thank you in advance.
User avatar
blemoigne
Messages: 178
Registration: July 17, 2020 - 11:29

May 23, 2025 - 12:38

Good morning,
This one would be best for a WAPT Windows server:

Code: Select all

wapt-get run "import sqlite3; db = sqlite3.connect(r'c:\wapt\conf\security.sqlite'); cur = db.execute('select name,otp_key from waptusers where otp_key is not null'); print(cur.fetchall())"
Have a good weekend,
Bertrand
dsi_oll
Messages: 14
Registration: May 14, 2025 - 09:11

May 23, 2025 - 1:47 PM

Hello,
the print function correctly outputs the OTP value but doesn't change it to NULL.
Is there perhaps another way to replace the current value with NULL?
Thank you
User avatar
blemoigne
Messages: 178
Registration: July 17, 2020 - 11:29

May 23, 2025 - 2:11 PM

oops :

Code: Select all

wapt-get run "import sqlite3; db = sqlite3.connect(r'c:\wapt\conf\security.sqlite'); cur = db.execute('update waptusers set  otp_key=NULL where otp_key is not null'); "
dsi_oll
Messages: 14
Registration: May 14, 2025 - 09:11

May 23, 2025 - 2:45 PM

Sorry, but that doesn't work.
It doesn't modify the "admin" entry.
Attachments
Screenshot 2025-05-23 144457.png
Screenshot 2025-05-23 144457.png (46.66 KB) Viewed 17265 times
User avatar
htouvet
WAPT Expert
Messages: 436
Registration: March 16, 2015 - 10:48
Contact :

May 26, 2025 - 10:09

add a db.commit();
after the SQL update query

Code: Select all

wapt-get run "import sqlite3; db = sqlite3.connect(r'c:\wapt\conf\security.sqlite'); cur = db.execute('update waptusers set  otp_key=NULL where otp_key is not null'); db.commit();"
Tranquil IT
dsi_oll
Messages: 14
Registration: May 14, 2025 - 09:11

May 26, 2025 - 10:37

Perfect,
thank you. Have
a good day.
Locked