Two-step authentication (also known as two-factor authentication or 2FA) adds an extra layer of protection to your Mozilla account, especially if your password is compromised.
Once enabled, signing in requires both your password and a unique authentication code generated by an authenticator app. This prevents unauthorized access to your account even if someone knows your password.
How do I enable two-step authentication? Step oneBefore you get started, install the authenticator application of your choice. Here are some options (this is not an exclusive list of supported applications):
Note: A backup is a stored copy of data that can be used to restore the original after data loss.
Step twoNow that one of the applications is installed, you can set up two-step authentication for your Mozilla account:
Tip: If you are entering the code manually on Authy, search Mozilla to get the latest logo.
Important: If you lose access to your authenticator app, haven't saved your backup authentication codes, or haven’t set up a recovery phone, you will be locked out of your account and won’t be able to access your synced data, including saved passwords, bookmarks and settings. Download or print your backup authentication codes, and keep them in a safe place.
The setup of two-step authentication on your Mozilla account is now complete!
(Optional) Enable a recovery phone – Receive recovery codes via SMSDisclaimer: You should always keep your backup authentication codes, even when setting up a recovery phone. A recovery phone adds extra protection but does not replace your backup codes, which are essential for account access if you lose your two-step device.
A new optional feature, initially available to users in the US and Canada, allows you to add a recovery phone number to your account. If you lose access to your authenticator app, you can request a one-time password (OTP) via SMS to regain access to your Mozilla account.
Adding a recovery phone as a recovery method for two-step authentication (in addition to backup authentication codes) may be available if you meet the following criteria:
Security warning: While this provides an additional recovery option, it also comes with the risk of SIM swap attacks. Attackers can trick your mobile carrier into transferring your phone number to a new SIM card, allowing them to receive your 2FA codes and access your account. SMS messages can also be intercepted by certain types of attacks, making them less secure than other 2FA methods.
Follow the steps below to set up your recovery phone number:
Note: this option will be enabled if you meet the criteria listed above.
You can change your recovery phone number from your Mozilla account settings. Follow the steps below to learn how.
Done! Your recovery phone number has been successfully updated.
Related articlesThese fine people helped write this article:
AliceWyman,
Tonnes,
Michele Rodaro,
Mozinet,
Lan,
1984WasNotaManual,
Joni,
Artist,
Marcelo Ghelman,
syam,
Danny Colin,
Monstorix,
Mark Heijl,
liam,
PGGWriter,
Fabi,
Abby,
Vesta,
Dayani Lucia G.F.,
Valérie Pomerleau VolunteerGrow and share your expertise with others. Answer questions and improve our knowledge base.
RetroSearch is an open source project built by @garambo | Open a GitHub Issue
Search and Browse the WWW like it's 1997 | Search results from DuckDuckGo
HTML:
3.2
| Encoding:
UTF-8
| Version:
0.7.3