<!--
  Translated by the docs agent from content-src/es/guides/ajustes-integraciones/05-procedimiento-seguridad.md
  (source_hash ed57881b894c). If that Spanish source_hash changes, re-check this translation.
-->

Adjust the Platform's access conditions for your whole team.

**Requirements:** Admin role.

1. Go into **Settings → Security**.
2. Turn on **"Require 2FA at login"** if you want the whole team to set up two-factor verification on their
   next access.
3. Adjust the **session duration (days)**: once that time passes, they have to log in again.
4. If you need to restrict access to specific addresses, add your **allowed IP ranges** (optional).
5. Tap **Save**.

**Result:** the new access requirements apply to the team from that moment on; anyone who already has a
session open keeps it until it expires or they log out.

## Two-factor verification for your own account

At the bottom of **Settings → Security**, below the sections above, there's a second card **"Two-factor
verification"** that has nothing to do with the "Require 2FA at login" toggle: that was a **policy** an
administrator imposes on the whole team; this is the **actual enrollment of your own account**, and any
role sees and manages it — admin, editor or viewer —, not only whoever administers the agency.

**Requirements:** none in particular; an authenticator app (Google Authenticator, Authy…) installed on
your phone.

### Procedure: turn on two-factor verification

1. Tap **Activate**.
2. Scan the **QR code** with your authenticator app or enter the **secret** manually.
3. Type the **6-digit code** your app generates and tap **Confirm and activate**.

**Result:** the platform shows you **10 recovery codes**, each single-use in case you lose access to your
authenticator app. Tap **Copy all** to save them and confirm with **"I've saved them"** — they're never
shown again.

> **Important — Save them right away**
>
> The recovery codes aren't shown again after this screen. If you lose them and also lose access to your
> authenticator app, contact your provider (Manual 28 · Support).

### Logging in with two-factor verification on

With verification turned on, after typing your email and password on the login screen (Manual 15 ·
Getting started) a second step shows up: **"Enter your authenticator app's code to continue"**. Type the
6-digit code and tap **Verify** — or use **"Use a recovery code"** if you don't have your app handy.

### Procedure: turn off two-factor verification

1. On the "Two-factor verification" card, with verification on, tap **Deactivate**.
2. Enter a **code** from your authenticator app (or a recovery one) to confirm.
3. Tap **Deactivate**.

**Result:** the account goes back to asking for just a password at login.

![Settings → Security with the Authentication section (the Require 2FA at login toggle off and the Session duration (days) field set to 30) and, below, the Network restrictions section with the empty Allowed IP ranges field, the 81.45.0.0/16 example placeholder, and the Discard and Save buttons](/captures/ajustes-seguridad-autenticacion.png)

![The Two-step verification card at the end of Settings → Security, in the off state, with the text "Adds an extra layer of security by asking for a code in addition to the password" and the Activate button](/captures/ajustes-2fa-desactivada.png)

![The 2FA activation panel with the text "Scan this QR code with your authenticator app (Google Authenticator, Authy…) or enter the secret manually", the QR code, the secret in text form and the 6-digit code field](/captures/ajustes-2fa-activar-qr.png)

![The recovery codes screen after activating 2FA, with the notice "Save them now somewhere safe: they won't be shown again. Each code can only be used once if you lose access to your authenticator app", ten codes in XXXX-XXXX format, and the Copy all and I've saved them buttons](/captures/ajustes-2fa-codigos-recuperacion.png)

![The Two-step verification card in the active state, with the text "Your account requires an extra code at login, in addition to the password", Recovery codes available: 10 and the Deactivate button](/captures/ajustes-2fa-activa.png)

![The Deactivate two-step verification modal with the text "Enter a code from your authenticator app or a recovery code to confirm", a Code field, and the Cancel and Deactivate buttons](/captures/ajustes-2fa-desactivar-modal.png)