Disable the autoresync function

6.2.2. Disable the autoresync function#

  1. Open the LinOTP management with https://<linotp-server-ip>/manage

  2. Navigate to ‘LinOTP Config’ in the menu and select ‘System Config’ there

  3. In the line ‘Auto resync’ remove the check mark

  4. ‘Save Config’ to apply the configuration

../../_images/autoresync_function.png

This reliably prevents the possible attack by reusing OTP. As long as the function is not activated again, your system remains secure.