No products
* Prices may vary depending on your country.
* An additional contribution can be added at the time of payment.
New products
Provision and manage hosting accounts and domains in Plesk (live-tested), cPanel, ISPConfig, KeyHelp, and CloudPanel directly from Dolibarr contracts. Plesk is production-verified; other adapters are implemented and may need minor version-specific adjustment. No manual panel work for day-to-day operations.
OVH Services allows you to centralize and manage OVHcloud services directly from within Dolibarr. The module synchronizes OVHcloud subscriptions and Microsoft 365 licenses purchased from OVH, then links them to your Dolibarr levels to provide a clear and centralized view of your services.
mp20887d20260427122016
Multi-Factor Authentication module using TOTP-compatible authenticator applications such as Google Authenticator and Microsoft Authenticator.
|
|
The MFA module by CONCORDE de Conseil introduces a robust security layer to your Dolibarr ERP & CRM. It requires users to provide a Time-Based One-Time Password (TOTP) from a mobile authenticator app after their standard password authentication.
To activate the module, you must update your configuration file. Edit conf/conf.php and ensure the authentication parameter includes mfa:
$dolibarr_main_authentication = 'mfa,dolibarr';
(Note: Keeping 'dolibarr' as a fallback is recommended during initial setup).
Universal TOTP Support: Fully compatible with Google Authenticator, Microsoft Authenticator, Authy, FreeOTP, and other standard TOTP apps.
Seamless Enrollment: Instant user setup via QR code provisioning.
Dynamic MFA Challenges: Automatic MFA prompt during the login flow for all enabled users.
Self-Service User Interface: Users can easily set up, verify, and activate their own MFA from their User Card.
Advanced Admin Controls: * Monitor failed entry attempts with source IP logging.
Manual account unlock and state-reset actions for administrators.
Hardened Security: * Brute-Force Protection: Intelligent lockout handling after repeated invalid codes.
CSRF Protection: Secure state-change actions to prevent cross-site request forgery.
Persistent Tracking: Detailed logs of login and setup failures.
You can customize the appearance of the MFA interface by changing the gradient colors:
Compatibility: Seamlessly integrates with the native Dolibarr core authentication flow.
Architecture: 100% PHP; utilizes dedicated SQL tables for secure attempt tracking.
Structure: Standardized module path (htdocs/custom/mfa).
Languages: Fully localized in English (en_US), French (fr_FR), and Arabic (ar_SA).
Complete documentation included:
Multi-lingual READMEs (EN, FR, AR).
Detailed ChangeLog and GPLv3 Licensing.
Copyright (C) 2026 CONCORDE de Conseil
Lead Developer: Ali WERGHEMMI
Support: contact@concorde.tn