> For the complete documentation index, see [llms.txt](https://docs.monolithforensics.com/monolith/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.monolithforensics.com/monolith/monolith-features/getting-started/login-and-2fa.md).

# Login & 2FA

Monolith users can log in with their account email address and password. Cloud users are also required to use two-factor authentication unless another authentication method, such as single sign-on (SSO), has been configured for their organization.

### Login

To log in to Monolith:

1. Open Monolith using the correct web, desktop, or mobile application.
2. Enter your account email address.
3. Enter your password.
4. Select **Log In**.

<figure><img src="/files/RoBKGLaZfs0MZQN5qSUP" alt=""><figcaption><p>Monolith Login</p></figcaption></figure>

If your organization uses SSO, you may be redirected to your organization’s identity provider instead of logging in with a Monolith password.

For more information, see [SSO Login](https://docs.monolithforensics.com/monolith/monolith-features/getting-started/sso-login).

{% hint style="info" %}
If you are not sure which Monolith URL or application to use, see [Accessing Monolith](https://docs.monolithforensics.com/monolith/monolith-resources/accessing-monolith).
{% endhint %}

### Two-Factor Authentication

Two-factor authentication, or 2FA, adds an additional security step when logging in to Monolith.

Monolith uses time-based one-time passwords, also known as TOTP. To complete 2FA setup, you will need an authenticator app that can generate six-digit verification codes.

Common authenticator apps include:

* Google Authenticator
* Microsoft Authenticator

### Set Up 2FA

The first time you log in to Monolith, you may be prompted to set up 2FA.

To set up 2FA:

1. Open your preferred authenticator app.
2. Scan the QR code shown on the Monolith 2FA setup screen.
3. Confirm that the authenticator app adds your Monolith account.
4. Enter the six-digit code generated by the authenticator app.
5. Complete the login process.

<figure><img src="/files/kaeuKAQCpmDJp8kHWeDN" alt=""><figcaption><p>2FA Setup</p></figcaption></figure>

After setup is complete, Monolith will ask for a new six-digit code during future logins.

{% hint style="info" %}
Authenticator codes refresh automatically. If a code is about to expire, wait for the next code before entering it into Monolith.
{% endhint %}

### Log In With 2FA

After 2FA has been set up, Monolith will prompt you for a verification code after you enter your email address and password.

To complete login:

1. Open your authenticator app.
2. Find the code for your Monolith account.
3. Enter the current six-digit code into Monolith.
4. Select **Verify** or continue the login process.

<figure><img src="/files/R7ZATMznYGuG006KMhNW" alt="" width="563"><figcaption><p>2FA Screen</p></figcaption></figure>

### Reset 2FA

If you lose access to your authenticator app, replace your device, or need to set up 2FA again, a Monolith admin user can reset 2FA for your account.

After your 2FA device is reset, Monolith will prompt you to connect a new authenticator app the next time you log in.

If you are not a Monolith admin, contact your organization’s Monolith administrator or Monolith Support for assistance.

### Disable 2FA

Two-factor authentication is an important security measure and is strongly recommended.

For cloud customers, 2FA is enabled by default. If your organization has a specific need to change this behavior, contact <support@monolithforensics.com>.

For on-premises customers, 2FA settings may be managed from the user profile page.

{% hint style="warning" %}
Disabling 2FA reduces account security. Monolith recommends keeping 2FA enabled unless your organization has an approved alternative authentication control in place.
{% endhint %}
