Best Roundcube 2FA plugin

Two-factor authentication is essential when protecting access to email. Using the Protectimus Roundcube OTP plugin, you can set up two-factor authentication in the Roundcube webmail client in just 15 minutes.

The Roundcube 2 factor authentication plugin from Protectimus enables you to easily integrate a professional, OATH-certified MFA solution into the Roundcube webmail client, giving you the maximum protection against unauthorized account access. When logging into Roundcube, users will be asked first for their normal passwords, and then for a one-time password.

2FA from professionals

Multi-factor authentication plugin for Roundcube and Protectimus multifactor authentication solution itself are developed by leading IT security engineers. The Protectimus two-factor authentication service has been protecting payment systems, corporate infrastructures, and personal computers all around the world since 2013. Protectimus is a coordinating member of the OATH initiative.

Adding 2FA to Roundcube in 15 minutes

It takes just 15 minutes to configure two-factor authentication in Roundcube and secure access to Roundcube using one-time passwords. We offer a customer-tested, ready-to-use 2FA plugin, Protectimus Roundcube OTP. If you have any questions, we invite you to contact our support team. You will find the installation instructions here.

OTP delivery methods

Choose your Roundcube two-factor authentication methods: hardware tokens; the Protectimus Smart one-time password generator app; SMS-based OTP delivery; or chatbots on Telegram, Viber, and Messenger. These are virtually all of the one-time password delivery methods available today. The Protectimus two-factor authentication solution is available as a cloud service or an on-premise solution.

Free

$0.00

per month

Sign in

10 users
1 resource
-
-

Starter

$33.00

per month

Try free

23 users
1 resource
-
-

Business

$111.00

per month

Try free

77 users
2 resources
2 filters
1 admin

Custom

$2.00

per user

Try free

individual

Platform

$199.00

per month

Download free

99 users
1 resource
$2 additional user

Cluster

$299.00

per month

Download free

99 users
1 resource
$3 additional user

Lifetime License and Enterprise Pricing Plan

Lifetime license
for enterprise clients

Contact Sales

Lifetime license for any number of users
Customized MFA platform tailored to your needs
Custom integrations
Dedicated engineers and direct support

Tokens We Use

Hardware OTP Tokens

1
50
500
1000
5000
 

Protectimus Two

The Protectimus TWO hardware OTP tokens are made in the form of key fobs. They are high-strength, water-resistant, and there are versions with different OTP lifetimes – 30 or 60 seconds.
$11.99
$11.49
$10.99
$9.99
$8.99
$3 when paying service in advance for a year

Protectimus Flex

The reprogrammable and stylish hardware TOTP token
$19.99
$18.99
$16.99
$15.99
$13.99

Protectimus Shark

This hardware token offers exceptional security features by supporting TOTP (RFC 6238) and SHA-256 algorithm
$14.99
$14.49
$13.99
$12.99
$11.99

Protectimus Slim

Reprogrammable NFC token, that fits any two-factor authentication system
$11.99
$11.49
$10.99
$9.99
$8.99
Hardware OTP Tokens

Protectimus Two

The Protectimus TWO hardware OTP tokens are made in the form of key fobs. They are high-strength, water-resistant, and there are versions with different OTP lifetimes – 30 or 60 seconds.

1 50 500 1000 5000
$11.99 $11.49 $10.99 $9.99 $8.99

Protectimus Flex

The reprogrammable and stylish hardware TOTP token

1 50 500 1000 5000
$19.99 $18.99 $16.99 $15.99 $13.99

Protectimus Shark

This hardware token offers exceptional security features by supporting TOTP (RFC 6238) and SHA-256 algorithm

1 50 500 1000 5000
$14.99 $14.49 $13.99 $12.99 $11.99

Protectimus Slim

Reprogrammable NFC token, that fits any two-factor authentication system

1 50 500 1000 5000
$11.99 $11.49 $10.99 $9.99 $8.99

Software MFA Methods

 
 

Protectimus Smart

Free 2FA app for iOS and Android with encrypted cloud backup, PIN, and biometric protection
free

Protectimus Bot

OTP delivery via messenger — easy, secure, convenient. The service is available on Telegram, Viber and Facebook Messenger
free

Protectimus SMS

Delivery of one-time passwords via SMS messages
$2 per user/month

Protectimus Mail

Free delivery of one-time passwords via email
free

Protectimus Push

Free one-time password delivery through push notifications in the Protectimus Smart 2FA app - simply press a button to confirm your login
free

Software MFA Methods

Protectimus Smart

Free 2FA app for iOS and Android with encrypted cloud backup, PIN, and biometric protection

free

Protectimus Bot

OTP delivery via messenger — easy, secure, convenient. The service is available on Telegram, Viber and Facebook Messenger

free

Protectimus SMS

Delivery of one-time passwords via SMS messages

$2 per user/month

Protectimus Mail

Free delivery of one-time passwords via email

free

Protectimus Push

Free one-time password delivery through push notifications in the Protectimus Smart 2FA app - simply press a button to confirm your login

free

Ready to get started?

Ready to strengthen your security with Protectimus RADIUS integration? Our comprehensive guide will walk you through the seamless integration process. Our dedicated support team is ready to assist you. Get started today and enhance your authentication with Protectimus.

Knowledge Base

OTP stands for One-Time Password. It is a password that is valid for only one authentication session. In most cases, such a password has a limited validity time. ОТРs are used in multi-factor authentication systems, where a password is used as the first factor and a token as the second factor.

A one-time password is generated with a secret key that is ‘built into’ your token and that is known only to our service. No other device can generate the correct one-time password without the knowledge of secret and securely protected information. We use password generation algorithms that virtually eliminate the possibility of a password getting hacked.

Since a token is not connected to a server in any way, it is impossible to intercept a password while it is being transferred.
A potential intruder may try to simply come up with the correct password by trying various combinations of characters, but the system is well protected against this type of attack – after a certain number of attempts, an account is locked for 5 minutes, which renders such an attack ineffective.

Today, multi-factor authentication with one-time passwords is widely recognized as the most reliable and effective mechanism of protection against unauthorized access. The ОТР mechanism is more reliable that authentication based on biometric parameters and undoubtedly much more reliable than regular static passwords.

The problem with biometric authentication is that a parameter verified can be copied, but it can’t be modified. It is easy to obtain a person’s fingerprint and make a copy of it, but a person’s fingerprint cannot be changed or modified, unlike a token that can be re-issued. Besides, how would you even know that your biometric data was copied?

Of course, many attempts have been made to improve the mechanism, and it is not as easy to trick the modern scanners – they are smart enough to distinguish between a real person and a mechanical copy. But it makes little sense to try to outsmart a scanner, because in the end the scan result is transformed into a set of digital characters. And, as already mentioned above, biometric parameters do not change, which means that once such data is lost, your authenticators (your fingerprints, your eye retina, etc.) are compromised forever.

Besides, biometric authentication always involves assessment that’s probabilistic in nature; it is aimed at assessing a tested sample’s equivalence to the reference standard. Therefore, depending on the settings, there is either a chance that access to the system will be given to a person with similar characteristics or a chance that a valid user will not be given access to the system.

Moreover, when one considers all the various ways in which potential intruders can gain access to one’s biometric data, one begins to doubt whether it is reasonable to use biometric data at all.

ОТРs eliminate the possibility of all the situations described above.In our opinion, biometrics can serve as an effective identification tool, but the task of authentication is best left to ОТРs.

Our solution operates based on the OATH standards accepted in the two-factor authentication industry worldwide.
Contact us through the feedback form! If your idea is indeed interesting, we will find a way to express our gratitude.
If you have found a bug in our system, contact us using any method convenient for you; we will fix the bug as soon as possible, and you will be rewarded for your help.
We are an open innovative company interested in various forms of mutually beneficial collaboration. We are ready to encourage ideas that will help us optimize our expenses, increase our profits, and improve to become a better company. Learn about our affiliate program, or share your ideas, comments, and recommendations through the feedback form.
This site is registered on wpml.org as a development site. Switch to a production site key to remove this banner.