You are located in service: Multi-factor authentication (MFA)

Authenticator app via KeePassXC for Laptop or Desktop (TOTP)

Authenticator app via KeePassXC for Laptop or Desktop (TOTP)

guide

 

Note

This guide is written for active KeePassXC users. If you are using KeePassXC for the first time, please read the Getting Started guide (opens in new tab) first.

This page describes how to set up KeePassXC Password Manager for multi-factor authentication (MFA).

  1. Set up KeePassXC
  2. Login with KeePassXC

1. Set up KeePassXC

Step 1
Open the Token Manager (opens in new tab).

Step 2
Log in via RWTH Single Sign-On (username format ab123456).

Step 3
Click Create.

Overview of the Token Manager in SelfService.

Step 4
Under Type of Token, select Authenticator app e.g. for smartphone (TOTP).

Step 5
Click Next.

Select the type of token.

Step 6
Under Description, enter a name for your app (e.g. KeePassXC).

Step 7
Click Create.

Input field for the key description.

Step 8
Under the QR Code, click Token secret.

Step 9
Copy the Token secret.

QR code or token secret for setting up the token in KeePassXC.

Step 10
Open KeePassXC.

Step 11
Right-click on an entry.

Step 12
From the dropdown-menu, select TOTP, then Set up TOTP.

Overview of a database in KeePassXC.

Step 13
Enter the token secret under Secret Key.

Step 14
Click OK.

Pop-up window for TOTP setup.

Step 15
Right-click on the entry.

Step 16
From the dropdown-menu, select TOTP, then Copy TOTP.

Overview of a database in KeePassXC from which a TOTP is copied.

Step 17
Enter the TOTP in the Token Manager under Security Code.

Step 18
Click Finish.

Input field in the Token Manager for token confirmation.

You have successfully set up KeePassXC.

 

Note

Unverified tokens remain unconfirmed and are not stored in Token Manager. They cannot be used when logging in with single sign-on.

2. Login with KeePassXC

When asked to enter a one-time security code, please follow these steps:

Step 1
OpenKeePassXC.

Step 2
Click on the clock symbol in the table next to the name of your entry.

Step 3
Copy the displayed code and paste it into the input field for the one-time security code.

The codes are valid for 30 seconds. If a code expires before you have entered it, simply use the next one.


Additional Information

last changed on 08/11/2026

How did this content help you?

(opens in new tab)
This work is licensed under a Creative Commons Attribution - Share Alike 3.0 Germany License (opens in new tab)