Turn on two-factor sign-in and check your sign-in history
Protect your client area with a code from an authenticator app or by email, and see where and when your account was signed in to.
Two-factor sign-in asks for a code as well as your password each time you sign in to your client area. Turn it on so that a stolen password is not enough to get into your account.
All of this lives under Profile, then the Security tab.
Set up an authenticator app
This is the stronger option. Any authenticator app that scans a QR code works.
- In your client area, select Profile, then Security.
- In the Two-factor sign-in box, select Set up an authenticator app.
- Enter your password under Confirm your password and select Continue.
- Scan the QR code with your authenticator app. If you cannot scan it, type the key shown under the code into the app instead.
- Enter the 6-digit code from the app under Code from the app, then select Turn it on.
- Your backup codes appear. Copy them with Copy and keep them somewhere safe, then select Done.
Each backup code signs you in once if you lose your phone. They are not shown again. To get a fresh set later, select New backup codes and confirm your password.
Use a code by email instead
- In the Two-factor sign-in box, select Email me a code instead.
- Enter your password and select Continue.
From then on, each sign-in emails you a 6-digit code. The code expires after 10 minutes.
Signing in with two-factor on
After your password, the sign-in page asks for a 6-digit code.
- With an authenticator app, enter the code the app shows. You can choose Email me a code instead or Use a backup code.
- With email codes, a code is sent as soon as you reach this step. Select Send a new code if it does not arrive.
Good to know: if you have turned on magic-link sign-in under Sign-in methods, no link is sent while two-factor sign-in is on, because a link would skip the second step.
Turn it off
Select Turn off in the Two-factor sign-in box and confirm your password. If the account you use requires two-factor sign-in of everyone who uses it, you cannot use that account again until you turn it back on.
See where you are signed in
The Active sessions box lists every device signed in to your account, with its IP address and when it signed in.
- Select Sign out next to a device to end that session straight away.
- Select Sign out other sessions to end every session except the one you are using.
Check your sign-in history
The Recent sign-ins table shows the last 50 sign-in attempts on your email address, newest first. Each row shows when, whether it succeeded or failed, the IP address, the location where it can be worked out, and the device.
If you see a sign-in you do not recognise, sign that device out and change your password.
Change your password
On the sign-in page, select Forgot password? and enter your email address. We email you a link to set a new password.
Limit sign-in to your own IP addresses
The IP allow-list box refuses sign-ins from anywhere except the addresses you list.
- Select Add my current IP, or type an address or range and select Add.
- Tick Enabled.
You must add at least one address before you can turn it on, so you cannot lock yourself out by accident. Remove an address with the bin button next to it.
Related
More in Billing and account
- Find your way round your client area
Where to find your services, invoices, domains, support tickets and account settings in your lbreeze client area.
- Pay an invoice, save a card and turn on auto-pay
Find and pay your invoices, keep a card on file, and choose which renewals are charged to it automatically.
- Upgrade or downgrade your plan
Move a hosting service or a server to a bigger or smaller plan, see exactly what it costs before you commit, and know when the change happens.
- Give your team access to your account
Invite colleagues to your client area with their own login, choose what each person can see and do, and require two-factor sign-in.

