Hi @lsingh, thanks for reaching out to us on this.
From the error you’re seeing, it certainly looks like 2FA was enabled for an administrator, then the Require 2FA for all administrators option was checked in Wordfence > Login Security > Settings but there was either no grace period set, or the grace period has expired for other administrators to comply with the requirement.
If you or another admin have access to an administrator account that does comply with the 2FA requirement, simply log in and navigate to Wordfence > Login Security > Settings, then check the box Grace period to require 2FA, set a reasonable date in the future, and click the SEND NOTIFICATION button so that all administrators receive an email to set up their 2FA to meet this requirement.
If you don’t have any way to access the WordPress admin page to change the Wordfence settings:
- Please use FTP/SFTP — or any file manager your web host provides via their administration panel.
- Look inside the /wp-content/plugins/ directory and rename the wordfence directory to wordfence.bak. This will deactivate Wordfence and allow you to login without the 2FA code.
- Once you have logged in to your WordPress admin you can name the folder back to wordfence again.
- Go to your user profile and add 2FA back to your account, making sure to download the backup codes in case of problems in the future.
- If checking the Require 2FA for all administrators box, make sure to again set a grace period date and send the notification so that other administrators can set up their 2FA
If you have any further trouble logging in, feel free to reach out here.
Thanks,
Peter.
Thread Starter
lsingh
(@lsingh)
Thanks for your reply!
What is the grace period and why we need to set the date for this?
Looking forward to hearing from you.
Thanks
Lokendra
Hi @lsingh,
The grace period ensures any other administrators have some time to set up their 2FA before they are denied access to the site. If you are the only administrator, you do not need to set this.
Thanks,
Peter.