What is the lifetime of the verification code that is SMS’d to the user for MFA? Can that lifetime be customised?
Hi @AndrWeis,
The SMS code expires by default in 5 minutes once the code has been sent to the device. Unfortunately, the timeout is not configurable at this time.
Thank you.
Is this the same for Email verification code?
We have set the “Email OTP token lifetime (minutes)” = 10 in Security/Multifactor/FactorTypes/EmailAuthentication/EmailAuthenticationSettings, but when we send a six digit verification code to user for MFA it is expiring after 5 minutes.