We recommend you to enable 2-factor authentication for your DSM account. By requiring a second identity verification step, 2-factor authentication provides an extra layer of protection to safeguard your account and creates a barrier to hacking.
Administrators can enforce 2-factor authentication for users at Control Panel > Security > Account.
Approve sign-in
This method allows you to verify your DSM sign-in requests by simply tapping a button from the Synology Secure SignIn app on your iOS or Android device.
- In DSM, click the person-shaped icon in the upper corner of the desktop.
- Select Personal > Account.
- Under Sign-in Method, select 2-Factor Authentication.
- Select Approve sign-in and enter your password.
- Follow the steps to install the Synology Secure SignIn app on your mobile device.
- From the Secure SignIn app, click the + icon to scan the QR code on the screen to add your device.
- Once the QR code is scanned, you will be asked to enable the verification code (OTP) as an alternative sign-in method.
- Scan the QR code and enter the OTP from the OTP page in the app into the wizard for confirmation.


- Set up your backup email for in case you lose your mobile device. This will allow email notifications to be sent on your behalf.1
- If your administrator has configured email notifications, then you can just fill in your backup email.
- If your administrator has not configured email notifications, click Set Up to set up and authenticate an email service provider.
- Click Next when you're done.

- Click Done to complete the setup.
- The next time you sign in, you just need to open the Secure SignIn app to approve your sign-in after entering your password.

Notes:
- If you do not set up a backup email or if you disable notifications later on, you may not be able to receive emergency verification codes when you cannot access your mobile device.
Verification code (OTP)
This method allows you to verify your DSM sign-ins by entering a 6-digit code from the Synology Secure SignIn app on your iOS or Android device.
- In DSM, click the person-shaped icon in the upper corner of the desktop.
- Select Personal > Account.
- Under Sign-in Method, select 2-Factor Authentication.
- Select Verification code (OTP) and enter your password.
- Follow the steps to install the Synology Secure SignIn app on your mobile device.
- From the Secure SignIn app, click the + icon to scan the QR code on the screen to add your device.
- Scan the QR code and enter the OTP from the app into the wizard for confirmation.


- Set up your backup email for in case you lose your mobile device. This will allow email notifications to be sent on your behalf.1
- If your administrator has configured email notifications, then you can just fill in your backup email.
- If your administrator has not configured email notifications, click Set Up to set up and authenticate an email service provider if you haven't already done so in Personal > Email Delivery.
- Click Next when you're done.

- Click Done to complete the setup.
- The next time you sign in, you'll need to enter the 6-digit verification code from the Secure SignIn app as a verification after entering your password.

Notes:
- If you do not set up a backup email or if you disable notifications later on, you may not be able to receive emergency verification codes when you cannot access your mobile device.
Hardware security key
This method allows you to verify your sign in to DSM using a USB key, Windows Hello, or Mac Touch ID.
- Open your browser, type in HTTPS:// followed by your DSM domain name in the address bar, and sign in.
- In DSM, click the person-shaped icon in the upper corner of the desktop.
- Select Personal > Account.
- Under Sign-in Method, select 2-Factor Authentication.
- Select Hardware security key and enter your password.
- Select the type of hardware key that you are using. If you want to use Windows Hello or Mac Touch ID, make sure to configure them first on your computer.
- Follow the on-screen instructions to set up.
- Enter a name for your security key and click Done to finish the setup.
- The next time you sign in, you will need to use your hardware security key to verify your sign in after entering your password.