NCEdCloud TOTP FAQ — Time-Based One-Time Password Questions Answered

What is TOTP in NCEdCloud?

TOTP stands for Time-Based One-Time Password. NCEdCloud TOTP is the MFA method that generates a 6-digit code in an authenticator app that refreshes every 30 seconds. NCEdCloud supports TOTP as one of its multi-factor authentication options alongside WebAuthn hardware keys. NCDPI’s RapidIdentity platform uses TOTP to add a second layer of verification beyond username and password.

This applies to staff and administrator accounts in districts that have enabled MFA enforcement. The most important thing to know is that TOTP codes are time-sensitive — a code that is more than 30 seconds old will fail, so entering the Code quickly after it appears is essential.

Which Apps Support NCEdCloud TOTP?

AppPlatformCostNotes
Google AuthenticatoriOS, AndroidFreeSimple, no account required
Microsoft AuthenticatoriOS, AndroidFreeSupports backup/restore with Microsoft account
2FA Authenticator (Chrome extension)Chrome browserFreeConvenient for Chromebook users
AuthyiOS, Android, desktopFreeCloud backup, multi-device sync

How to Set Up TOTP for NCEdCloud?

  1. Log in to NCEdCloud at ncedcloud.mcnc.org.
  2. Go to Account Settings and select “MFA” or “Two-Factor Authentication.”
  3. Choose the TOTP option (may be labeled “Authenticator App” or “Google Authenticator”).
  4. A QR code appears on screen. Open your authenticator app.
  5. In the app, tap the “+” or “Add Account” button.
  6. Choose “Scan QR code” and point your camera at the NCEdCloud QR code.
  7. The app adds an NCEdCloud entry and begins generating 6-digit codes.
  8. Enter the current 6-digit Code on the NCEdCloud setup screen to verify enrollment.
  9. Save your backup codes if the system offers them. Store them securely offline.

How TOTP Works at Login After Setup?

After TOTP enrollment, each login proceeds as follows:

  1. Enter your username and password on the NCEdCloud login page.
  2. If credentials are correct, a second screen appears asking for your authentication code.
  3. Open your authenticator app and read the current 6-digit Code for NCEdCloud.
  4. Enter the Code on the NCEdCloud screen before it rotates (codes refresh every 30 seconds).
  5. Click Verify or Submit.
  6. The dashboard loads.

Common TOTP Problems and Fixes

ProblemCauseFix
Code rejected immediatelyCode expired mid-entryWait for the next code and enter it right away
Code always rejectedDevice clock out of syncSync your phone’s time automatically in Settings
Lost phone with authenticatorDevice unavailableUse backup codes or contact the LEA help desk
Accidentally deleted the appApp removedRe-enroll TOTP from Account Settings or contact the help desk
QR code not scanningCamera or lighting issueUse manual entry with the secret key instead

Frequently Asked Questions

Why does my NCEdCloud TOTP code keep saying it is invalid?

The most common cause is a clock sync issue on your phone. TOTP codes are calculated using the current time, so if your device clock is even slightly off, the Code will not match what NCEdCloud expects. Go to your phone’s date and time settings and enable automatic time sync. This usually resolves persistent invalid code errors.

Can I use TOTP on a Chromebook?

Yes. Install the 2FA Authenticator Chrome extension from the Chrome Web Store. It works the same way as a phone app — scan the QR code during setup, and the extension generates codes in your browser. This is a common choice for students and staff who primarily use district-issued Chromebooks.

What happens if I get a new phone?

If you set up TOTP on a new phone, you need to re-enroll. Go to NCEdCloud Account Settings, remove the old TOTP enrollment, and scan the QR code with your new phone’s authenticator app. If you cannot log in to do this because MFA is required, contact your LEA help desk to disable MFA on your account temporarily so you can re-enroll.

Are TOTP codes specific to NCEdCloud?

Yes. Each service that uses TOTP generates its own QR code during setup. Your NCEdCloud TOTP codes are separate from codes for other services like Gmail or Outlook. The authenticator app stores them all separately and labels them.

Does NCEdCloud require TOTP for all users?

TOTP enforcement is configured at the LEA level. Not all districts require MFA for all accounts. Staff and administrator accounts are more commonly subject to MFA requirements than student accounts. Check with your district’s technology coordinator to know whether your account requires TOTP.

Related Reading

NCEdCloud MFA Setup Guide (/ncedcloud-mfa/)

NCEdCloud WebAuthn Enrollment Guide (/ncedcloud-webauthn/)

NCEdCloud Account Locked — How to Unlock (/ncedcloud-account-locked/)

NCEdCloud Login Troubleshooting (/ncedcloud-not-working/)

NCEdCloud LEA Administrator Role Overview (/ncedcloud-lea-administrator/)

Similar Posts

Leave a Reply

Your email address will not be published. Required fields are marked *