Two-factor authentication adds an extra layer of security to GravityZone accounts, by requiring an authentication code in addition to Control Center credentials. 2FA requires downloading and installing the Google Authenticator, Microsoft Authenticator, or any two-factor TOTP (Time-Based One-Time Password Algorithm) authenticator app on a device such as a smartphone or computer. The authentication app generates a six-digit code each 30 seconds. To complete the Control Center login, after entering the password, the user will have to provide also the six-digit authentication code.
GravityZone Cloud platform uses by default two-factor authentication (2FA).
When connecting to Control Center using 2FA, follow these steps:
- Open your web browser.
- Go to the following address: https://gravityzone.bitdefender.com.
- Enter the email address of your account and click Next.Enter your username and click Next.
- Enter the password of your account and click Next.

When connecting for the first time in Control Center and your account has two-factor authentication enforced, you are prompted to enable two-factor authentication in a configuration page, after entering GravityZone credentials. Follow these steps:
- Download and install on your device, such as a smartphone or a computer, Google Authenticator, Microsoft Authenticator, or any two-factor TOTP (Time-Based One-Time Password Algorithm) authenticator compatible with the standard RFC6238.
- On your device, open the authenticator.
- In the Add an account screen, scan the QR code from the GravityZone configuration page, to link the app to your GravityZone account. Alternately, use the secret key displayed under the QR code (copy and paste it if you use a computer).
- This action is required only once.
Important: Make sure to copy and save the secret key in a safe location. Click Print a backup to create a PDF file with the QR code and secret key. If the device used for activating two-factor authentication is lost or replaced, you will need to install Google Authenticator, Microsoft Authenticator, or any two-factor TOTP (Time-Based One-Time Password Algorithm) authenticator – compatible with the standard RFC6238, on a new device and provide the secret key to link it to your GravityZone account.
If you did not have the secret key, contact your Bitdefender administrator to reset two-factor authentication. - Enter the six-digit code from the authenticator in the Authentication code field.
- Click Enable to complete the feature activation and to log in to Control Center.
If you do not have an authenticator yet, click the Skip button to log in directly to Control Center. You can skip 2FA five times only. At the sixth login attempt, you are not able to log in without two-factor authentication.
If you need assistance with setting this up or are interesting in learning about the various options to better secure your data, click here to contact us and one of our experts will be in touch shortly.