Last updated on September 30, 2026
Rublon User Guide is meant for users who want to learn more about Rublon MFA. If you are an administrator looking for deployment instructions, refer to our Documentation.
Demo Video

Log in to Linux SSH with Rublon 2FA
The example below shows a login using Mobile Push. Your login experience may differ depending on your administrator’s configuration. If Append Mode or Offline Mode is enabled, see the instructions below.
1. Go to the terminal and initiate the SSH session.
2. Enter your password.

3. You will receive a Mobile Push login request on your phone.

4. Tap APPROVE.
5. You will be logged in.

Log in with Append Mode
If your administrator enabled Append Mode, you can select an authentication method or enter a passcode in the password field by adding it after your password, separated by a designated character. The default separator is a comma (,), but your administrator may configure a different one.
1. Start your SSH session.
2. At the password prompt, enter your password followed by the separator and an authentication method or code. For example:
- YourPassword,push requests a Mobile Push notification.
- YourPassword,123456 submits a six-digit Mobile Passcode from your authenticator app.
3. If you selected Mobile Push, approve the notification on your phone. If you entered a valid Mobile Passcode, you do not need to enter that code again.
Replace YourPassword with your actual password and 123456 with your current Mobile Passcode. You can only use authentication methods enabled for your account.
If your password contains the configured separator, contact your administrator before using Append Mode. The connector uses this character to separate your password from the authentication method or code.
For supported methods and more examples, see the Append Mode Guide.
Log in with Offline Mode
Offline Mode lets you complete MFA when the Linux machine cannot connect to the Rublon API. It uses a Mobile Passcode generated by your authenticator app.
Before you can use Offline Mode, your administrator must enable it. You must also complete a successful online MFA login on the same Linux machine, and the connector must successfully save your offline authentication secret.
1. Start your SSH session and complete the usual password or SSH key authentication.
2. If the Rublon API cannot be reached and Offline Mode is available for your account, Rublon MFA for Linux asks you for a passcode from your authenticator app.
3. Open your authenticator app and enter your current six-digit Mobile Passcode for your account.
4. The connector checks the code locally. If verification succeeds, you can complete your login.
If you already entered a Mobile Passcode before the connection failed, the connector checks that code locally without asking you to enter it again.
Offline Mode supports Mobile Passcode only. Other authentication methods, including Mobile Push and Bypass Codes, cannot be used for offline verification. Keep the time on your phone accurate so that the generated codes can be verified.
If Offline Mode is unavailable or your code is not accepted, contact your administrator.