Support / Authentication

Need authentication
support?

A field guide to every authentication error the portal can return. Find your symptom, follow the steps, and you'll be back in within minutes.

7 categories · 25+ scenarios
01
SIGN.IN

Sign-in problems

Anything that prevents you from getting past the login form. For security, the portal collapses several distinct causes into the same on-screen error — the exact message tells you which one applies.

01
INVALID_CREDENTIALS

"Invalid email or password"

Sign-in is rejected even though you believe the credentials are correct.

  1. 01Read the message text carefully — it disambiguates the cause: "invalid credentials" means the email/password combination is wrong; "user account is not active" means an admin has suspended you; "email address is not verified" means you haven't completed signup.
  2. 02Verify caps-lock is off and your keyboard layout matches.
  3. 03Confirm the email is spelled exactly as you registered.
  4. 04If your account is unverified, use Resend Verification Email.
  5. 05If you've simply forgotten your password, use Reset Password.
  6. 06If the account is suspended, contact your administrator.
Reset Password
02
ACCOUNT_LOCKED

Account temporarily locked

After several failed attempts you see a lockout notice and further sign-ins are refused.

  1. 01The portal locks an account after 5 failed sign-in attempts within 15 minutes.
  2. 02Lockouts clear automatically after 15 minutes — wait it out, don't keep retrying.
  3. 03If you need access sooner, use Reset Password — completing a reset clears the lock immediately.
Reset Password
03
DEVICE_BLOCKED

Device blocked

Sign-in works on other devices but is rejected from this specific browser or machine.

  1. 01Either your security team or our risk system has blocked this device from your account.
  2. 02Device blocks cannot be cleared from the portal — there is no self-service option.
  3. 03Contact support with the date, time, and a description of the device you're trying to use from.
Contact Support
04
MFA_REQUIRED

Asked for a 2FA code (this is normal)

Sign-in succeeds but immediately asks for a 6-digit code from your authenticator app.

  1. 01This is not an error — your account has two-factor authentication enabled.
  2. 02Open your authenticator app and enter the current 6-digit code for E-Invoice Solutions.
  3. 03If your code keeps being rejected, see section 02 below.
02
MFA

Two-factor authentication (2FA)

Issues with the second factor — TOTP codes from your authenticator app, setting up 2FA, or disabling it. Most of these are clock-skew or expired-session problems.

01
INVALID_OTP

My 6-digit code is rejected

Your authenticator code keeps coming back as invalid even though you're entering it correctly.

  1. 01TOTP codes are time-based — your phone's clock must be set to automatic / network time.
  2. 02Wait for the next 30-second code to generate, then try again.
  3. 03If your authenticator has multiple accounts, double-check you're reading the code for the right one.
  4. 04If you recently changed phones, codes from the old device won't work — you'll need to set up 2FA fresh.
02
INVALID_MFA_TOKEN

MFA step expired

After entering your password, the 6-digit code page fails with "invalid MFA token" or "session expired".

  1. 01The temporary token issued between password sign-in and the MFA step has a short lifetime.
  2. 02Return to the sign-in page and enter your email + password again.
  3. 03Submit the OTP promptly — don't leave the MFA screen open for more than a few minutes.
Back to sign in
03
MFA_SETUP_EXPIRED

2FA setup didn't complete

You scanned the QR code but the confirmation step fails with "setup expired".

  1. 01You took too long between scanning the QR code and entering the first code.
  2. 02Go back to the 2FA setup page and start over.
  3. 03Have your authenticator app open and ready before you click Setup.
04
MFA_NOT_CONFIGURED

Lost access to my 2FA device

Your phone is lost, stolen, replaced, or factory-reset and you can no longer generate 2FA codes.

  1. 01If you saved recovery codes during initial setup, sign in using one of those.
  2. 02If you don't have recovery codes, contact support — identity verification is required to disable 2FA on your account.
  3. 03Once you regain access, immediately set up 2FA again on your new device and save the recovery codes this time.
Contact Support
05
INVALID_PASSWORD

Can't disable 2FA — wrong password

When trying to disable 2FA, the portal rejects your password.

  1. 01Disabling 2FA requires your current account password (not a 2FA code).
  2. 02Check caps-lock and keyboard layout.
  3. 03If you genuinely don't remember the password, sign out and use Reset Password first, then disable 2FA after signing back in.
06
MFA_ALREADY_ENABLED

2FA setup says "already enabled"

Setup screen reports that 2FA is already active on your account.

  1. 01Your account already has 2FA configured — there's nothing to do.
  2. 02To switch authenticator apps, first disable 2FA, then re-run setup.
03
SIGNUP

Signup issues

Problems creating a new account. The most common are rate limits and accounts that already exist.

01
RATE_LIMIT_EXCEEDED

Too many signups from this network

Sign-up is refused with a rate-limit error before you can even complete the form.

  1. 01Signups are limited to 5 per hour per IP address.
  2. 02If you're on an office network, VPN, or coffee-shop Wi-Fi, someone else on the same network may have triggered the limit.
  3. 03Wait an hour and try again, or sign up from a different network (e.g., your phone's hotspot).
02

"An account with this email already exists"

You're trying to sign up but the portal says the email is already registered.

  1. 01You (or someone in your organization) previously created an account with this email.
  2. 02Try signing in instead. If you've forgotten the password, use Reset Password.
  3. 03If the email belongs to a former colleague, contact your administrator to transfer or reactivate the account.
Reset Password
03

Signup succeeded but no activation email

You got a "account created" confirmation but the verification email never arrived.

  1. 01The account is created — there was just a brief mail-delivery hiccup.
  2. 02Use the resend page to trigger a new verification email.
  3. 03Also check your spam folder before assuming the email is lost.
Resend Verification Email
04
VERIFY

Email verification

Issues with the verification link sent after signup. Links are valid for 24 hours and can only be used once.

01
EXPIRED_VERIFICATION_TOKEN

Verification link expired

Clicking the verify link in your email shows "link expired".

  1. 01Verification links are valid for 24 hours from when they're issued.
  2. 02Use the resend page to get a fresh link.
  3. 03Open the new link as soon as it arrives.
Resend Verification Email
02
INVALID_TOKEN

Invalid verification link

The link returns "invalid token" — the URL itself appears to be broken.

  1. 01Don't retype the link or copy parts of it — click it directly from your email client.
  2. 02Some email clients break long URLs across lines; try opening the email in your browser instead.
  3. 03If the issue persists, request a fresh verification email.
Resend Verification Email
03
ALREADY_VERIFIED

"Account already verified"

Clicking the verification link tells you the account is already verified.

  1. 01You're done — verification has already been recorded against your account.
  2. 02Proceed straight to sign in.
Sign In
04

I never got the verification email

Signup completed but no verification email shows up in your inbox.

  1. 01Check your spam / junk / promotions folder for a message from no-reply@einvoicesolutions.com.
  2. 02Allow up to 5 minutes for delivery.
  3. 03Confirm the email you signed up with is spelled correctly.
  4. 04Resend requests are limited to 3 per hour — if you've requested several, wait an hour.
  5. 05Add no-reply@einvoicesolutions.com to your contacts to prevent future delivery issues.
Resend Verification Email
05
RESET

Password reset

For privacy reasons the reset-request endpoint never tells you whether an email is registered — the confirmation screen looks identical either way. This means "I requested a reset and got no email" can mean several things.

01

I requested a reset but no email arrived

You filled in the forgot-password form, saw the confirmation, but no email came.

  1. 01Check your spam / junk / promotions folders.
  2. 02Confirm you used the same email you signed up with — typos here are silent failures by design.
  3. 03Reset requests are rate-limited to 3 per hour per email. If you've clicked Send several times, wait an hour.
  4. 04If you've waited an hour and still see nothing, the email may not be registered — try signing up instead.
  5. 05If you're sure the account exists, contact support.
Contact Support
02

Reset link expired or already used

Setting the new password fails with "invalid or expired verification code".

  1. 01Reset links expire 24 hours after they're issued and can only be used once.
  2. 02Request a new reset from the forgot-password page.
  3. 03Open the new link and set your new password promptly.
Reset Password
03
SAME_PASSWORD

"New password matches current password"

Submitting your new password is rejected because it's the same as the current one.

  1. 01For security, you can't reset to the password you're already using.
  2. 02Choose a different password.
  3. 03If you've forgotten what your current password is, just choose any new strong password — it doesn't have to be radically different.
06
CHANGE.PW

Changing your password while signed in

Some behavior here is intentional and surprises users — particularly that changing your password signs you out everywhere else.

01
INVALID_PASSWORD

Current password rejected

The change-password form rejects the current password you've typed.

  1. 01You're being asked for the password you currently sign in with — not your new desired password.
  2. 02Check caps-lock and keyboard layout.
  3. 03If you genuinely don't remember, sign out and use Reset Password instead.
02
SAME_PASSWORD

"New password matches current"

Submitting the form complains that your new password is the same as the current one.

  1. 01Choose a different new password.
  2. 02If you only wanted to confirm your current password works, you don't need to change it.
03

I'm logged out on my other devices

After changing your password, your phone, tablet, or other browser sessions all require sign-in again.

  1. 01This is by design and is a security feature, not a bug.
  2. 02Changing your password revokes every other active session on your account immediately.
  3. 03Sign in fresh on each device with the new password.
  4. 04If you didn't change your password but are getting signed out everywhere, someone else may have — see section 07 below.
07
SESSION

Session & device issues

Problems that occur once you're already signed in — being kicked out unexpectedly, or finding your session no longer works.

01

Suddenly logged out for no reason

You were active in the portal and got dropped back to the sign-in page without warning.

  1. 01Sessions expire after a period of inactivity — this is normal.
  2. 02Someone may have changed your account password from another device, which revokes all sessions everywhere.
  3. 03If you didn't initiate the password change, change your password immediately and review your account's recent activity.
  4. 04Sign back in to resume.
Sign In
02

Getting logged out within seconds

You sign in successfully but are kicked back out within seconds or after one or two clicks.

  1. 01Your session token may be stale or revoked.
  2. 02Sign out fully and clear this site's cookies / site data in your browser settings.
  3. 03Sign back in. The portal will issue a fresh session.
  4. 04If it still happens, your account may have been compromised — contact support.
Contact Support
03

A page says "forbidden" / 403

You can sign in, but a specific feature or page returns an access-denied error.

  1. 01This is a permissions issue, not an authentication issue — your account is valid but your role doesn't grant access to that area.
  2. 02Ask your administrator to grant the appropriate role or permission.
  3. 03If you're the administrator, check the Roles & Permissions area of your dashboard.
A
APPENDIX

Error code reference

Every machine-readable error code the portal returns, paired with the recommended next step. Quote the exact code when contacting support — it's the fastest way to a resolution.

INVALID_CREDENTIALS
Re-check the message text. Reset password if needed; if account is suspended or unverified, follow that path.
ACCOUNT_LOCKED
Wait 15 minutes or use Reset Password — don't keep retrying.
DEVICE_BLOCKED
No self-service. Contact support.
RATE_LIMIT_EXCEEDED
Back off. Wait an hour before retrying.
INVALID_OTP
Re-check device clock; wait for next 30-sec code.
INVALID_MFA_TOKEN
Start sign-in over from email + password.
MFA_SETUP_EXPIRED
Restart 2FA setup with the app already open.
MFA_NOT_CONFIGURED
Run through 2FA setup first.
MFA_NOT_ENABLED
Already off — treat as success.
MFA_ALREADY_ENABLED
Already on — disable first if you want to re-configure.
INVALID_PASSWORD
Re-enter your current account password.
EXPIRED_VERIFICATION_TOKEN
Request a fresh verification email.
INVALID_TOKEN
Don't retype the link — click directly from email. If broken, resend.
ALREADY_VERIFIED
Proceed to sign in.
SAME_PASSWORD
Choose a different password than the current one.
USER_NOT_FOUND
Rare race during MFA — restart sign-in. If persistent, contact support.
Still stuck?

We're a message away.

If none of the above resolves your issue, reach out to our support team. Include the error code from the appendix and any screenshots — we typically reply within one business day.