[HN Gopher] GitHub makes 2FA mandatory next week for active deve...
___________________________________________________________________
GitHub makes 2FA mandatory next week for active developers
Author : mooreds
Score : 5 points
Date : 2023-03-11 21:10 UTC (1 hours ago)
(HTM) web link (www.bleepingcomputer.com)
(TXT) w3m dump (www.bleepingcomputer.com)
| eesmith wrote:
| I'm one of the weirdos who doesn't have a smart phone. What are
| my options?
|
| I went to the page on "configuring 2FA for your account" at
| https://docs.github.com/en/authentication/securing-your-acco...
| and it was ... not that helpful. All of the options seemed to
| depend primarily on mobile phones or text messages.
|
| I guess I need to use text messages?
|
| The linked-to article says there are other options, like physical
| security keys, but the GitHub page says:
|
| > After you configure 2FA, using a time-based one-time password
| (TOTP) mobile app, or via text message, you can add a security
| key, like a fingerprint reader or Windows Hello.
|
| and at https://docs.github.com/en/authentication/securing-your-
| acco...
|
| > For GitHub, the second form of authentication is a code that's
| generated by an application on your mobile device or sent as a
| text message (SMS).
| ThrowawayTestr wrote:
| Install a desktop authenticator app.
| miohtama wrote:
| TOTP (time-based authentication codes) is an open RFC standard
| and you can run two-factor application on any device. This
| includes
|
| - Desktop applications
|
| - Web browsers
|
| - Raspberry Pi / Uncommon Linux installations
|
| The actual source code to generate TOTP tokens is some
| thousands lines of Python - not that much.
| rcarr wrote:
| I'd be surprised if they didn't support yubikeys
|
| Edit: Info here https://www.yubico.com/works-with-
| yubikey/catalog/github/
| noman-land wrote:
| They support hardware security keys like Yubikey.
___________________________________________________________________
(page generated 2023-03-11 23:02 UTC)