nsfmc’s avatarnsfmc’s Twitter Archive—№ 5,659

  1. …in reply to @ianstormtaylor
    ianstormtaylor it's those dopey blue 2fa security keys (the tech is good and the docs are pretty good but they also have some messaging issues)
    1. …in reply to @nsfmc
      ianstormtaylor which, i think the 'value add' of paid duo is managed 2fa access (i.e. admins approving logins) vs plain totp. fido = physical presence
      1. …in reply to @nsfmc
        ianstormtaylor i think totp + offline backup codes ➡ fido + offline backup codes + device specific pws 📲 is a solid strategy (fido=chrome+ff only, though)