Skip to content

Recovery Code - Fallback options after loss of access to Authenticator app #48

@smashm

Description

@smashm

The remember the browser function was a big step forward for everyday usability.

I would also like to see a fallback option integrated in case users can no longer access their authenticator app, for example if their phone is lost or stolen.

Currently, access can only be granted via manual administrative intervention, which is particularly inconvenient for users without access, in larger communities for admins, too.

I am aware of these options, for example:

  • Hetzner's consoleH provides a recovery key via snail mail
  • Users can generate multiple stock emergency keylists for download, e.g. LinkedIn 5 pieces or Facebook 10 pieces
  • On Xing, this is limited to one, but can also be generated at any time

Personally, I think one code would be enough, but a few more certainly won't hurt for some users.

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions