2FA, Linux, and SMS: Some Thoughts and Warnings

preview_player
Показать описание
Today we talk about 2FA as more companies are starting to require it. There are some Linux apps but I want to share a few thoughts and give a few warnings before we all fully enable 2FA on all our accounts.
#2FA #Linux #SMS

-----------
Support Switched to Linux!
-----------
Social Media:
🐦 Twitter: @switchedtolinux
🐸 Gab: @switchedtolinux
💡 Minds: @switchedtolinux
Reddit: /r/switchedtolinux
-----------

Рекомендации по теме
Комментарии
Автор

Thank you for being the only person (that I've heard), recommend NOT using SMS if it's your only choice. It IS a matter of principle in addition to security.

nelaina
Автор

I found out that the Lenovo Legion 5 hates Linux Mint 20.3...but loves LMDE... Think I'll be on the laptop a bit more now...😸😸😸

rlosangeleskings
Автор

Did you weave a rug with the whiskers? I use a Yubico key for my 2fa, every service that I need 2fa for accepts it

bsdjunkie
Автор

You Tom are correct and I agree 100% with you for example when I go to my bank they always tell me "you know you can pay using your phone" and I always say to them "NO I choose not to because of reasons and you know if you I do that you can kiss your job good bye" LOL and then you can see their face going into thinking mode and then they smile :) PS: the simple you live your life the less stress and less change of getting hack or identify thief etc so I am old school I pay by receiving the bill statement which I love getting and then go the bank and pay it by using the bank teller simple easy and no hacking me :)

anarita-
Автор

Quick thought: How about buy a throw away phone and share expense with friends. When the "authentication" comes thru on the throw way you can just forward the message to your friend. (?).

northpoint
Автор

He Shaved! looking young Tom!

I use a YubiKey wherever I can! I have the 5C NFC (USB-A) and 5C NFC (USB-C)!

Khyree_Holmes
Автор

What Internet are you using? I would say cellular maybe but if that's the case you might want to look into Visible Wireless it has unlimited everything and is known by those who have RV's for having no caps. I use it myself as a home backup or an on the go solution for work since I work from home and can go anywhere. Mixed with a router to tether it to or connect to its wifi for my networks wifi it works out nicely.

anthrounit
Автор

If you are having problems with internet usage you can go to 360 or 480p it would not bother me any it would help save data.I watch 360 video's on youtube all the time anyway think about it i think others would understand also.

stevenanderson
Автор

Yubikey works all right as it should. We're in the era of biometrics. I have several yubikeys.

BarryKoostachin
Автор

I’m not giving anyone my phone number without good reason. If we need a one-time password for MFA, the best solution is a time-based one through a dedicated app.

(Of course, key-based authentication is always superior)

AshtonSnapp
Автор

Let me run this idea by you, if I may. I can't access my phone or any personal device at my daytime job. So I created a dummy Gmail account & created a Google Voice number from it just for Google-2FA requests at my job. This would eliminate the SMS 2FA vulnerability, right? No SIM to actually swap & if the number gets hijacked or whatever you can just get a new number from Google Voice.

polymatrix
Автор

Man, this video has to be at least one year old. I almost forgot how you used to look clean shaven.

AlucardNoir
Автор

Should authenticator apps be blindly trusted? I'm concerned because my work uses an outside service to handle certain payroll items. This service just recently went to MFA. It asked for my cell phone number. I refused and went to HR. They found a workaround, but much to my surprise the head of IT was irate - saying that I was making too big a deal out of this.
Does a workplace have a right to mandate that an employee download an app? It's my phone, I should have the final say in what gets stored on it.

BorlandC
Автор

C'mon man. At least a 'stache

dougtilaran
Автор

why has owning a computer become a full time job ? Why does microsoft get away with their horrible crap and their I am better than you, antics ? Why has Apple been given such control over everything YOU own that is Apple ? I highly respect the linux community and understand WHY I must learn this stuff but WHERE is the Government in all this ? Why am I being forced to use Linux, the only real alternative .

edwardmacnab