• MystikIncarnate
    link
    fedilink
    English
    arrow-up
    1
    ·
    9 months ago

    I freaking HATE this shit. My company peddles Duo, which, when it fully integrates with the site or whatever, then it’s fine sometimes. It actually sends you a notification to poke.

    But the bullshit of having to find some dedicated app for the service to go find their damn button and push it… Fuck right the fuck off. Blizzard, Steam, banks, and all kinds of bullshit sites use this crap and it fucking sucks. They won’t let you use anything else other than their shitty fucking bullshit app or SMS/email; and I fucking hate all of those options for MFA.

    I use yubikeys, and other security keyfobs, I even recently picked up a new yubikey so that my work stuff isn’t on my personal FIDO key. If that’s not supported, I’m ok with the TOTP authenticator (authy/Google authenticator/yubikey TOTP/whatever), it sucks, not as bad as the fucking app bullshit, but at least it’s more secure than fucking SMS.

    I always look for MFA options when I setup a new account on something, and it seems so rare that you get any options other than SMS or someone’s shitty app. Gah!