this post was submitted on 10 Jul 2023
54 points (100.0% liked)

Lemmy.ca's Main Community

3219 readers
12 users here now


Welcome to the lemmy.ca/c/main community!

All new users on lemmy.ca are automatically subscribed to this community, so this is the place to read announcements, make suggestions, and chat about the goings-on of lemmy.ca.

For support requests specific to lemmy.ca, you can use [email protected].


founded 4 years ago
MODERATORS
 

Heads up that we've bumped the UI up to 0.18.2-rc.1, which should resolve the current exploit that was seen on lemmy.world.

We've also logged out all currently logged in users as part of it, so you'll need to login again.

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 0 points 2 years ago (1 children)

Same. Click the link button and nothing happens.

[–] [email protected] 0 points 2 years ago* (last edited 2 years ago) (1 children)

The link starts with otpauth://, which will likely do nothing on desktop. Either click on it from a mobile device, or on desktop you can use an addon like Offline QR Code Generator (Firefox), then right-click the link and select QR code from link. This will show a QR code you'll be able to enroll in any TOTP app. Hopefully they'll add an option to display a QR code when using the desktop interface in newer versions of Lemmy.

[–] [email protected] 0 points 2 years ago (1 children)

Can I copy the link it generates and put it directly into my app that handles 2FA? (1password). Thought about trying it, but I didn’t see any recovery codes and am not keen on getting locked out.

[–] [email protected] 2 points 2 years ago* (last edited 2 years ago)

This worked for me in Bitwarden: note since Lemmy 2FA uses SHA256 you have to copy/paste the entire link and not just the secret token. If you copy/paste just the secret token most password managers with TOTP generation have it defaulted to SHA1.