I wish FIDO had paid more attention to SQRL. It's long in the tooth now, but with some attention it could have been a better solution than passkeys, IMO.
this post was submitted on 16 Oct 2024
323 points (100.0% liked)
Technology
69702 readers
2620 users here now
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related news or articles.
- Be excellent to each other!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
- Check for duplicates before posting, duplicates may be removed
- Accounts 7 days and younger will have their posts automatically removed.
Approved Bots
founded 2 years ago
MODERATORS
Why not just passkeys with a “magic link” fallback though?
This is the same as forgotten password so ytf not
If you're using a hardware token to replace passwords, you're doing 2FA wrong
thats close to what i have been fucking saying and getting hate for.
so im glad someone has written it on a damn blog to legitimize it?
Dunno, we rolled it out without issue. But of course they also had keepass. You want password AND (TOTP token or hardware token)