Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> Anything that is convenient is not real 2FA.

That's a pretty user-hostile attitude. Sure, some combinations of factors are pretty unergonomic, but I'd call that a bug, not a feature.

It's also incorrectly suggesting that somehow complexity/painful usability automatically yields security, while usually the opposite is true:

An effective secure authentication solution absolutely must consider usability, or it's doomed to be circumvented by users in one way or another (either via some insecure practice, or by your users simply ceasing to be your users).



I’m speaking to how things are practically implemented, not making a statement about ideals.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: