Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Require 2FA code before enabling 2FA #1559

Closed
3 tasks done
XtremeOwnageDotCom opened this issue Jun 24, 2023 · 1 comment
Closed
3 tasks done

Require 2FA code before enabling 2FA #1559

XtremeOwnageDotCom opened this issue Jun 24, 2023 · 1 comment
Labels
area: auth enhancement New feature or request

Comments

@XtremeOwnageDotCom
Copy link

XtremeOwnageDotCom commented Jun 24, 2023

Requirements

  • This is a feature request and not a bug report. Otherwise, please create a new bug report instead.
  • Please check to see if this request (or a similar one) already exists.
  • It's a single feature. Please don't request multiple features in one issue.

Describe the feature you'd like

When a user wishes to enable 2FA, they should be required to entire at least one generated 2FA code, before 2FA is enabled.

This will prevent users from locking themselves out, by ensuring their code-generator, is properly configured and generating the expected. codes.

Ideal Flow.

  1. User enables 2FA in their settings.
  2. User is then, required to enter generated 2FA code before 2FA is fully enabled.
  3. AFTER user enters valid 2FA code, 2FA is enabled.

Other related issues-

@foss-
Copy link

foss- commented Jan 10, 2024

This can be closed, right? 0.19.1 shows a dialog with a QR Code for 2FA setup asking for a 2FA code confirmation:

1

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
area: auth enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

3 participants