Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Generate backup codes for users who enable TOTP #30

Open
reefdog opened this issue Feb 27, 2024 · 0 comments
Open

Generate backup codes for users who enable TOTP #30

reefdog opened this issue Feb 27, 2024 · 0 comments
Assignees

Comments

@reefdog
Copy link
Contributor

reefdog commented Feb 27, 2024

Normally when services offer users TOTP (time-based rotating codes) as their additional authentication factor, a handful of static, non-expiring backup codes are also generated and provided to the user.

I just setup my PDC Keycloak account with TOTP, and was not offered these codes. We should see if Keycloak supports them, and be sure we're providing them to users during setup.

Step one is verifying Keycloak supports this; if not (and if it can't be added through some sort of extension or library), then let's just close this.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
Status: Todo
Development

No branches or pull requests

2 participants