Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Integrate Fido U2F for authentication and voting #204

Open
mitar opened this issue Feb 4, 2017 · 0 comments
Open

Integrate Fido U2F for authentication and voting #204

mitar opened this issue Feb 4, 2017 · 0 comments
Milestone

Comments

@mitar
Copy link
Member

mitar commented Feb 4, 2017

We could offer extra security by allowing admins to enable Fido U2F tokens for authentication and voting. So this could be optional for users, or required. But once Fido U2F token would be integrated linked to the account, when voting, one would have to press the token to be able to vote. This could mitigate slightly cases when users' passwords would be stolen and used to vote. But if a user's computer is compromised, attacker can still provide a different vote to the server, while displaying wanted vote to the user.

@mitar mitar added this to the Later milestone Feb 4, 2017
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant