Ancestors

Written by Frank on 2025-01-31 at 13:08

Hey #infosec people, what is your solution for MFA that is recoverable and mostly disaster resistant?

Consider that many services allow you to only add 1 MFA token.

Prefs/reqs

=> More informations about this toot | More toots from fschaap@mastodon.social

Written by Skyglobe on 2025-01-31 at 13:33

@fschaap personally I use TOTP with Aegis ( https://getaegis.app/ ) on Android and KeepassXC ( https://keepassxc.org/ ) on PC. Both allow backing up and exporting the TOTP configuration and do not depend on third party servers for storage.

=> More informations about this toot | More toots from skyglobe@hostux.social

Written by Jeremy Baumgartner on 2025-01-31 at 14:38

@skyglobe @fschaap I do this, but the KeePassXC vault for TOTP tokens and backup data is separate from my password vault, and requires my Yubikey token to open. It's purely meant as a backup to Aegis.

=> More informations about this toot | More toots from jjbaumgartner@infosec.exchange

Written by Frank on 2025-01-31 at 14:42

@jjbaumgartner @skyglobe Yeah, 2 vaults is an option. What is your backup plan for the Yubikey? Multiple ones added and one in a safe?

=> More informations about this toot | More toots from fschaap@mastodon.social

Toot

Written by Jeremy Baumgartner on 2025-01-31 at 16:48

@fschaap @skyglobe No backup for the key.

=> More informations about this toot | More toots from jjbaumgartner@infosec.exchange

Descendants

Proxy Information
Original URL
gemini://mastogem.picasoft.net/thread/113923988025916600
Status Code
Success (20)
Meta
text/gemini
Capsule Response Time
278.977202 milliseconds
Gemini-to-HTML Time
1.507894 milliseconds

This content has been proxied by September (3851b).