Skip to main content

Trust device 2FA

Ability to use 2FA on initial login with a new device and have a checkbox to permanently trust device.

9 comments

Log in to comment and vote

Comments9

  • Harlequin Zipper

    •

    Mar 27, 2023

    This would be great for the mobile app, it logs you out way to much i stopped using it…

  • Aqua Toast

    •

    Jan 25, 2023

    Seems like a good idea. Or perhaps no 2FA for trusted IP addresses?

  • Aqua Toast

    •

    Jan 25, 2023

    This seems like a good idea for use at an MSP's primary location. Even if for a short (customizable) period.

  • Indigo Sandwich

    •

    Mar 1, 2021

    +1 for this feature. Ideally for it to only ask for the 2FA on a device every x days. My 365 account is every 30 days, this is ideal.

  • Turquoise Lake

    •

    Jan 24, 2021

    I feel like docu, remote, password, rmm and the like should always require 2FA. Not using 2FA on some devices is a bad idea.

  • Chocolate Melon

    •

    Sep 20, 2020

    The ability to no request 2FA for a period like a week on a device I use all the time would be great.

  • Apricot Astronaut

    •

    Jul 15, 2020

    I'd like to be able to "trust" a device for a little while as most other sites that I use allow one to do, I'm not sure "permanently" is the right word though. Most of the sites I use will eventually prompt for 2fa again, maybe after a couple of days or a week. It is a little tiresome to have to 2fa literally every single time, even if I just accidentally close the browser or something.

  • Magenta Sun

    •

    Apr 11, 2020

    I don’t like this idea. You can set the timeout in the settings. MFA should always be enabled for maximum security. This is why MSP’s get breached. They turn off their MFA or whitelist themselves so they don’t have to use MFA and then when some credential is breached or their system is infected, it spreads to client systems, documentation, or internal assets.

    • Azure Waterfall

      •

      May 22, 2020

      Michael S.: I totally understand and appreciate the security concern. However, if my device gets stolen or compromised, I would reset the 2FA. The suggestion here would be a checkbox to choose to "trust device" (much like Microsoft, Google, many PSAs, etc are already doing). It would not require each user to choose to do so