This would be great for the mobile app, it logs you out way to much i stopped using it…
Aqua Toast
•
Jan 25, 2023
Seems like a good idea. Or perhaps no 2FA for trusted IP addresses?
Aqua Toast
•
Jan 25, 2023
This seems like a good idea for use at an MSP's primary location. Even if for a short (customizable) period.
Indigo Sandwich
•
Mar 1, 2021
+1 for this feature. Ideally for it to only ask for the 2FA on a device every x days. My 365 account is every 30 days, this is ideal.
Turquoise Lake
•
Jan 24, 2021
I feel like docu, remote, password, rmm and the like should always require 2FA. Not using 2FA on some devices is a bad idea.
Chocolate Melon
•
Sep 20, 2020
The ability to no request 2FA for a period like a week on a device I use all the time would be great.
Apricot Astronaut
•
Jul 15, 2020
I'd like to be able to "trust" a device for a little while as most other sites that I use allow one to do, I'm not sure "permanently" is the right word though. Most of the sites I use will eventually prompt for 2fa again, maybe after a couple of days or a week. It is a little tiresome to have to 2fa literally every single time, even if I just accidentally close the browser or something.
Magenta Sun
•
Apr 11, 2020
I don’t like this idea. You can set the timeout in the settings. MFA should always be enabled for maximum security. This is why MSP’s get breached. They turn off their MFA or whitelist themselves so they don’t have to use MFA and then when some credential is breached or their system is infected, it spreads to client systems, documentation, or internal assets.
Azure Waterfall
•
May 22, 2020
Michael S.: I totally understand and appreciate the security concern. However, if my device gets stolen or compromised, I would reset the 2FA. The suggestion here would be a checkbox to choose to "trust device" (much like Microsoft, Google, many PSAs, etc are already doing). It would not require each user to choose to do so
Log in to comment and vote
Comments9
Harlequin Zipper
Mar 27, 2023
This would be great for the mobile app, it logs you out way to much i stopped using it…
Aqua Toast
Jan 25, 2023
Seems like a good idea. Or perhaps no 2FA for trusted IP addresses?
Aqua Toast
Jan 25, 2023
This seems like a good idea for use at an MSP's primary location. Even if for a short (customizable) period.
Indigo Sandwich
Mar 1, 2021
+1 for this feature. Ideally for it to only ask for the 2FA on a device every x days. My 365 account is every 30 days, this is ideal.
Turquoise Lake
Jan 24, 2021
I feel like docu, remote, password, rmm and the like should always require 2FA. Not using 2FA on some devices is a bad idea.
Chocolate Melon
Sep 20, 2020
The ability to no request 2FA for a period like a week on a device I use all the time would be great.
Apricot Astronaut
Jul 15, 2020
I'd like to be able to "trust" a device for a little while as most other sites that I use allow one to do, I'm not sure "permanently" is the right word though. Most of the sites I use will eventually prompt for 2fa again, maybe after a couple of days or a week. It is a little tiresome to have to 2fa literally every single time, even if I just accidentally close the browser or something.
Magenta Sun
Apr 11, 2020
I don’t like this idea. You can set the timeout in the settings. MFA should always be enabled for maximum security. This is why MSP’s get breached. They turn off their MFA or whitelist themselves so they don’t have to use MFA and then when some credential is breached or their system is infected, it spreads to client systems, documentation, or internal assets.
Azure Waterfall
May 22, 2020
Michael S.: I totally understand and appreciate the security concern. However, if my device gets stolen or compromised, I would reset the 2FA. The suggestion here would be a checkbox to choose to "trust device" (much like Microsoft, Google, many PSAs, etc are already doing). It would not require each user to choose to do so