-
Notifications
You must be signed in to change notification settings - Fork 1.8k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Support Simultaneous TOTP/U2F and multiple UF2 keys on local authentication #1929
Comments
It occurred to me that
|
Looks similar to #969 |
Is this something that will be addressed in future releases? |
We'll aim to get this fixed in 5.0 (in ~1-2 months from now). |
A personal +1 for this (on top of the 11 +1s from #969) I have 4 YubiKeys now and only being able to register one with Teleport is a significant limitation. |
Well that was naive. |
I've noted this in some other recent issues I've filed (#3384), but I'll make it on-the-record here, in case it affects your planning of this feature. This issue is related to my personal use of Teleport Community Edition, not my employer's use of Teleport Enterprise. |
Problem
Teleport local authentication currently only supports either TOTP or U2F separately. Additionally, only a single U2F token can be registered at once. This means broken/stolen U2F keys or wiped TOTP auth apps require an account reset to fix.
Solution
Support both TOTP and U2F at once on local connector, and allow mutliple U2F keys to be registered per account. This has been adopted as a standard practice for 2-factor auth on many popular apps/sites (for example, GitLab):
The text was updated successfully, but these errors were encountered: